Observability and Audit

Every execution. Every decision. Every retrieval. Traceable.

Nexoraa generates a complete trace of every agent run, including prompts, model calls, tool invocations, retrievals, validation results, and human decisions.

Observability Surfaces

Nexoraa records what happened, why it happened, and who approved it.

Execution traces

End-to-end trace of a single workflow run: decomposition, model calls, tool invocations, retrieval results, validation outcomes, and human decisions. OpenTelemetry-compatible.

Operational dashboards

Aggregate views of cost, latency, throughput, error rates, retrieval quality, and reviewer SLAs, filterable by agent, workflow, workspace, and time window.

Audit reports

Pre-built and configurable reports for access logs, prompt promotion logs, agent change logs, decision logs, and retention compliance.

Logged Evidence

Audit readiness is produced by the workflow itself.

Authentication events

Login, MFA challenge, session creation and termination, IP and device metadata.

Permission changes

Role assignments, policy edits, and workspace membership changes.

Definition changes

Agents, prompts, tools, and datasets with every edit, author, and diff.

Execution traces

Every agent run with full context, tool calls, model calls, retrievals, and decisions.

Human decisions

Reviewer approvals, rejections, and modifications with reason codes and time-to-decision.

Data access

Every retrieval with user, document, role, and policy outcome.

Validation results

Every Haluvance decision with reason code, contract reference, and policy outcome.

Logging Guarantees

Audit records are built for review.

Tamper-evident storage

Logs are written to append-only storage with cryptographic chaining.

Retention policy

Configurable retention per log type and workspace with automated purge for expired records.

PII handling

PII detection and redaction before logs are written. Sensitive fields are tokenised.

Access control

Logs are scoped by role; audit access itself is logged.

Export

Logs export to enterprise SIEM such as Splunk, Sentinel, Chronicle, or Elastic through standard pipelines.

Next Step

Review the trace your audit team will actually inspect.