A sovereign-cloud provider publishes the operating status of the controls its tenants inherit — each statement cryptographically sealed so that any party can confirm it is authentic and unaltered, without the provider's cooperation. Below is a real sealed statement. Verify it, then try to break it.
Statement content — edit any field to tamper
Every field feeds a SHA-256 hash chain. Alter anything and the recomputed hash no longer matches the signed one — visible above, live.
Verification needs only the published Ed25519 key. This page runs the check entirely in your browser — nothing is sent to any server.
The same control evidence is presented against whichever regulatory framework a tenant is assessed under — see the resolver below.
Each requirement is transcribed word-for-word from its authoritative published document and cited — never paraphrased. The MCT control set is the single spine every framework maps into.