Audit evidence
When an auditor asks for proof your domain is configured correctly, hand over an artifact — not a screenshot.
A Dr.Who Domain Audit Report is a signed PDF plus JSON sidecar covering 15 domain hygiene checks. Each finding maps to your compliance framework. Verifiable offline with the published public key.
Signed
Ed25519 signature over SHA-256 of PDF plus JSON sidecar. Public key at /.well-known/.
Timestamped
ISO-8601 UTC scan timestamp on every finding. The artifact is valid forever.
Framework-mapped
Each finding cites SOC 2, ISO 27001, or NIST controls so auditors don't have to translate.
Use cases
- SOC 2 evidence collection
- ISO 27001 Annex A evidence
- Vendor security questionnaire response
- M&A domain due diligence