SHA-256 chain · offline-verifiable
Auditor evidence package
Assemble a chain-of-custody bundle for a framework — every control, the evidence mapped to it, the hash-chained governance decisions, and the decision passport — signed with Ed25519 when a signing key is configured — into one structured artifact an auditor can export and re-verify offline. The bundle also carries a portfolio-standard governed-receipt/v1 that re-verifies in the publisher-hosted public verifier at lockedinlabs.ai/verify — the same verification format used by a model passport. Conformity-readiness with a tamper-evident manifest, not a certificate.
01Declaration
No bundle assembled yet
Pick a preset or declare a system, then assemble. The bundle renders here: control → evidence register, chain-of-custody manifest, hash-chained decision records, and the decision passport + governed receipt — signature state stays explicit and every covered hash is re-verifiable offline.