Docs/Aigovernance/Compliance/Evidence Collection

Evidence Collection

Evidence Collection is where governance profiles are built and filled. Each agent that needs to be governed gets a profile, and evidence is collected across eight categories until the profile is complete and approved.

Enterprise feature. AI Stewards create profiles and assign collection; AI Developers fill the evidence. Open it from AI Governance → Compliance → Evidence Collection.

The Evidence Collection list

The main view lists every agent's governance profile with its coverage %, risk level, selected frameworks, any drift alerts, and last updated time. Sort by coverage to find the profiles with the biggest gaps, or filter by risk level, framework, or whether drift alerts are present.

The eight evidence categories

Each profile collects evidence across these categories:

#CategoryCaptures
1Use Case & ScopeIntended use, user groups, scope boundaries, deployment context, forbidden uses, monitoring
2Risk ClassificationEU AI Act / NIST risk level, assessment method, mitigations
3Data GovernanceData sources, handling, retention, anonymization, encryption, PII controls, consent, lineage
4Human OversightHuman-in-the-loop requirements, escalation, approval chains, review cadence, overrides
5Security & Abuse PreventionThreat model, abuse scenarios, incident response, prompt-injection defenses, rate limiting
6Bias & FairnessFairness metrics, bias testing, representative data, disparate-impact monitoring
7Transparency & User RightsAI disclosure, right to explanation, opt-out, feedback and complaints
8Legal & AccountabilityData-protection compliance, liability, regulatory mappings, audit procedures, retention

Forms of evidence

Within each category, evidence can be:

TypeUse it for
DeclarativeAnswering structured questions directly in the form
AttestationA signed, human-confirmed statement (carries an expiry, so it's re-confirmed periodically)
AttachmentUploading a supporting document — a policy, test result, or screenshot
Runtime-DerivedFields computed automatically from your trace data (e.g. latency-SLA adherence) — no manual entry

Runtime-derived fields fill themselves. Because some evidence is computed from live traces, part of your coverage is maintained automatically — you only hand-fill the declarative, attestation, and attachment items.

Creating and filling a profile

Create the profile (Steward)

From Evidence Collection, create a governance profile for an agent and select the frameworks that apply (EU AI Act, NIST AI RMF, ISO 42001).

Assign the work (Steward)

Assign evidence collection to a developer via Jira or Slack, or fill it yourself. Assigned and broadcast work appears for developers under Available Requests.

Fill the evidence (Developer)

Work through the eight categories — answer declarative questions, sign attestations, and attach supporting documents. Coverage updates as you go.

Submit for review (Developer)

When the profile is complete, submit it. It moves to Pending Review for the steward — see Requests & Review.

Next steps

© 2026 ANTS Platform, Inc.Docs v1.0 · Last updated June 2026