For regulators · legal & dispute panels

Verify any vendor with one open contract.

KYE Protocol is an open standard, Apache 2.0. Schema-first. Every conformant gateway emits the same signed evidence-pack format. You don’t inspect six vendors’ logs — you replay one signed chain.

Regulators

A standard you can verify with public keys alone.

KYE Protocol is open (Apache 2.0), schema-first, vendor-neutral. Every conformant gateway emits the same signed evidence pack format. You don’t inspect six vendors’ logs — you replay one signed audit chain with a public key.

Authority Finality

Replayable proof of who or what acted.

Every governed action answers six questions, signed: who or what is acting, on whose behalf, using which capability, under what authority, in what state, with what audit trail. The Decision Map visualises the answer per decision.

Frameworks

13 compliance frameworks. One mapping rail.

  • EU AI Act (Regulation (EU) 2024/1689) — KYE EU AI Act Profile; 10 controls (KYE-EUAIACT-001..010).
  • ISO/IEC 42001 — AI management system: clauses 4-10 + Annex A.
  • NIST AI Risk Management Framework — Govern / Map / Measure / Manage.
  • SOC 2 (TSC 2017), ISO/IEC 27001:2022, PCI DSS 4.0.
  • PSD2/PSD3 + EBA SCA RTS, DORA, NIS2.
  • HIPAA Privacy + Security Rule, NIST SP 800-207 Zero Trust.
  • GDPR (Articles 5, 7, 13-15, 17, 22, 25, 30, 32-35).
  • FedRAMP (NIST SP 800-53 AC, AU, IA, SI, CM, IR families).
  • NIST Cybersecurity Framework 2.0.

Verify a vendor’s claim.

Any KYE-conformant gateway can be tested with the same 37-fixture conformance pack — byte-for-byte the same as the reference Gateway.