Gateplex is not a certification and does not issue one. This page describes the controls each compliance pack enforces and the evidence it produces, so your risk and audit teams can judge the mapping for themselves.
Article 12 requires that high risk systems automatically record events over their lifetime, to a standard that supports traceability.
A modified or removed row no longer reproduces the stored hash, so verification fails at the exact record where tampering occurred.
Article 50 covers transparency obligations where people interact with AI systems or receive AI generated output.
Built to support the governance, audit trail, and human oversight requirements financial institutions face under frameworks such as Qatar Central Bank's AI Guideline and SAMA's Cyber Security Framework.
For teams handling protected health information, the control question is whether sensitive values can leave the perimeter through an agent.
{
"patient": "M. Alvarez",
"ssn": "412-88-7190",
"card": "4111 1111 1111 1129",
"email": "m.alvarez@clinic.example",
"phone": "+1 415 555 0148",
"note": "MRN 88213, dx follow up"
}{
"patient": "M. Alvarez",
"ssn": "[REDACTED:NATIONAL_ID]",
"card": "[REDACTED:CARD_NUMBER]",
"email": "[MASKED:m***@clinic.example]",
"phone": "[MASKED:+1 415 555 ****]",
"note": "[HELD_FOR_APPROVAL]"
}We do not publish a downloadable sample audit report. Reports are generated from real intercept data in your own environment, and a synthetic example would not represent what you receive. The fastest way to see the real output is a Shadow Compliance Audit against your own agent traffic.