HATS Insurer Portal
Related · tier-1 reading. For the evidence chain that supports the claim, see Claims Evidence.
| Tenant | CRV | Tier | Compliance | Sector | Days Since Fail |
|---|
| Policy # | Tenant | CRV | Tier |
|---|
Query Verified System State
Cryptographically proven state at any point in time. Same inputs always produce the same output. This state can be independently verified.
| Query ID | Tenant | Incident Time | Queried By | Queried At | Status |
|---|
| Tenant | Sector | Starting Tier | Current Tier | Days to Migration | Score Delta |
|---|
| Endpoint | Events | Status |
|---|---|---|
| https://cowbell.internal/hats-events | ALL | ● Active |
| https://claims.cowbell.io/webhook | CRITICAL | ● Active |
| https://soc.cowbell.io/ingest | WARN+ | ● Active |
| https://backup.cowbell.io/events | ALL | ● Inactive |
Model Transparency
Deterministic computation model. Same inputs always produce the same output. No black box.
| Control | Weight | Criticality | Staleness Threshold |
|---|---|---|---|
| MFA Enforcement | 0.25 | CRITICAL | 15 min |
| EDR / Endpoint | 0.20 | CRITICAL | 5 min |
| Encrypted Backups | 0.20 | CRITICAL | 24 hr |
| Patch Cadence | 0.10 | REQUIRED | 24 hr |
| Network Segmentation | 0.10 | REQUIRED | 1 hr |
| Data Protection (FHE) | 0.15 | ADVISORY | 5 min |
| Total | 1.00 |
| Tier | CRV Range | Compliance Req | Upgrade Qualification |
|---|---|---|---|
| VERIFIED A | 90 – 100 | COMPLIANT | 30 consecutive days |
| VERIFIED B | 70 – 89 | COMPLIANT | 30 consecutive days |
| STANDARD | 50 – 69 | Any | Immediate |
| UNVERIFIED | 0 – 49 | Any | Immediate (downgrade) |
Tier classification is deterministic at any point in time T.
Input set hash = SHA3-256(control_states || timestamp || model_version) → commitment → 3 independent PQ signatures.
The insurer decides what that means."
Deterministic. Replayable. Verifiable. Post-quantum signed.
Governance Proof
Powered by Q-Sign. Not just who approved — why it was allowed, how it was approved, proven forever.
Q-Sign proves who possesses authority, how it was delegated, whether delegation is valid, and whether execution exceeds granted scope.
| Authority | Holder | Scope | Delegation | Status | Last Attested |
|---|---|---|---|---|---|
| Wire Approval (>$1M) | Treasury + Compliance | International wires | Dual approval required | ENFORCED | 2m ago |
| Infrastructure Change | Security + Engineering | Production systems | Role-bound quorum | ENFORCED | 14m ago |
| AI Agent Authority | Trading System v4.2 | ≤$5M, US/EU only | Bounded, auto-escalate | BOUNDED | 47s ago |
| Vendor Payment | Finance + Dept Head | ≤$500K per vendor | Amount-limited | ENFORCED | 1h ago |
• "The policy required dual approval" — was it followed?
• "The AI stayed within limits" — prove it
• "We can reconstruct the chain" — from logs that may have been altered
• Claims investigation: weeks of forensics
• Policy v3.2 was active and hash-committed before approval
• AI operated within $5M / US+EU scope — attested
• Full lineage reconstructable from immutable DAG
• Claims investigation: verify the receipt