Skip to content

Evidence Timeline

The Evidence page turns your scan history into an audit-ready, per-control timeline. For every compliance control it shows how the result evolved day by day - so you can prove to an auditor (or to yourself) exactly when a control passed, failed, or stopped being tested.

Opening the page

Open Evidence in the sidebar's Monitoring group, or click the evidence preview card on the dashboard. The page loads the controls from your latest compliance scan and renders one card per control.

Reading a control card

Each card shows:

  • The control ID and title
  • A year heatmap: one cell per day, colored by that day's result
  • The current result badge
Cell colorMeaning
GreenThe control passed that day
RedThe control failed that day
GraySkipped / not applicable
EmptyNo scan ran that day

Days without a scan stay empty on purpose - evidence is only recorded when a scan actually evaluated the control, never interpolated.

Use the search box to filter by control ID or title. The search is reflected in the URL (?test=...), so you can bookmark or share a link that opens the page already filtered to one control - useful when handing evidence to an auditor.

Loading more controls

The page loads controls in batches with a progress counter (for example "50 of ~418 controls"). Click Load more to fetch the next batch; already-loaded cards stay in place.

Retention and plans

The timeline covers the window allowed by your plan's data retention. Scans older than your retention period no longer contribute evidence. See your plan's retention on the Billing page.

How evidence is recorded

Every completed compliance scan writes one evidence point per control per day. If you run several scans on the same day, the day shows the worst result of that day (failed beats passed), so a regression can never be masked by a later re-run.

Was this page helpful?