AttestloopNorthwind AI
Interactive demo

Northwind AI uses sample controls. No customer data is shown.

Scan your code
Compliance / Expert review
⌘K
Y
Expert review
AI proposes, a credentialed expert commits. Co-signing high-judgment controls is what makes Attestloop compliance, not a black-box guess.
3
In queue
JR
Jonas Reinhardt
CISSP, IAAP · acting reviewer for Northwind AI
3
Awaiting your co-sign
7
Co-signed
4h
Avg turnaround
Awaiting your co-sign
VR-1Vendor risk assessmentsOrgIn review
AI flagged this for human judgment before it can be attested. Vendor risk assessments maps to 2 requirements.
Requires ISO 27001 Lead Auditor
SC-1Dependencies free of known CVEsCodePassing
AI verified this control and is ready to attest. Co-sign to make it compliance-grade. Dependencies free of known CVEs maps to 1 requirement.
Requires CISSP
SC-2Static analysis on every PRCodeIn review
AI flagged this for human judgment before it can be attested. Static analysis on every PR maps to 1 requirement.
Requires CISSP
Recently co-signed
ControlReviewerStatusCo-signed
AC-2
MFA enforced on all accounts
JOJonas Reinhardt, ISO 27001 Lead AuditorPassing2 min ago
GV-1
Information security policy
JOJonas Reinhardt, ISO 27001 Lead AuditorPassing3 hr ago
DP-3
Data encrypted at rest and in transit
JOJonas Reinhardt, CIPP/EPassing2 min ago
BC-2
Backups tested and recoverable
JOJonas Reinhardt, ISO 27001 Lead AuditorPassingyesterday
AI-1
No indirect prompt-injection paths
JOJonas Reinhardt, CISSPPassing4 min ago
AI-2
Agent tool access allowlisted
JOJonas Reinhardt, CISSPPassing14 min ago
LM-1
Audit logging on critical systems
JOJonas Reinhardt, ISO 27001 Lead AuditorPassing1 hr ago