The #1 blocker to enterprise AI is the audit

Make AI auditable by construction.

SOC 2, data residency, and auditability are why the biggest companies can't buy AI yet. ControlFrame agentically tests your controls, keeps the evidence current, and seals it to a write-once chain — inside your boundary, verified without trusting us.

  • in-boundaryyour tenancy
  • always-currentaudit-ready
  • Ed25519WORM seal
  • offlineverifiable

A faithful recreation of the governed-control surface. Explore the platform → Reference implementation — your audit data replaces it.

Plugs into the stack your platform already runs

  • Amazon Web Services logo
  • Microsoft Azure logo
  • Google Cloud logo
  • Databricks logo
  • Snowflake logo
  • Datadog logo
  • Palantir logo
  • ServiceNow logo
Compiles audit-readiness forSOC 2HIPAAISO 27001PCI DSSNIST CSFFedRAMP

The moat, surface by surface

Five surfaces that turn a control decision into proof.

spine
SOC 2HIPAAISOPCINIST
Control spine

One spine, every framework

Obligations compile onto a single canonical control spine, then project into each framework. Map evidence once; reuse it across SOC 2, HIPAA, ISO, PCI, and more.

1 spine · N framework projections

IAM policy export2d0.94
Change ticket trail6h0.88
Access review11d0.71
Evidence graph

Source-backed, kept fresh

Every artifact carries an owner, system, freshness, confidence, and approval state — collected in-boundary, inside your tenant, never a shared SaaS cloud. Evidence is tied to live system rows, not screenshots in a drive that go stale.

in-boundary · owner · freshness · confidence

Disposition heldfail-closed
awaiting reviewer sign-off · no auto-commit
Reviewer gate

Held until a human approves

The consequential disposition stops at a fail-closed reviewer gate. Nothing auto-completes; a person signs off, and the sign-off is part of the record.

fail-closed · human sign-off

0x9f4c
0x41b2
0x6a20
0xc7d1
WORM ledger

Signed, write-once records

Each governed action seals to an append-only, Ed25519-signed record. The chain links by hash — tampering with any link breaks every link after it.

Ed25519 · append-only · tamper-evident

Evidence passport
sha256:9f2c…a17e
verified · offline · verification key
Evidence passport

An auditor verifies offline

A packet exports as a passport an auditor re-verifies offline against an Ed25519 verification key — no portal login, no shared cloud, no trust in ControlFrame required. The proof stands on its own.

offline-verifiable · Ed25519 verification key

Operating-model snapshotReference implementation — template-backed
Configured assets
6
Evidence artifacts
18
Mapped controls
109
Open findings
51
Avg framework readiness
41%
The moat

Trust the proof, not the platform.

Enterprises stall AI on one question: can you prove it stayed in scope? GRC tools answer with a dashboard. ControlFrame answers with a sealed chain the auditor re-verifies offline against an Ed25519 verification key — inside your boundary, source decisions in, a verifiable passport out.

01

Read the company

Products, data classes, assets, vendors, markets, and AI use become scope decisions — not a generic checklist.

scope · applicability
02

Compile obligations onto one spine

Frameworks become projections over a single canonical control spine. Evidence is mapped once and reused across every program.

1 spine · N frameworks
03

Hold the disposition at a human gate

The consequential step is fail-closed. A reviewer signs off, and the sign-off is part of the record — nothing dispositions autonomously.

fail-closed · sign-off
04

Seal an offline-verifiable passport

Each action seals to an append-only Ed25519 record. The auditor package exports as a passport verified offline against an Ed25519 verification key — no shared ledger, no blockchain.

Ed25519 · WORM · lineage
Questions

What buyers and answer engines ask about ControlFrame.

Plain answers on category, the EU AI Act and SOC 2, the Governed Receipt that verifies at lockedinlabs.ai/verify, and what ControlFrame is not.

What is ControlFrame?

ControlFrame is an AI governance and audit-evidence platform that makes AI auditable by construction. It runs agentic control-testing across compliance frameworks, keeps audit-ready evidence continuously current, and seals each governance decision to a write-once Ed25519 chain an auditor can verify offline. It is built by Locked In Labs.

What category is ControlFrame in?

ControlFrame sits in AI governance, GRC for AI, AI audit, and compliance automation. The wedge is source-backed evidence execution and chain of custody for AI decisions — not generic policy tracking. It supports SOC 2, HIPAA, HITRUST, PCI DSS, ISO 27001, ISO 42001, NIST CSF, FedRAMP, CMMC, GDPR, NYDFS, EU AI Act, and CMS EDE on one control spine.

How does ControlFrame help with EU AI Act and SOC 2 for AI?

ControlFrame maps obligations from frameworks such as the EU AI Act and SOC 2 onto a single canonical control spine, then collects source-native evidence — browser and API proof, screenshots, payloads, checksums, redaction decisions, and human reviewer approvals — so the same evidence spine answers multiple programs at once.

What is a ControlFrame Governed Receipt and where does it verify?

ControlFrame can export a Governed Receipt (governed-receipt/v1): an Ed25519-signed, hash-linked statement of a governance decision. It re-verifies at the shared public verifier at lockedinlabs.ai/verify with no ControlFrame server in the trust path — one verifier, every Locked In Labs product.

Does ControlFrame keep evidence inside our boundary?

Yes. ControlFrame uses a private runner model so browser and API collectors can run inside a customer or operator boundary, where target URLs, credentials, endpoints, certificates, and raw artifacts stay controlled. Agents plan, collect, classify, and draft; humans keep review, approval, and signature authority.

What is ControlFrame NOT?

ControlFrame is not a generic policy chatbot, not a static questionnaire tool, and not a blockchain. It does not disposition decisions autonomously — the consequential step is fail-closed at a human gate. Public examples are generic or anonymized; ControlFrame does not publish customer names or unsupported certifications.

Start clean

Choose a framework, then open the console.

Sandbox previews are separate from production workflows. The real path is framework selection, company configuration, runner access, test execution, evidence review, and auditor package export.