EVIDENCE OUTPUTS
- Applicability and scope record
- Evidence index
- Finding and confidence log
- Remediation verification
ARCHITECTURE PATTERN · SYNTHETIC REFERENCE
Organise applicability, scope, findings and remediation without implying designation or certification.
Engineering pattern
not a legal template
WHEN TO USE
Start only after the relevant facts, source status and system boundary are understood.
SOURCE / STATUS BOUNDARY
These IDs are verification pointers to the primary-source ledger. They are not provision mappings, applicability findings or legal conclusions.
SEQUENCE DIAGRAM
records designation and applicability facts
ARTEFACT · scope recordcollects controlled evidence and analysis
ARTEFACT · assessment packagerecords findings and evidence limits
ARTEFACT · review reportassigns remediation and verifies closure
ARTEFACT · decision minutesTYPED JSON FIXTURE
This example contains no real person, provider, incident or system data. It demonstrates record boundaries, not a production schema.
{
"fixture": true,
"schemaVersion": "1.0-demo",
"pattern": "sdf-dpia-audit-evidence-room",
"subjectRef": "synthetic-only",
"payload": {
"assessmentRef": "assessment_demo_02",
"scopeStatus": "draft",
"confidence": "not_tested"
}
}EVIDENCE OUTPUTS
THREAT CONSIDERATIONS
FAILURE MODES
RESEARCH / RADAR CONNECTION
Assessment interfaces should separate requirement applicability, control design, implementation evidence and test confidence before summarising results.
Read Why a compliance score must show confidence and evidence typeDemand workload, attestation and threat-model evidence before reliance.
Emerging and claim-sensitive · Review 2026-09-20Open radar rationaleLOCAL WORKSPACE NOTE
Nothing is sent anywhere. Avoid names, personal data or confidential incident details.