Skip to main content

About Artifacts & Evidence Management

The Artifacts page is where all compliance evidence is stored, managed, and tracked. Artifacts are the files, logs, configurations, or records that demonstrate actions and controls have been satisfied. Artifacts can be:
  • Uploaded manually by users (e.g., a policy document, screenshot, or export)
  • Auto-collected via connected sources (agentic integrations like HRIS, SSO, cloud providers)
  • Validated by AI to confirm they are relevant and complete before being linked to controls
This page centralizes evidence management, making it easy to see what’s available, what’s missing, and whether an artifact has been validated for audit readiness.

How It Works

Artifacts and evidence management provides a single place to manage compliance documentation by automatically validating evidence and linking it to specific controls and actions. The system uses AI to ensure evidence relevance and completeness, reducing the risk of audit findings. The platform supports both manual uploads and automated collection from connected systems, providing flexibility while maintaining broad coverage of compliance requirements.

Artifacts & Evidence Management Capabilities

Adding Artifacts

  • Navigate to the Artifacts page or to a specific Action/Control detail page
  • Click Add Artifact to upload a file, paste content, or link a system export
  • If an artifact is expected from an integration, it may appear automatically with minimal setup

Validation

  • When an artifact is added, the platform’s AI automatically checks:
    • Relevance to the linked control/action
  • Artifacts that pass validation are marked as Valid. Those that fail are flagged with an explanation (e.g., wrong file type, outdated, or incomplete)

Linking to Controls and Actions

  • Each artifact is attached to the action or control it supports
  • Users can view mappings directly from the artifact detail panel
  • Artifacts may support multiple controls if applicable

Managing Existing Artifacts

  • Users can click on any artifact to:
    • Change the title or description for clarity
    • Preview attached documents without downloading
    • See which controls and actions the artifact is linked to