Skip to main content
Back to Trust Center

COMPLIANCE MAPPING

How RANKIGI maps to regulatory frameworks.

Control-by-control evidence mapping for five major frameworks. Every verified action generates evidence automatically.

RANKIGI does not help you fill out compliance questionnaires. RANKIGI provides audit trail evidence that supports your compliance program. We do not hold certifications under these frameworks.

These tables show how RANKIGI’s controls map to compliance framework requirements. RANKIGI is not certified under any of these frameworks. Do not rely on this mapping as evidence of compliance.
SOC 2: Audit engagement planned Q4 2026. Not yet certified.
HIPAA: Self-attestation in progress. No third-party certification.
ISO 42001: Readiness assessment planned. No certification body engaged.
EU AI Act: Compliance mapping complete. No certification body engaged.

EU AI Act [Mapping only, not certified]

Regulation (EU) 2024/1689 · European Union

ControlNameRANKIGI FeatureEvidence
Article 9Risk managementPolicy Engine, Behavioral DriftPolicy audit trail
Article 12Record-keepingHash Chain, Event LedgerAppend-only event log
Article 13TransparencyIntent Chain, Audit ReportsEncrypted reasoning records
Article 14Human oversightHuman Accountability LayerOwner acceptance records
Article 17Quality managementProduction Readiness ScoreMonthly audit dossier

SOC 2 Type II [Mapping only, not certified]

AICPA Trust Services Criteria · United States

ControlNameRANKIGI FeatureEvidence
CC6.1Logical access controlsAgent Passports, API key managementAgent Passports (Ed25519) + RBAC + tenant isolation
CC6.2AuthenticationEd25519 passports, key rotationSupabase Auth + JWT + MFA
CC7.1System monitoringBehavioral Drift DetectionHash chain + Sigstore Rekor anchoring
CC7.2Anomaly detectionPolicy Engine, Shadow DetectionHash chain + Sigstore Rekor anchoring
A1.2Change managementIncident Replay, Hash ChainHash chain + RFC 3161 timestamps

HIPAA Security Rule [Mapping only, not certified]

45 CFR Part 164 · United States

ControlNameRANKIGI FeatureEvidence
164.312(b)Audit controlsHash Chain, Event LedgerHash chain + Sigstore Rekor
164.312(c)IntegrityTamper Detection, Chain VerificationHash chain
164.308(a)(1)Risk analysisBehavioral Drift, Readiness ScoreRisk assessment + Agent Passports + RBAC

ISO/IEC 42001:2023 [Mapping only, not certified]

2023 · International

ControlNameRANKIGI FeatureEvidence
6.1AI risk assessmentPolicy Engine, Risk ScoringAudit trail
6.4AI risk treatmentPolicy MarketplacePolicy engine
8.4AI system operationHash Chain, Audit TrailHash chain
9.1Monitoring and measurementDashboard, Audit DossierAudit trail
10.1NonconformityIncident Replay, Alert SystemHash chain

PCI-DSS v4.0 [Mapping only, not certified]

4.0 · International

ControlNameRANKIGI FeatureEvidence
10.2Audit logsHash Chain, Event LedgerHash chain
10.3Tamper detectionChain VerificationHash chain
12.3Risk assessmentBehavioral Drift, Readiness ScoreAudit trail

Need a custom framework mapping? Enterprise includes custom compliance templates. Contact enterprise@rankigi.com