Platform
The evidence model
Every rule, every resource, every scan is recorded as a timestamped, attributed, immutable entry. This is what your auditor receives.
The evidence model
Evidence for regulators, not dashboards for engineers.
Every rule, every resource, every scan is recorded as a timestamped, attributed, immutable entry. This is what your auditor receives.
Every violation is an evidence recordRule identifier, affected resource, the exact property evaluated: expected value, actual value, result. Captured at scan time, in production, exactly as shown here.
Timestamped and attributedFirst detected, last evaluated, subscription and resource attribution on every entry. UTC instants, never approximations.
Immutable by designEvaluation records are write-once at the database layer. Historical state is permanent. Never updated, never deleted. Seven-year retention.
Regulator-ready exportPer-framework evidence export, scoped to a named subscription, ready for supervisory submission.
Live violation record: captured from production
Evidence detail
Every violation carries its own evidence.
A DORA ICT Risk Management finding: the rule, the affected resource, and the evidence snapshot showing each evaluated property with its expected and actual value. Remediation guidance tells your team exactly what to change. Equalis OpsReg never changes it for you.
Property-level graindiagnosticSettings.enabled, retention windows, encryption state: the exact property, not a vague control description.
Workflow without write accessAssign, track, mark addressed, queue a re-scan. The re-scan verifies your fix; the platform never applies it.

Live violation record: captured from production