Conformity assessment & assurance
A methodology discussion with the certification bodies, auditors and AI-assurance firms building this assessment class: evidence written by the governed system itself, per output, replayable on demand, under the assessor's judgment rather than in place of it.
The assessment gap
Conformity assessment and audit of an AI system today runs on documentation review, management representation and point-in-time testing: model inventories, policy binders, screenshots of a dashboard the operator controls. The judgment applied to that material is professional and careful. The material itself is authored by the party being assessed, after the fact, in prose.
Document review to instrument
Triodian's enforcement layer emits its own evidence at the moment each decision is made: a signed, tamper-evident conformance record per output, bound to the policy version that governed it, bit-identical on re-execution. For the statistical tiers, a certified miss-rate bound with stated (α, δ), renewed on pre-registered triggers. The assessor's framework and judgment stay exactly where they are; what changes is the evidence basis underneath them.
The Certifiable Conformance Pack →What the machinery gives an assessment
| Machinery in the system | Assessment analogue |
|---|---|
| Per-output conformance record | Objective evidence for the audit file, signed and bound to the policy version. |
| Bit-identical re-execution | Re-performance of the control, on demand, without notice. |
| Guarantee-invalidation event | A notifiable change between surveillance audits, attested, never silent. |
| Re-certification (model change / shift / calendar) | A dated reset of the assessment basis. |
| Blind Validation Protocol | Witness testing inside the client's walls; no data leaves, no NDA to read it. |
Who this is for
Conformity assessment · TIC
The EU AI Act's high-risk provisions, in force from August 2026, and ISO/IEC 42001 certification both ask a body to attest that a system behaves as declared. The conformance record is the machine-written artefact that attestation can point to; the named events above are what a surveillance cycle can subscribe to between audits. Scheme development is the conversation we are seeking, not certification of us by you.
Audit & AI assurance
Where an AI-dependent process sits inside a control being audited, the record restores the two things audit method lost to statistical systems: re-performance, because every verdict re-executes bit-identically, and cut-off, because every record is bound to a policy version and timestamp. The instrument is the client's infrastructure; the opinion, and the independence behind it, remain entirely the firm's.
The structural problem
A certificate issued in month one can sit over a model replaced in month three, silently, with the surveillance audit due in month twelve. The harness closes the gap: continuous re-validation against pre-registered floors, with any loss of warrant emitted as an attested, visible event and a graded fallback that never leaves the constraint ungoverned.
"Assurance tier may degrade in public. It must never decay in private."
Harness-as-Assurance →This is the oldest idea in industrial safety, made cryptographic: a certificate that travels with the machine, provable by anyone because it can be checked rather than taken on trust.
Honest boundary
The record proves the output conformed to the governing grammar, not that the grammar captures every obligation; envelope quality is the authoring tier's product. Software deployments carry tamper-evidence, not physical non-bypassability; that rung is Hardware-Interlock Enforcement. And statistically certified action classes today are the Rules and Drift tiers; the Meaning tier joins only when its pre-registered experiment passes, and any assessment scheme built on this architecture should say exactly the same. Coverage analysis →
The ask
1. Consideration of the conformance-record and re-validation model as inputs to your scheme or methodology programme, criteria you would own, over evidence anyone can check.
2. Adversarial review. Your assessors are the most qualified reviewers this machinery could have: run the Blind Validation Protocol on a corpus you choose, inside your walls, and try to break the bound before any client relies on it.
There is no product ask.
Status, without varnish
The complete integrated system is not yet built and tested; research risk is concentrated in semantic governance. The USPTO application was filed 6 January 2026.
Triodian is not a conformity assessment body, notified body, certification body, registered auditor or accounting firm, and does not issue certificates, audit opinions or assurance engagements. This page describes technical infrastructure and invites methodology discussions with accredited bodies and licensed firms.
The same instrument, adjacent seats
Financial Institutions · Private Credit · Rating Agencies · Valuation Platforms · Insurers · Reinsurance · Brokers · Fund & Institutional Advisory
One control below the operator; one record that travels. Different seats read it differently.