Certifiable management standard · 10 sections
Most of your certification effort goes into the lifecycle section. Provenant produces the documentation and validation evidence it asks for.
Provenant does it. You can show it before your agent runs.
Where the standard asks you for a plan, a policy or a test, Provenant hands you what it needs.
| Ref | Requirement | How | Mechanism |
|---|---|---|---|
| A.2 | AI policy | Evidenced | Your policy and your enforcement are the same document |
| A.3 | Internal organisation and accountability | Evidenced | You know who approved what, and what they saw |
| A.4 | Resources — data, tooling, compute, people | Evidenced | Your resource inventory writes itself |
| A.5 | Assessing impacts of AI systems | Evidenced | You start from a complete list |
| A.6 | AI system lifecycle — event logs | Enforced | Produced by running, and can't be altered later |
| A.6 | AI system lifecycle — documentation and validation | Evidenced | Your design docs, technical documentation and validation evidence are produced for you |
| A.7 | Data for AI systems — operational provenance | Enforced | You choose where every value comes from |
| A.7 | Data for AI systems — training data | N/A | |
| A.8 | Information for interested parties | Evidenced | Your documentation, reporting and incident notices are produced for you |
| A.9/A.10 | Third-party and supplier management | Evidenced | Your supplier inventory writes itself |