Evidence & Attestation Service

Control evidence you can verify yourself.

A sovereign-cloud provider publishes the operating status of the controls its tenants inherit — each statement cryptographically sealed so that any party can confirm it is authentic and unaltered, without the provider's cooperation. Below is a real sealed statement. Verify it, then try to break it.

⚠ Demonstration · synthetic data · non-production sealing key

01 · Independent verification
◆ SEALED STATEMENT  #
Verifying…Recomputing hashes in your browser.

Statement content — edit any field to tamper

control control_title status method assessor_class
content hash
statement hash
ed25519 seal


02 · What the seal proves
TAMPER-EVIDENT

Change one character, break the seal

Every field feeds a SHA-256 hash chain. Alter anything and the recomputed hash no longer matches the signed one — visible above, live.

INDEPENDENT

No provider cooperation

Verification needs only the published Ed25519 key. This page runs the check entirely in your browser — nothing is sent to any server.

ONE SET OF FACTS

Any framework, no rework

The same control evidence is presented against whichever regulatory framework a tenant is assessed under — see the resolver below.

03 · Regulatory content, transcribed verbatim

Each requirement is transcribed word-for-word from its authoritative published document and cited — never paraphrased. The MCT control set is the single spine every framework maps into.

04 · One control, three frameworks
Presenting   against —
05 · Coverage — silence is never mistaken for effectiveness