Diagrid
Back to Compliance & Audit
Compliance & Audit

How can I prove that an agent only called model endpoints from an approved vendor list during a specific execution?

Catalyst creates a verifiable step record for every model invocation, containing the provider URL and a cryptographic hash of the response. By checking these records against an approved vendor list, auditors confirm no unauthorized endpoints were used. Replaying the step with the same inputs validates the integrity of the evidence. However, this assumes the vendor itself does not redirect requests.

Was this article helpful?

Your feedback helps improve Diagrid's FAQ experience.

Keep reading

More Diagrid FAQ articles

View all