Features

One platform. Seven core features.

From automated control status through the cryptographically sealed evidence chain to the public Trust Center — every feature works standalone and connects across all framework packs.

Overview

Choose your feature.

Framework PacksCompliance Engine
One engine core, every regime as a pack

Deterministic control assessment, AI-assisted guidance, and a regulatory change feed for NIS2, DORA, ISO 27001, EU AI Act, GDPR, and SOC 2.

Feature details →
Cryptographic Evidence ChainSecurity Feature
Hash Chain · RSA-PSS · RFC 3161

Every piece of evidence is hashed, chained, signed, and independently timestamped — publicly verifiable without ReportAct access.

Feature details →
Trust CenterTrust Feature
Public trust page

A configurable page with documents, resources, and status updates; AI-assisted questionnaire responses.

Feature details →
Vendor Intelligence & Risk RegisterRisk & Vendors
Vendors, ratings, risks

AI-classified vendor register, external security ratings, a risk register following ISO 27005 and a generic 5×5 model, and the DORA Register of Information.

Feature details →
Incident ManagementRegulatory Reporting
DORA · NIS2 · EU AI Act

Reporting cascades with deadline countdowns, a signed reporting pipeline with pre-submission checks, and TLPT and fit-&-proper evidence.

Feature details →
GDPR SuiteData Protection
RoPA · DPIA · DSAR

A record of processing activities, data protection impact assessments, and a public self-service channel for data subject requests.

Feature details →
Integrations & PlatformPlatform
Import · Sync · Monitoring

Bulk CSV import, system connections, around 35 automated monitoring checks, and automation rules as the operational base.

Feature details →
Next step

See a feature live, on a real piece of evidence.

In 30 minutes, we'll show you which feature makes the biggest difference for your regime.