An owner or admin can export a compliance evidence pack from Settings, under Compliance & audit. Pick a date range and generate a bundle covering your AI agent activity, the human-oversight & administrative audit trail (who ran what), your access review (members, roles, two-factor adoption, SSO & SCIM), and your data-governance posture (per-organization isolation, no source code stored, and your plan's retention window). It includes control statements mapped loosely to EU AI Act and SOC 2 items. Export as a PDF (the full narrative) or CSV (the tabular records).
These are records for your own compliance, security, or procurement review. They are not a certification and not legal advice; your compliance team decides sufficiency. Separately, Yardstick earning its own SOC 2 Type II is in progress; if you have a specific compliance requirement or timeline, contact sales at [email protected].
---
