Build

Governance evidence

Join workflow events with content-free routing decisions

Evidence should answer which policy allowed or denied a model call without turning observability into a content archive.

Correlation identifiers

Record the Reef run ID, step ID and Router request ID. Keep the identifiers opaque and free of user or patient data.


Routing decision

Router evidence includes service identity, policy revision, eligible route class, selected provider region, terminal status and safe reason codes.


Redaction boundary

Prompt inspection may classify or transform sensitive input, but routine evidence should not store the original content or detected secret value.


Audit reconstruction

Combine Reef events and Router evidence at query time under operator authorization. Preserve retention and deletion policies for each store independently.

NextProduction operation