NewOpen the RFP pack

FAQ

Short answers to common questions about evidence-first AI governance.
Do I need to be a compliance expert?
No. AuditLoom is designed to translate work into owners, evidence, and exports. Details stay accessible, not in your way.
What’s the difference between controls and evidence?
Controls describe what you do. Evidence proves you did it, and stays fresh over time.
Can I reuse evidence across projects?
Yes. Evidence is reusable and traceable, so 20+ projects don’t create 20x work.
What do auditors and procurement get?
A defensible pack: mapping, status, timestamps, and evidence you can trace and verify.
What does the Free plan include?
Free is designed as a realistic demo: 1 project, 1 editor and 1 GB of storage. You can run one starter module for 14 days to experience a framework workflow end-to-end.
Do I need a credit card to start?
No. You can create a workspace and start with the Free plan without entering payment details. Upgrade when you need more scale, editors or additional modules.
How do you map to EU AI Act, ISO 42001 and NIST AI RMF?
AuditLoom provides module workflows that structure controls, responsibilities and required artifacts. You keep a single evidence base and reuse it across frameworks while maintaining traceability.
What is the difference between a control and an evidence item?
Controls define what must be in place (policy, process, review, technical measure). Evidence items are the proof (documents, tickets, validations, logs) linked to the control, with timestamps and approvals.
Can multiple teams work on the same portfolio?
Yes. Workspaces support multiple users with roles and permissions so compliance, security and engineering can contribute without losing ownership and accountability.
Do you provide an audit trail?
Yes. Changes to key objects can be traced so you can demonstrate who changed what, when, and why during audits or buyer reviews.
Where is data stored and how do you handle retention?
Data is stored in your workspace database and file storage. Retention policies and export flows are designed to support audit readiness and buyer due diligence.
Do you support SSO / SCIM?
SSO and SCIM are typically part of enterprise deployments. If you need centralized access management, evaluate the Enterprise plan for rollout options.
Can I export documentation for procurement and audits?
Yes. You can export packs and evidence-backed artifacts so procurement questionnaires and audits can be answered with consistent, traceable outputs.
How do we go from demo to production rollout?
Start with a Free workspace to validate workflows. When ready, upgrade the plan, enable the needed modules, invite stakeholders, and standardize projects using reusable evidence and exports.
Ship faster with defensible evidence
Start free to evaluate. Upgrade to Team, Business or Enterprise when audits and procurement require it.