Compliance Evidence Builder
Auto-generate audit logs and export evidence to support PCI DSS and SOC 2 preparation (SOC 2 audit in progress — not yet certified).
Securing enterprise contracts requires demonstrating rigorous compliance controls. RaksHex collects scan telemetry and security events to construct auditor-ready evidence logs. We are not currently SOC 2 or PCI DSS certified — our SOC 2 audit is in progress, and these tools are designed to help you build toward that evidence, not to assert a certification we don't hold.
Supported Frameworks
- PCI DSS: Maps API vulnerability findings to relevant requirements around vulnerability management and secure coding.
- SOC 2: Evidence building for the Common Criteria (Security, Confidentiality, and Availability). Our own SOC 2 audit is in progress.
- OWASP LLM Top 10: Verification logs showing that inputs are scanned for prompt injections (LLM01) and sensitive data disclosures (LLM06).
Audit Exports
You can export logs as hashed PDFs or CSV spreadsheets from the Compliance tab in the dashboard for use in your own audit or compliance workflow.
