Compliance

From runtime decision to framework control — one rail.

Auditors spend weeks digging through logs. KYE™ exports signed proof in minutes. Fetch a URL, verify offline, map to your controls — 266 mappings across 249 frameworks, automated. The KYE™ Compliance Mapping Rail™ binds every runtime control to the obligation it satisfies; the 5-tier KYE™ Conformant™ / KYE™ Certified™ badge ladder makes the claim public.

Out-of-the-box coverage · live

249 frameworks, six categories, bijection-checked.

Every framework below has a per-requirement bijection map to the KYE™ runtime artefacts that enforce it. Pages regenerate from coverage-registry.json — the registry is the source of truth, the badge grid is the index.

Click any badge for the per-requirement bijection map. Coverage refreshes from the registry on every deploy — live dashboard →

Compliance frameworks

From AI governance to sector-grade authority control.

KYE Protocol™ provides a protocol-level evidence layer for regulated AI and automation. Use KYE™ Compliance Mapping Rail™ profiles to bind runtime controls and signed evidence packs to the specific obligations every framework imposes. KYE™ does not replace these frameworks — it produces the evidence they consume.

EU AI Act

KYE™ EU AI Act Profile™

EU AI Act Maps KYE™ entity, authority, capability, state, human oversight, and audit controls to EU AI Act obligations (Art. 9–18, 26, 50, 72, 73, 79).

  • KYE-EUAIACT-001 Entity accountability mapping
  • KYE-EUAIACT-002 AI system & AI agent registry
  • KYE-EUAIACT-003 Capability manifest + risk classification
  • KYE-EUAIACT-004 Human oversight decision gates
  • KYE-EUAIACT-005 Runtime authority decision logs
  • KYE-EUAIACT-006 Technical documentation evidence pack
  • KYE-EUAIACT-007 Corrective action & revocation trail
  • KYE-EUAIACT-008 Provider / deployer / operator role mapping
  • KYE-EUAIACT-009 High-risk workflow profile
  • KYE-EUAIACT-010 Post-market monitoring evidence hooks
Horizontal frameworks

10 horizontal frameworks. One evidence model.

Horizontal frameworks All ten exposed via the KYE™ Compliance Mapping Rail™ schema (schemas/compliance-mapping.json) — one document binds a control to the KYE™ runtime events that produce its evidence.

  • ISO/IEC 42001 — AI management system inventory, responsibility mapping, risk/impact, lifecycle controls, oversight logs.
  • NIST AI RMF — Govern / Map / Measure / Manage evidence around actors, risks, controls, decisions, lifecycle.
  • ISO 27001:2022 — Access control, asset/entity inventory, privileged access, logging, incident evidence.
  • SOC 2 — Security, availability, confidentiality, change management, access reviews, audit evidence.
  • GDPR / UK GDPR — Role mapping, lawful authority trail, data access, automated decision governance, audit.
  • DORA — ICT third-party authority, operational resilience, incident response, auditability.
  • NIS2 — Cybersecurity governance, incident traceability, supply-chain controls, access authority.
  • PCI DSS 4.0 — Payment capability restrictions, credential state, wallet/payment authority, audit logs.
  • HIPAA — Healthcare entity access, minimum-necessary, emergency/break-glass, audit trails.
  • NIST 800-207 — Zero-Trust Architecture: identity, device, network, application, data telemetry.

KYE™ produces evidence; certifications remain the customer’s. KYE™ does not replace legal counsel, regulatory filings, conformity assessments, or notified-body involvement.

Conformance & Certification

Trust, but verify.

KYE™ implementations can be tested against open conformance suites and verified through the public KYE™ Certification Registry. Earn badges that prove protocol alignment across entity authority, state, delegation, decisions, audit trails, and evidence packs — with annual renewal, signed records, and public-key verification.

KYE™ Self-Tested™

Run the open conformance pack locally. Free, vendor-published. Backed by a passing run of conformance-run.json.

KYE™ Self-Attested™

Sign + publish a declaration of conformance. Self-audit + signed self-attestation.json. Quarterly renewal. Not equivalent to certified.

KYE™ Conformant™

Program-verified test run. Variants: Core / Authority / Capability / Evidence / Recovery / Payments / Healthcare / EU AI Act. Annual renewal.

