Audience: Notified Body leadership, conformity assessment teams, AI Act technical assessors. This document defines the scope, deliverables, and investment for a 10-day evaluation pilot.
1. Engagement Overview
This pilot provides your assessment team with hands-on access to the SWT3 AI Witness Protocol and the Axiom Sovereign Engine. Over 10 working days, your team will integrate the SDK with one AI system under assessment, generate cryptographic witness evidence, and evaluate the resulting audit artifacts against EU AI Act requirements.
The goal is simple: determine whether SWT3 witness anchors strengthen your conformity assessment evidence for high-risk AI systems under Articles 9, 11, 12, and 14.
2. Scope
Included
- Dedicated Enclave-tier tenant with 365-day anchor retention, full ledger access, and regulatory export suite
- SDK integration support for one AI system under assessment (Python or TypeScript, any provider)
- Three structured working sessions (remote, 60 minutes each):
- Kickoff: tenant provisioning, SDK installation, first anchor verification
- Mid-point: evidence review, auditor portal walkthrough, clearing level configuration
- Findings: export review, gap identification, transition discussion
- Auditor portal access with real witness evidence from the integrated AI system
- Compliance Passport export (HTML + signed JSON) for Art. 11 technical documentation evidence
- OSCAL Assessment Results export (NIST-validated XML/JSON)
- EU AI Act conformity checklist with article-level evidence mapping
Not Included
- Custom SDK adapters or bespoke integrations
- Technical documentation drafting (Art. 11 narrative)
- On-site personnel
- Production SLA (available at Sovereign tier)
- Multi-system integration (pilot covers one AI system)
3. Timeline
| Days | Phase | Activities |
|---|---|---|
| 1-3 | Setup | Tenant provisioning, SDK installation, first inference witnessed, kickoff session |
| 4-7 | Evidence Generation | Live inference witnessing, clearing level tuning, auditor portal populated, mid-point session |
| 8-10 | Review | Export generation, evidence walkthrough, findings session, transition discussion |
4. Investment
The pilot investment covers all deliverables listed in Section 2, including Enclave-tier platform access for the duration of the engagement. No additional licensing fees apply during the pilot period.
5. Success Criteria
The engagement is considered successful when:
- All applicable AI procedures produce verdicts from live inference data
- The auditor portal displays accurate, real-time witness evidence
- At least one export package (Compliance Passport, OSCAL AR, or conformity checklist) is reviewed by the assessment team
- The NB assessment team can articulate how SWT3 evidence strengthens their conformity assessment process
6. No-Custom-Code Clause
This pilot uses the published SWT3 SDK and Axiom platform without modification. The SDK is available on PyPI (swt3-ai), npm (@tenova/swt3-ai), crates.io, NuGet, and RubyGems. Integration requires adding 3-5 lines of code to an existing AI application.
If the pilot identifies requirements that the published SDK does not address, those requirements will be documented as findings and scoped separately under a Sovereign engagement. No custom code will be written during the pilot.
7. Data Sovereignty
All data remains within the NB's tenant boundary. TeNova does not access, inspect, or retain prompt content, model outputs, or business data. Only cryptographic hashes (SHA-256, truncated) and numeric compliance factors cross the network boundary. The clearing protocol provides four levels of data protection (0-3), configurable per deployment.
Raw prompts and responses never leave the deployment infrastructure.
8. Transition Path
Upon successful completion, the NB may:
- Ongoing Enclave subscription ($9,500/month or $102,000/year) for continuous assessment evidence across multiple AI systems
- Sovereign engagement ($125,000) for full ATO sprint with dedicated support, mock assessment runner, and production SLA
- Recommend to providers: NB assessment teams can recommend SWT3 integration to AI system providers as a conformity evidence mechanism
Pilot investment is not credited toward subscription fees.
9. Intellectual Property
All compliance evidence, exports, and witness anchors generated during the engagement are owned by the NB and their client. The SWT3 protocol, Axiom Engine, and UCT Registry remain the intellectual property of Tenable Nova LLC.
10. Contact
To schedule a pilot or request a 20-minute walkthrough:
- Email: engineering@tenovaai.com
- Live demo: sovereign.tenova.io/audit-demo
- SDK documentation: sovereign.tenova.io/docs