Compliance & Audit
How can I prove that an agent only called model endpoints from an approved vendor list during a specific execution?
Catalyst creates a verifiable step record for every model invocation, containing the provider URL and a cryptographic hash of the response. By checking these records against an approved vendor list, auditors confirm no unauthorized endpoints were used. Replaying the step with the same inputs validates the integrity of the evidence. However, this assumes the vendor itself does not redirect requests.
Was this article helpful?
Your feedback helps improve Diagrid's FAQ experience.
Keep reading
More Diagrid FAQ articles
- Compliance & Audit
What evidence artifacts should I gather from an AI agent platform for an audit of automated decision-making?
An AI agent platform provides verifiable step records and identity bindings as foundational audit evidence, though business rule correctness remains external.
- Compliance & Audit
How does the platform capture human-in-the-loop interventions for regulated workflows that require manual approval?
Durable execution suspends agents for human input, recording reviewer identity and decisions as signed steps for an unalterable compliance record.
- Compliance & Audit
Can I control where agent state and execution records are stored to comply with data residency requirements?
Region-specific deployment options ensure durable execution state and step payloads remain within geographic boundaries to meet localization mandates.