KYE™ Certified™

Reviewed by KYE™ program + listed in registry. Signed certification-record.json · public verification URL · revocation tracking · 12-month renewal.

Govern the governance layer. KYE™ Self-Audit & Attestation Profile lets implementations continuously verify their own engines, decisions, audit trails, and Evidence Packs™. Five checks: Engine Health, Decision Replay, Audit-Trail Integrity, Evidence Completeness, Policy Coverage.

Conformance maturity ladder

Five rungs, contiguous — from schema-valid to reality-coupled.

The KYE™ Conformance Maturity Levels (L1–L5) are the procurement-facing depth gradient that sits on top of the binary KYE™ Conformance Pack™. The pack answers “does the fixed fixture set pass?”; the ladder answers “how deep does enforcement reach at this deployment?” The rungs are contiguous — a deployment claims a level only when every capability of that level and every level below it is satisfied. No level-skipping.

L1 · Schema-valid

L1

Every emitted artefact validates against its locked KYE™ schema and every identifier conforms to the KYE™ ID format.

L2 · Entity + delegation captured

L2

Entity resolution and the full delegation chain are recorded in the evidence layer, not reconstructed later.

L3 · Admissibility enforced

L3

Action Admissibility™ is gated at runtime before the action runs — fail-closed when the decision point is unreachable.

L4 · Finality replayable

L4

Authority Finality™ and the Replay-Proof™ are HSM-signed and derivable from the published public keys alone — banking-grade.

L5 · Reality-coupling + contestability + revocation

L5

Full cascading revocation, delegated auditability + contestability surfaces, and reality-coupling drift wired into runtime effect.

L4 is the rung a Tier-1 bank’s GRC team asks for first: signed, sealed finality whose proof recomputes from public keys with zero trust in the runtime that produced it.

Try it live

Verify a sample evidence pack in your browser.

Below is the Evidence Pack™ Viewer that ships at widgets.html. Verify the signature offline, replay the bound decision, walk the audit chain, project to SOC 2 / ISO 27001 / EU AI Act / PSD3 / DORA. No signup, no install.

Trust & assurance

Built to be handed to your audit team on day one.

Open spec. Reference implementation. Conformance fixture pack. Cryptographic proof bundles. Nine-framework control mapping. RFC 7807 error envelope. Quantitative SLA tiers. The artefacts a Tier-1 bank’s GRC team needs are in the repo, not in a sales deck.

Endpoints

87

Routed in the reference Gateway. Every state-changing endpoint accepts an Idempotency-Key and emits a correlated audit event.

Profiles · normative

15

Core, Gateway, Federation, Credentials, Attestation, Signals, Transparency, Conformance, Treasury, Custody, Healthcare, Telemetry, Capability, Recovery, Payments — plus 3 payment overlays.

Conformance fixtures

37

Each fixture is a deterministic black-box test the auditor replays against any conformant Gateway. conformance-report.json emits machine-readable evidence.

Control mappings

266

SOC 2 · ISO 27001:2022 · PCI DSS 4.0 · PSD2/PSD3 · DORA · NIS2 · EU AI Act · NIST 800-207 · HIPAA. Each row cites the KYE™ artefact + the Gateway endpoint that produces it.

SLA tiers

Tier-1 Bank (p99 ≤ 50 ms, 1k rps), Tier-2 Mid-market, Tier-3 Reference. Quantitative claims backed by signed conformance reports.

Tests · all green

220+

KYE™ Reference Gateway™ · ePDP · PEP · TS / Python / Go SDKs · webhook vectors · schema validations · 22 OPA Rego + Cerbos policy fixtures at parity.

Mapped to SOC 2 · ISO 27001:2022 · PCI DSS 4.0 · PSD2/PSD3 · DORA · NIS2 · EU AI Act · NIST 800-207 · HIPAA

KYE™ produces evidence; certifications are the customer’s. The repo ships a complete control-mapping document. For each KYE™ artefact (entity record, delegation, scope, credential, attestation, audit event, proof bundle, signal, transparency receipt, capability grant, recovery proof, break-glass grant, compromise report, state transition) it lists which control is satisfied and the exact endpoint to extract it.

