Build
Governance evidence
Join workflow events with content-free routing decisions
Evidence should answer which policy allowed or denied a model call without turning observability into a content archive.
Correlation identifiers
Record the Reef run ID, step ID and Router request ID. Keep the identifiers opaque and free of user or patient data.
Routing decision
Router evidence includes service identity, policy revision, eligible route class, selected provider region, terminal status and safe reason codes.
Redaction boundary
Prompt inspection may classify or transform sensitive input, but routine evidence should not store the original content or detected secret value.
Audit reconstruction
Combine Reef events and Router evidence at query time under operator authorization. Preserve retention and deletion policies for each store independently.
