AI trust claims and disclosure
Public guide to the claims registry, trust disclosure packet, and compliance coverage packet used in procurement and CISO review.
Use this page when
Read this page when a customer, buyer, or CISO asks not only what OSuite governs, but what can be defensibly said about that governance in public or contract-facing language.
Start with these surfaces
- Claims registry when the question is “what can we safely claim?”
- AI trust disclosure when the statement needs to be rewritten for a public trust page or customer explanation
- Compliance coverage when the buyer asks how current controls map into named frameworks
- Procurement pack when the review needs one bundle instead of scattered screenshots
What customers can say now
This disclosure layer lets customers explain:
- what OSuite governs
- what evidence supports the claim
- where shared responsibility begins
- how much framework-aligned coverage is visible today
- which residual exceptions remain
What changed in the product
Claims registrypackages buyer-facing control statements into named claims with evidence references, shared responsibility, and residual exceptions.AI trust disclosuregives customers a packet they can use for trust pages, procurement answers, and public AI-governance disclosure.Compliance coverageshows framework-aligned coverage with explicit caveats that describe control support, not legal certification.Procurement packnow includes these new packets so review can start from one export family.
What this does not mean
OSuite does not certify a customer's legal compliance by itself. This layer improves public explanation and buyer review. It does not replace legal analysis, framework-specific sign-off, or external controls such as DLP, IdP, CASB, or network proxying.
Plan status
2026-06-02 CISO claims and disclosure plan
Current completion: phase 1 and phase 2 shipped, phase 3 partially shipped
Delivered now:
- first-class claims registry
- public AI trust disclosure packet
- compliance coverage packet
- procurement-pack integration
- public readiness explanation of how to use these surfaces
Next pages
Agentic enterprise adaptation
Public record of the enterprise-control changes added on top of the core PCAA model, including boundary facts, egress visibility, connector posture, and approval enforceability.
Benchmarks
Public benchmark surfaces that show how OSuite validates runtime coverage, approval behavior, and evidence quality.