Banking-grade

Production posture

Banking-grade

  • Append-only audit chain with point-in-time replay (POST /v1/audit/point-in-time)
  • Ed25519-signed proof bundles — verifiable with public keys alone
  • Cascading stop signals (entity → delegations → payment authorities → access rights → capability grants — in milliseconds)
  • Break-glass authority with mandatory post-hoc review and time-cap
  • Key rotation gated by break-glass grant (POST /v1/keys:rotate)
  • Idempotency keys + signed webhooks + replay window + dead-letter
  • Fail-closed PEP for high-risk actions on PDP unreachable
  • Reference Rego sPDPs (22/22 passing)
Open governance

What ships open

Open governance

  • Vocabulary, ID format, schemas, OpenAPI — Apache 2.0
  • KYE™ Reference Gateway™, three SDKs, conformance fixtures — Apache 2.0
  • Reason-codes registry, control mappings, threat model — in the repo
  • Proprietary mechanisms are separate — the open contract is and will remain royalty-free for any conformant implementation
  • Trademark policy lets you say “KYE Protocol™-compatible” once you pass the conformance pack
  • Discussions repo for RFCs, profile proposals, integration patterns

Ready to see your AI agents flagged?

Start in shadow mode. We’ll deliver your first Evidence Pack™ in 4–8 weeks.

Canonical KYE™ surfaces referenced on this page: Delegated Auditability · KYE Protocol™.

Coverage 5 pages

  • Framework Coverage (machine-readable)Live machine-readable coverage of every regulatory framework KYE Protocol™ maps to: HAARF, MHRA, FDA TPLC, EU AI Act, NHS DSPT, NIST AI RMF, ISO/IEC 42001 +…
  • Regulatory coverageKYE Protocol™ regulatory coverage: 249 frameworks decomposed into 853 requirement groups, each marked Enforced, Designed, or Out of scope — generated from a…
  • Coverage heatmapCoverage heatmap of every regulatory framework KYE Protocol™ maps to. Rows are frameworks; columns are control families; cells are coverage %% rendered…
  • Basel Governance HubThe Basel Governance Hub maps every BCBS 239 principle (all 14) to the KYE Protocol™ artefact, event family, and verification gate that binds it — honest…
  • EU AI Act timeline, corrected for the Digital OmnibusA metro-map view of the EU AI Act enforcement timeline, corrected for the adopted Digital Omnibus (PE-CONS 30/26): general application 2 August 2026, Annex III…

Framework library 11 pages

  • AI System Compliance CardThe KYE Protocol™ AI System Compliance Card is a public-key-verifiable, machine-readable, human-readable summary of an AI system's KYE™ bindings
  • Assurance Card ProfileKYE™ Assurance Card Profile™ — turn KYE™ runtime evidence into a living lifecycle assurance record per delegated entity
  • Compliance frameworksPer-framework reference: which KYE Protocol™ controls map to which obligation, with framework scope, official source, and the canonical KYE™ Compliance…
  • OSCAL compatibilityKYE Protocol™ is OSCAL-native: every signed evidence pack maps deterministically to NIST OSCAL component-definition, system-security-plan and…
  • EC-Council ADG ↔ KYE Protocol™ crosswalkThe analyst-grade crosswalk between EC-Council ADG (Adopt · Defend · Govern) and KYE Protocol™ primitives. ADG defines what controls organisations should…
  • DORA (Framework library)DORA — Digital Operational Resilience Act — control mappings to KYE Protocol™ canonical artefacts. Financial entities in the EU — credit institutions, payment…
  • EU AI Act (Framework library)EU AI Act — Articles 14 + 15 (Human Oversight + Accuracy/Robustness) — control mappings to KYE Protocol™ canonical artefacts. High-risk AI systems placed on…
  • ISO/IEC 42001:2023 (Framework library)ISO/IEC 42001:2023 — AI Management Systems — control mappings to KYE Protocol™ canonical artefacts. Any organisation that provides, develops, or uses AI…

Islamic finance standards 21 pages

  • AAOIFI Auditing Standards (ASIFI)AAOIFI Auditing Standards (ASIFI) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • AAOIFI Financial Accounting Standards (FAS)AAOIFI Financial Accounting Standards (FAS) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • AAOIFI Governance Standards (GSIFI)AAOIFI Governance Standards (GSIFI) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • AAOIFI Shariah StandardsAAOIFI Shariah Standards coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Bank Negara MalaysiaBank Negara Malaysia — Shariah Governance Policy Document 2019 coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • CBUAECBUAE — Higher Shariah Authority and Shariah Governance Standard coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • Central Bank of BahrainCentral Bank of Bahrain — Shariah Governance Module coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Central Bank of JordanCentral Bank of Jordan — Islamic Banking Shariah Governance coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…

