The Evidence library
The library holds the documents behind your proof and the outstanding requests for evidence you still need.
Last updated September 22, 2026
The Evidence library is the record of what backs your posture. It holds the documents that have been processed into structured proof and the requests for evidence that are still open.
Documents
Each document carries a status that reflects how it is being used: whether it is mapped to capabilities, whether it verifies or conflicts with a claim, and whether it has gone stale. The library lets you see at a glance which artifacts are carrying weight and which need attention.
Requests
Where a control needs proof you have not yet supplied, an evidence request captures that gap as a task. Requests turn Missing controls into an actionable checklist: who needs to provide what, so the control can move toward Verified.
Why keep both together
Proof is a moving target. Evidence expires, gets superseded, and occasionally contradicts a claim. Holding documents and requests in one place keeps the work of maintaining proof visible rather than letting it decay quietly.
Documents that have gone stale are still listed, not dropped. A stale document is a prompt to refresh evidence, not a reason to pretend the control was never backed.
The states these documents drive are explained in Verification states, and new documents arrive through evidence intake.