AI management system
6 of 9 answered from the record. 3 obligations still open. 3 more are outside the record — real obligations that no runtime log can evidence, listed rather than counted.
| Obligation | What proves it | Status |
|---|---|---|
| Every AI system in use is written down, with somebody responsible for it.A.3.2 · A.4.2 | One identity per agent, carrying the human it acts on behalf of.5 agent identities on the record · #0, #4, #6, #15 | Satisfiedfrom the record |
| What each system did is logged in a form that survives an adversarial reader.A.6.2.8 | Append-only storage, hash-chained, countersigned by an independent authority.4827 actions · 184 checkpoints, 180 countersigned · #0 | Satisfiedfrom the record |
| A spend ceiling per agent, with a burn-rate guard measuring against it.0 of 5 agents bounded · Set daily spend ceilings for 5 agents. |
| Openfrom configuration |
| Decisions that matter to a person are reviewed by a named human first.A.9.3 | The action is held before it runs and released under a person's name.released by dev@lender.io · #20, #50, #57, #73 | Satisfiedfrom the record |
| Agents may only reach the tools they were granted.A.6.2.5 | Deny by default; a refusal names the rule and version that refused it.181 refusals recorded · #18, #23, #24, #48 | Satisfiedfrom the record |
| The third-party models your systems depend on are identified.A.10.2 | Every model call carries its provider and model id, or says it could not be priced.1 provider · 179 unpriced, flagged | Satisfiedfrom the record |
| Incidents involving an AI system can be reconstructed end to end.A.6.2.6 | One session id joins the model call, the tool call, the refusal and the human decision.2 sessions corroborated by a second plane | Satisfiedfrom the record |
| A system that stops reporting is noticed.A.6.2.7 | Silence past a day is a finding, not an absence.1 of 5 agents have gone quiet · Instrument the agents that stopped reporting. | Openfrom the record |
| A person affected by a decision can be told the reason it was made.A.8.3 | An adverse decision is refused unless it carries a structured reason.537 of 716 decisions carry no reason · #8, #9, #13, #38 · Arm the adverse-decision rule. | Openfrom the record |
| An impact assessment exists before a system is deployed.A.5.2 | A document written before anything ran. Nothing in a runtime record stands in for it.Attach yours to the exported file. | Outside the recordnothing here can answer it |
| The organisation has an AI policy, approved at the top.A.2.2 | Governance, not runtime. Your compliance platform is the right home for it.Attach or link it. | Outside the recordnothing here can answer it |
| The people operating these systems are competent for the job.A.4.4 | Training records and role definitions, which this product never sees.Held in your HR system. | Outside the recordnothing here can answer it |