Health and life sciences 23 pages

  • NIST 800-53 Rev 5 hub (universal control taxonomy)NIST 800-53 Rev 5 is the universal control taxonomy KYE Protocol™ uses as the hub for every regulatory crosswalk. 20 control families, 25 headline controls…
  • CDSCO Medical Devices Rules 2017CDSCO Medical Devices Rules 2017 coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • CLIACLIA — US Clinical Laboratory Improvement Amendments (42 CFR Part 493) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • COSHHCOSHH — Control of Substances Hazardous to Health Regulations 2002 (UK) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact…
  • FDA + EMAFDA + EMA — AI / Provenance Expectations for AI-Derived Candidates in Regulated Pipelines coverage by KYE Protocol™ — every requirement bijection-mapped to the…
  • ICH Q1ICH Q1 — Stability Testing coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • ICH Q10ICH Q10 — Pharmaceutical Quality System coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • ICH Q2(R2)ICH Q2(R2) — Validation of Analytical Procedures coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

AI governance frameworks 37 pages

  • EU AI ActEU AI Act — Regulation (EU) 2024/1689 coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • ISO/IEC 42001:2023ISO/IEC 42001:2023 — AI Management System (AIMS) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • NIST AI Risk Management Framework 1.0 + PlaybookNIST AI Risk Management Framework 1.0 + Playbook coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • ABA Model Rules of Professional Conduct (AI-relevant duties)ABA Model Rules of Professional Conduct (AI-relevant duties) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…
  • AI Playbook for the UK GovernmentAI Playbook for the UK Government coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • AI Solutions FrameworkAI Solutions Framework — Enterprise AI-Adoption Control Framework (IG1–IG3) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact…
  • AI Testing and Assurance Framework for the Public SectorAI Testing and Assurance Framework for the Public Sector coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • AI-CAIQ (STAR-for-AI)AI-CAIQ (STAR-for-AI) — evidence-generated self-assessment coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

Privacy and data protection 26 pages

  • GDPRGDPR — General Data Protection Regulation coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Act CXII of 2011 on Informational Self-Determination and Freedom of Information (Info Act, GDPR-aligned)Act CXII of 2011 on Informational Self-Determination and Freedom of Information (Info Act, GDPR-aligned) coverage by KYE Protocol™ — every requirement…
  • Act No. 18/2018 Coll. on Personal Data ProtectionAct No. 18/2018 Coll. on Personal Data Protection coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Alberta PIPAAlberta PIPA — Personal Information Protection Act (Alberta) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…
  • APPIAPPI — Act on the Protection of Personal Information coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • BC PIPABC PIPA — Personal Information Protection Act (British Columbia) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • BDSGBDSG — Bundesdatenschutzgesetz (Federal Data Protection Act, 2018) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • Data Protection Act 2018Data Protection Act 2018 coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

Security and resilience 23 pages

  • DORADORA — Digital Operational Resilience Act coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • FedRAMPFedRAMP — Federal Risk and Authorization Management Program coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…
  • NIS2NIS2 — Network and Information Security Directive coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • NIST Cybersecurity Framework 2.0NIST Cybersecurity Framework 2.0 — Core + Tiers + Profiles coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • PCI DSS 4.0PCI DSS 4.0 — Payment Card Industry Data Security Standard coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • SOC 2SOC 2 — Trust Services Criteria coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • APRA CPS 230APRA CPS 230 — Operational Risk Management coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • CERT-In Cyber Security DirectionsCERT-In Cyber Security Directions coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

