Skip to main content

Overview

Healthcare AI evaluation requires comprehensive audit trails for compliance, debugging, and accountability. Akhara captures every action with cryptographic integrity guarantees.

Audit Architecture

Core Principles

Complete Capture

Every action, access, and change is logged

Immutability

Audit records cannot be modified or deleted

Cryptographic Integrity

Hash chains prevent tampering

Queryable

Fast search across billions of events

Event Flow

Event Categories

Event Types

Event Schema

Cryptographic Integrity

Hash Chain

Each event includes:
  • Content Hash: SHA-256 of event payload
  • Previous Hash: Hash of the preceding event
  • Chain Position: Sequential position in the chain
  • Signature: KMS-signed hash for non-repudiation

Verification Process

Verification API

Storage Architecture

Storage Tiers

Immutability Controls

  • S3 Object Lock: WORM (Write Once Read Many) compliance mode
  • No Delete API: Audit events have no delete endpoint
  • Append Only: Events can only be added, never modified
  • Multi-Region: Replicated to prevent single-point tampering

Query API

Basic Queries

PHI Access Tracking

Compliance Reporting

HIPAA Audit Requirements

Generating Reports

PHI Access Report

Real-Time Alerting

Alert Configuration

Anomaly Detection

Detected patterns:
  • Unusual access times (off-hours activity)
  • Abnormal data volumes
  • New access patterns for users
  • Geographic anomalies
  • Privilege escalation attempts

SIEM Integration

Supported Platforms

Configuration

Data Provenance

Lineage Tracking

Track the complete history of any data point:

Retention & Archival

Retention Policies

Archival Process

Best Practices

Log all access, not just writes:
Schedule periodic verification:
Set up baseline and detect deviations:

Next Steps

PHI Handling

How sensitive data is protected

System Overview

High-level platform architecture