Diagrid
Back to Verifiable Execution
Verifiable Execution

Can a verifiable execution record prove that no sensitive data was leaked to an external API?

No, the record proves what calls were made and with which parameters, but cannot prove that data not in the parameters was not leaked through other means such as side channels or misconfigured logging. An auditor can confirm that the recorded API interactions did not include sensitive fields, but they cannot assert absolute absence of leakage without analyzing the entire system.

Was this article helpful?

Your feedback helps improve Diagrid's FAQ experience.

Keep reading

More Diagrid FAQ articles

View all