Audit, tax and accounting 12 pages

  • AICPA SSTSAICPA SSTS — Statements on Standards for Tax Services coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Dodd-Frank §922 + SEC Rule 21FDodd-Frank §922 + SEC Rule 21F — Whistleblower Programme coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • EU Whistleblower DirectiveEU Whistleblower Directive — Directive (EU) 2019/1937 coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • FRC Ethical StandardFRC Ethical Standard — Integrity, Objectivity & Independence for Auditors & Accountants coverage by KYE Protocol™ — every requirement bijection-mapped to the…
  • ISA (UK)ISA (UK) — International Standards on Auditing (UK) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • OECD Pillar TwoOECD Pillar Two — GloBE Rules (Global Minimum Tax) & BEPS coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • SOX §404SOX §404 — Internal Control over Financial Reporting (tax-provision controls) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™…
  • SOX §806SOX §806 — Whistleblower Anti-Retaliation (18 U.S.C. §1514A) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…

Financial services and AML 27 pages

  • AIFMD / UCITSAIFMD / UCITS — Fund Manager Authority, Risk Management & Investment Limits coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact…
  • API 580 / API 581API 580 / API 581 — Risk-Based Inspection (RBI) for fixed equipment in the oil, gas and petrochemical industry coverage by KYE Protocol™ — every requirement…
  • BCBS 239BCBS 239 — Risk Data Aggregation & Risk Reporting Principles coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces…
  • Canada Consumer-Driven Banking Framework (open banking)Canada Consumer-Driven Banking Framework (open banking) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • CIPSCIPS — Cross-Border Interbank Payment System (RMB) — payment-authority governance coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™…
  • ECOA / Regulation BECOA / Regulation B — Equal Credit Opportunity Act coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • EU Sixth Anti-Money Laundering Directive (6AMLD)EU Sixth Anti-Money Laundering Directive (6AMLD) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • FATF 40 RecommendationsFATF 40 Recommendations — International AML/CFT Standards coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

Other frameworks 69 pages

  • AIDAAIDA — Artificial Intelligence and Data Act (Bill C-27, federal) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • Australia GroupAustralia Group — Biological & Chemical Dual-Use Export Controls coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…
  • BruneiBrunei — Syariah Financial Supervisory Board and BDCB coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • CLC Code of ConductCLC Code of Conduct — Council for Licensed Conveyancers coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Codice in materia di protezione dei dati personali (D.Lgs. 196/2003, as amended by D.Lgs. 101/2018)Codice in materia di protezione dei dati personali (D.Lgs. 196/2003, as amended by D.Lgs. 101/2018) coverage by KYE Protocol™ — every requirement…
  • CWC + BWCCWC + BWC — Chemical Weapons Convention & Biological Weapons Convention coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact…
  • Databeskyttelsesloven (Lov nr. 502 af 23. maj 2018)Databeskyttelsesloven (Lov nr. 502 af 23. maj 2018) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.
  • Datenschutzgesetz (DSG, BGBl. I Nr. 165/1999, as amended 2018)Datenschutzgesetz (DSG, BGBl. I Nr. 165/1999, as amended 2018) coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that…

Evidence and reports 19 pages

  • Evidence Pack™ demoA live, signed Evidence Pack™: supplier_payment_agent prepares a £950 payment. Observed Action → Shadow Evaluation → Authority Gap → Guard Recommendation
  • KYE™ Delegated Auditability™ (Evidence and reports)KYE™ adds a delegated-authority and evidence layer on top of your existing IAM, OAuth, API gateway, workflow, SIEM, GRC and AI-agent stack
  • PlaybooksThree buyer-facing run-throughs for KYE Protocol™: how a buyer runs the 28-day Audit Pilot, how a vendor self-attests conformance, and how a…
  • Example reports by roleOne shelf of representative report envelopes, one per stakeholder — auditor, board, CISO, consultant, customer, dispute resolution, DPO, general counsel…
  • KYE™ Audit Pilot™A 28-day, shadow-mode-only KYE™ Audit Pilot™ from kickoff to signed pilot report. Concrete steps, named artefacts, regulatory-citation table, owner…
  • KYE™ Rights, Disputes & Disclosure Rail™KYE™ Rights, Disputes & Disclosure Rail™ — the one unifying rail for every rights request (DSAR), every contestation of an automated decision, every…
  • Auditor stakeholder reportRepresentative report envelope for a External Auditor. Synthetic tenant — Control-mapped findings · public-key verifiable offline. Signed HTML; anyone with the…
  • Board stakeholder reportRepresentative report envelope for a Board / Executive. Synthetic tenant — Executive verdict-first, pyramid-principle summary. Signed HTML; anyone with the…