Dr.Who

Audit evidence

When an auditor asks for proof your domain is configured correctly, hand over an artifact — not a screenshot.

A Dr.Who Domain Audit Report is a signed PDF plus JSON sidecar covering 15 domain hygiene checks. Each finding maps to your compliance framework. Verifiable offline with the published public key.

Signed

Ed25519 signature over SHA-256 of PDF plus JSON sidecar. Public key at /.well-known/.

Timestamped

ISO-8601 UTC scan timestamp on every finding. The artifact is valid forever.

Framework-mapped

Each finding cites SOC 2, ISO 27001, or NIST controls so auditors don't have to translate.

Use cases