LensReading which lens this session carries.

Auditor evidence pack

Device at confirm

Information Technology · End-User Compute · line IT3A · Device Provisioning. This pack names every action taken on this unit, who or what took it, the authority that permitted it, and the model, prompt and policy versions in force at that moment.

Chain verified

Every record links to the one before it and hashes to its stored value. 5 records were re-hashed on this page load, in order, starting from the genesis value. Nothing was read from a cached verdict.

hash = sha256(prevHash + "|" + JSON{seq, unitRef, actor, action, outcome, occurredAt})

Records
5
Append-only, sequenced
Agent actions
5
Taken by software
Human actions
0
Taken by a named person
Refusals
0
Blocked by the authority register
Corrections
0
Later record supersedes an earlier one
Legal hold
None
Free to age out on schedule

The unit

What the work was, and where it sits

Reference
IT3A-1051
Subject
Owen Marchetti
Requested by
Marcus Achebe
Value
$3k
Materiality
low
Currently held by
IT spine (gbs)
Sub-function owner
Director, Workplace Technology
Orchestrator
End-User Compute Orchestrator

Every action, in order

Actor, authority, versions in force, and the hash link to the record before it

1
Device Provisioning AgentgbsCleared

Cleared order

2026-08-18 08:25:00ZAuthority IT3-AUTH-A1 · cap $25,000Jurisdiction SGAutonomy A4Retention TECH-3Y
Prompt
task-execution@p21
Policy
segregation-of-duties@v4
Tools
ledger-write@t7, document-fetch@t9
in 26e04442...c8c58dout 19fb8b51...2286e7artifact ART-IT3A-1007-1 genesis 2a5c59bc...141aa9
2
Device Provisioning AgentgbsCleared

Cleared image

2026-08-18 08:32:00ZAuthority IT3-AUTH-A1 · cap $25,000Jurisdiction SGAutonomy A4Retention TECH-3Y
Prompt
task-execution@p21
Policy
segregation-of-duties@v4
Tools
ledger-write@t7, document-fetch@t9
in e03d6a39...b72906out 0594c1b2...84b017artifact ART-IT3A-1007-2 2a5c59bc...141aa9 5f52e33c...c9990e
3
Refresh Planning AgenttaskCleared

Cleared ship

2026-08-18 08:39:00ZAuthority IT3-AUTH-A1 · cap $25,000Jurisdiction SGAutonomy A4Retention TECH-3Y
Prompt
task-execution@p21
Policy
segregation-of-duties@v4
Tools
document-fetch@t9, read-only-lookup@t12
in 8efba50d...b42a36out 0d73ef30...9a1979artifact ART-IT3A-1007-3 5f52e33c...c9990e 3b006554...4e3ef7
4
Device Provisioning AgentgbsCleared

Cleared enroll

2026-08-18 08:46:00ZAuthority IT3-AUTH-A1 · cap $25,000Jurisdiction SGAutonomy A4Retention TECH-3Y
Prompt
task-execution@p21
Policy
segregation-of-duties@v4
Tools
ledger-write@t7, document-fetch@t9
in 7013c1d8...60a63dout 3da05880...1937e4artifact ART-IT3A-1007-4 3b006554...4e3ef7 83689178...837c09
5
Device Provisioning AgentgbsIn progress

Holding at confirm

2026-08-18 08:53:00ZAuthority IT3-AUTH-A1 · cap $25,000Jurisdiction SGAutonomy A4Retention TECH-3Y
Prompt
task-execution@p21
Policy
segregation-of-duties@v4
Tools
ledger-write@t7, document-fetch@t9
in 1c796162...c19cd9out 62e3001a...b4a948artifact ART-IT3A-1007-5 83689178...837c09 117153b0...00c038

Authority relied on

Who was allowed to do this, up to what value, in which jurisdictions

IT3-AUTH-A1ActiveEnd-User Compute Orchestrator

Any unit on a end-user compute line where every intake check passed, the policy in force is current, and the value sits inside the cap below.

Cap $250,000US · UK · DE · SG · AU · FR · BRDelegated from Director, Workplace TechnologyExpires 2026-12-06

Versions in force

Exactly what was running when these actions were taken

KindIdentifierVersionStatusOwner
modelextract-lite2.9currentPlatform model council
policysegregation-of-dutiesv4currentInternal audit
prompttask-executionp21currentShared service engineering
toolsetledger-writet7currentFinance systems
toolsetread-only-lookupt12currentPlatform engineering
toolsetdocument-fetcht9currentShared service engineering

Gates on this line

The control points this unit had to clear

This line runs without a formal gate.

Records schedule and holds

How long this evidence must be kept, and whether it is frozen

TECH-3Y3 years
Technology change and access evidence
Security review and change audit requirement.
Deleted at three years from the change closing.

What this pack proves, and what it does not

Read this before you rely on it

It does prove
  • Every action carries a named actor, an actor kind, and a timestamp.
  • Every action names the authority grant that permitted it and the cap that grant carries.
  • Every action stamps the model, prompt, policy and tool versions in force at that moment.
  • Corrections are additive. A later record supersedes an earlier one and says why; the earlier record is never edited or deleted.
  • The chain is re-hashed live on this page, so a single altered field is detected immediately.
It does not prove
  • It is not tamper-proof against an attacker with write access to the store, who could rewrite the whole chain from genesis. Making that impossible requires publishing chain tips to a store this application cannot write to. That anchor is not built, and this page does not claim it.
  • The evidence in this demonstration is modeled from a simulated estate, not captured from production systems.
  • Identity here is the actor name recorded on the action. Cryptographic agent identity and signed attestation are a separate piece of work.