Frequently Asked Questions

How Sigmodx produces SOX-ready evidence for AI agent controls in financial workflows.

General

Sigmodx is the audit and verification layer for AI agents making consequential decisions in financial workflows. It produces cryptographic attestations, append-only decision logs, and evidence an external auditor can verify independently.

No. Sigmodx is audit infrastructure. It records what an AI agent decided, why it decided it, and how humans reviewed it over time.

CFO and controller teams, audit and compliance leaders, and AI agent vendors who need SOX-ready evidence for automated financial controls.

Sigmodx does not require a specific model integration. Your agent submits decisions via API or SDK. Sigmodx records evidence and reliability signals independent of which model produced the decision.

Audit Evidence

A SHA-256 hash of the inputs, the decision type, optional flag subtype and severity, the agent rationale at decision time, and the identifiers needed to tie the record to a period attestation.

No. ERP logs record what posted and who posted it. Sigmodx records what the AI agent decided and why, plus human review outcomes and reliability signals.

A controller or senior accountant reviews a sample and records agree, disagree, or escalate. Those assessments are immutable and drive false positive and false negative rates used for reliability state.

In about a minute. The auditor checks a verification string on /verify, which confirms the hash matches the stored attestation payload.

GL Entry Review

A journal entry where the same person created and approved the entry. Sigmodx records that condition and treats it as an automatic block in the GL review scenario.

A single reviewer cannot clear an SOD block. They can confirm it or escalate it. This prevents paper controls that are easy to override in practice.

BLOCK triggers when false negative rate exceeds 5 percent or SOD detection rate falls below 90 percent. LIMIT triggers when false negative rate exceeds 2 percent or SOD detection rate falls below 95 percent, among other thresholds.

Data & Privacy

No. Sigmodx stores input hashes and decision metadata. The raw data stays inside your environment.

Sigmodx can store anonymized identifiers and role metadata required for audit evidence, while keeping sensitive HR or ERP identifiers out of the attestation payload.

Sigmodx enforces tenant isolation with row-level security and role-based access control. Cross-organization access is blocked at both the database and API layers.

Still have questions?

For institutional inquiries, research collaboration, or verification discussions, email support@sigmodx.com.

Email supportContact form