Weekly security posture sweep

Agent: Proofroom Security Agent · Operated by Proofroom · Accountable human: Simon Brown

Last verified 2026-07-30 00:13:47 UTC · Last evidence 2026-07-29 21:27:31 UTC

evidence verified

This is one of Proofroom's own internal agents. The company runs on the product it sells: this room is the live, public audit trail of that claim. View the example Evidence Pack (redacted snapshot of what customers receive).

Declared scope

Read-only posture checks and operator reports. Dependency upgrades and key rotations are proposed for approval; disabling logging or modifying RLS is forbidden.

Allowed actions

  • run read-only posture checks
  • produce severity-ranked posture reports
  • propose remediations for operator approval

Prohibited actions

  • disable or modify logging
  • modify row level security
  • execute remediations without approval
  • suppress findings

Oversight model

The sweep and report are autonomous and receipted. Every remediation (dependency upgrades, key rotations) is tier-2 operator approval.

ActionTier
security.rotate_keyapproval
security.dependency_upgradeapproval
security.send_reportautonomous
security.disable_loggingforbidden
security.modify_rlsforbidden

Active playbook: version 2, SHA-256 c5f1c6dd4964ad2c

Evidence Coverage Score

91/ 100
  • Declaration completeness20/20

    Scope summary, allowed actions, prohibited actions and oversight model declared on the passport.

  • Chain integrity25/25

    All 22 events recomputed and verified.

  • Evidence freshness15/15

    Last event 3 hours ago against a 10-day decay window.

  • Activity depth12/15

    22 events recorded (full marks at 50 or more).

  • Material action coverage15/15

    10 of 10 material actions carry receipts.

  • Source strength bonus4/10

    Evidence includes confirmation beyond self-reporting.

Chain integrity

chain valid22 events recomputed and verifiedVerified 2026-07-30 00:13:02 UTC

Every event hash covers the previous event's hash. Editing any past event breaks every hash after it.

Recent Action Receipts

Full receipt detail is hash-sealed at capture and available under review access.

PRF-13178in scopeself reported#21939d6c80cb38af082026-07-29 21:27:27 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-13043in scopeself reported#195839e4878a29b4682026-07-27 08:00:39 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-12671in scopeself reported#170501aceea5cc8ea42026-07-20 08:01:13 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-12302in scopeself reported#15747a0d5050bd9c492026-07-13 08:00:46 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-11932in scopeself reported#13b5aabac488a945f82026-07-06 08:00:25 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-11479in scopeself reported#11bda3b94bc15964482026-07-03 12:41:37 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-11234in scopeself reported#9a6496647536ec2952026-06-29 08:03:24 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-11081in scopeself reported#7f8d5fca9740a21972026-06-28 17:54:26 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-10739in scopeself reported#5453168e0492ba5c82026-06-22 08:01:43 UTC

Material action recorded: external message sent. Full receipt detail is hash-sealed at capture and available under review access.

PRF-10116n/a - self-audit eventoperator confirmed#345284fc38a3ec03c2026-06-10 15:26:51 UTC

Material action recorded: playbook activated. Full receipt detail is hash-sealed at capture and available under review access.

Framework crosswalk

Framework references indicate topical mapping between this evidence trail and themes in the named frameworks. They do not indicate certification, attestation or compliance with any framework.

ISO 42001

  • A.6.2 (AI system life cycle)

    Defined scope and intended use of the AI system

    Mapped by: Use case passport: scope summary, allowed and prohibited actions

  • A.9.2 (Processes for responsible use)

    Human oversight of AI system operation

    Mapped by: Oversight model and executable decision-rights tiers with approval trail

  • A.6.2.8 (Event logging)

    Recording of AI system activity

    Mapped by: Append-only, hash-chained evidence events with sequence integrity verification

  • A.8.2 (System documentation)

    Information available to interested parties

    Mapped by: Live proof room, Action Receipts and Evidence Pack with declared evidence levels

SIG

  • AI module: governance

    Inventory and ownership of AI agents

    Mapped by: Agent passport with accountable human and registered use cases

  • AI module: operations

    Monitoring and exception handling for automated agents

    Mapped by: Run ledger, spend caps, exception events and operator escalation receipts

CAIQ

  • AIS (Application and Interface Security)

    Audit trail of application actions

    Mapped by: Action Receipts with authority status and tamper-evident chain

  • GRC (Governance, Risk and Compliance)

    Documented risk boundaries for automated systems

    Mapped by: Prohibited actions, forbidden decision tiers and kill-switch evidence

NIST

  • AI RMF: Govern

    Accountability structures for AI systems

    Mapped by: Accountable human on every internal agent; approvals resolved by named operators

  • AI RMF: Measure

    Tracking of AI system behaviour over time

    Mapped by: Evidence Coverage Score with component breakdown and status decay

  • AI agent guidance: least privilege

    Constraining agent capabilities to declared scope

    Mapped by: Tool allowlists, decision-rights tiers and out-of-scope receipt flagging

What this room does not verify

Proofroom provides evidence of declared agent scope and submitted activity events for a specific use case. Verification status indicates the presence, source level and integrity of an evidence trail. It does not certify that the agent is safe, accurate, unbiased, legally compliant or suitable for all uses. Evidence completeness depends on the sources connected and events submitted. Framework references indicate topical mapping, not certification or compliance.

Live room: status decays without fresh evidence. Generated by Proofroom.