Proofroom

Evidence Pack

Example pack from one of Proofroom's own agents. Receipt text is Tier 1 / redacted only, no sensitive operational or commercial detail. This is what a customer pack looks like.

Chain head anchoring

Agent: Proofroom Ops Agent · Operated by Proofroom

Generated 2026-08-04 21:41:30 UTC

Status at generation: Instrumented · Chain: chain valid (12 events)

2. Executive summary

This pack documents the declared scope and submitted activity evidence for one agent performing one use case: Chain head anchoring. At generation time the evidence chain contained 12 hash-chained events, of which 12 material actions carry Action Receipts. The Evidence Coverage Score was 90 of 100, with the component breakdown in section 8. Verification status indicates the presence, source level and integrity of this evidence trail; it does not certify safety, accuracy or compliance.

3. How to read this pack

Every claim in this pack carries an evidence level. Self-reported means the operating system of the agent submitted the event and no independent confirmation exists. System confirmed means an external system reference (for example a GitHub pull request) was verified to exist. Operator confirmed means a named human resolved an approval. The live proof room continues to update and decay after this snapshot; prefer the live link for current status.

Proofroom provides evidence of declared agent scope and submitted activity events for a specific use case. Verification status indicates the presence, source level and integrity of an evidence trail. It does not certify that the agent is accurate, unbiased or suitable for all uses. Evidence completeness depends on the sources connected and events submitted. Framework references indicate topical mapping, not certification.

4. Agent passport

NameProofroom Ops Agent
DescriptionInternal operations agent for Proofroom. Monitors platform health, sweeps chain integrity, and sends the daily operator digest. Customer zero: every run is hash-chained into its own public evidence trail.
StackAnthropic claude-sonnet-4-5 via Inngest on Vercel
Internal company agentYes
Accountable humanProofroom Operator

5. Use case passport

Use caseChain head anchoring
DescriptionRecords each external chain-head anchoring run. Manifests are published to the public proofroom-anchors repository.
ScopePublish daily Merkle-rooted chain-head manifests to an external public repository and OpenTimestamps.
Allowed actionspublish chain head anchor; retry OpenTimestamps stamp
Prohibited actionspublish customer free text; publish use case UUIDs
Evidence decay window3 days

6. Oversight model and decision rights

Automated system job with operator visibility on the anchoring proof room.

Action keyTier
ops.restart_agentapproval
ops.change_capsapproval
ops.retry_failed_jobautonomous
ops.flag_anomalyautonomous
ops.send_digestautonomous
ops.billing_actionforbidden
ops.touch_customer_dataforbidden

Active playbook at generation: version 7, SHA-256 e60842a495e57c298083f48fdd79e99e16a6acec126eeca70fcf6b8d44d1d16f

7. Evidence methodology

Events are appended to a per-use-case chain inside a locking database procedure. Each event hash is a SHA-256 digest over the event's canonical fields including the previous event's hash. Verification recomputes every link from stored rows; any edit to a past event breaks recomputation from that point forward. The events table carries no update or delete policies. Ingestion strips payload-like fields: the chain stores proof of activity, not customer content.

8. Evidence Coverage Score

90 / 100

ComponentPointsDetail
Declaration completeness10/10Scope summary, allowed actions, prohibited actions and oversight model declared on the passport.
Chain integrity20/20All 12 events recomputed successfully.
Evidence freshness15/15Last event 24 hours ago against a 3-day decay window.
Activity depth10/1512 events recorded (full marks at 50 or more).
Material action coverage15/1510 of 10 material actions carry receipts.
Source strength bonus5/5Evidence includes confirmation beyond self-reporting.
Configuration provenance declared0/5Configuration not declared.
Identity and accountability15/15Scope confirmed by a human.

9. Chain integrity verification

State at generationchain valid
Events recomputed12
Verified at2026-08-04 21:41:29 UTC

10. Action Receipts register

ReceiptAuthorityEvidence levelSummaryKey idDate
PRF-13249n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-07-30): 8 entries, status timestamped, merkle c44a0b8fca5d.—2026-07-30
PRF-13253n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-07-30): 9 entries, status timestamped, merkle 32d6d4b1ad84.—2026-07-30
PRF-13439n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-02): 11 entries, status timestamped, merkle 1bc7317008ea.—2026-08-02
PRF-13447in scopeoperator confirmedMaterial action recorded: system updated. Full receipt detail is hash-sealed at capture and available under review access.—2026-08-02
PRF-13500n/a - self-audit eventoperator confirmedMaterial action recorded: correction recorded. Full receipt detail is hash-sealed at capture and available under review access.—2026-08-03
PRF-13501n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 17 entries, status timestamped, merkle 697548e21483.—2026-08-03
PRF-13505n/a - self-audit eventoperator confirmedMaterial action recorded: correction recorded. Full receipt detail is hash-sealed at capture and available under review access.—2026-08-03
PRF-13518n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 22 entries, status timestamped, merkle 4d94720eced9.—2026-08-03
PRF-13519n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 22 entries, status failed, merkle 5483542dd630.—2026-08-03
PRF-13538n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 22 entries, status timestamped, merkle fbf7e7d3a93e.—2026-08-03
PRF-13566n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 23 entries, status failed, merkle 5d80d56e103a.—2026-08-03
PRF-13567n/a - self-audit eventsystem confirmedChain heads anchored externally (2026-08-03): 23 entries, status timestamped, merkle 5d80d56e103a.—2026-08-03

11. Evidence log summary

Total events12
By sourcesystem: 12
By evidence levelsystem confirmed: 9; operator confirmed: 3

12. Framework crosswalk: ISO 42001

Framework references indicate topical mapping between this evidence trail and themes in the named frameworks. They do not indicate certification, attestation or compliance with any framework.

ReferenceTopicMapped by
A.6.2 (AI system life cycle)Defined scope and intended use of the AI systemUse case passport: scope summary, allowed and prohibited actions
A.9.2 (Processes for responsible use)Human oversight of AI system operationOversight model and executable decision-rights tiers with approval trail
A.6.2.8 (Event logging)Recording of AI system activityAppend-only, hash-chained evidence events with sequence integrity verification
A.8.2 (System documentation)Information available to interested partiesLive proof room, Action Receipts and Evidence Pack with declared evidence levels

13. Framework crosswalk: SIG, CAIQ and NIST

FrameworkReferenceTopicMapped by
SIGAI module: governanceInventory and ownership of AI agentsAgent passport with accountable human and registered use cases
SIGAI module: operationsMonitoring and exception handling for automated agentsRun ledger, spend caps, exception events and operator escalation receipts
CAIQAIS (Application and Interface Security)Audit trail of application actionsAction Receipts with authority status and tamper-evident chain
CAIQGRC (Governance, Risk and Compliance)Documented risk boundaries for automated systemsProhibited actions, forbidden decision tiers and kill-switch evidence
NISTAI RMF: GovernAccountability structures for AI systemsAccountable human on every internal agent; approvals resolved by named operators
NISTAI RMF: MeasureTracking of AI system behaviour over timeEvidence Coverage Score with component breakdown and status decay
NISTAI agent guidance: least privilegeConstraining agent capabilities to declared scopeTool allowlists, decision-rights tiers and out-of-scope receipt flagging

14. Limitations and verification

Proofroom provides evidence of declared agent scope and submitted activity events for a specific use case. Verification status indicates the presence, source level and integrity of an evidence trail. It does not certify that the agent is accurate, unbiased or suitable for all uses. Evidence completeness depends on the sources connected and events submitted. Framework references indicate topical mapping, not certification.

Use your browser's Print function (Ctrl+P) and choose "Save as PDF" to export this pack. Back to Proofroom · Open live proof room