Proxaradocs
Guides/Proxara Connect

The record

What one piece of work leaves behind: purpose, sources, what was released and to which destination, what stayed private, what was committed, and what the source system confirmed.

Updated July 2026

Every completed piece of work leaves a record of what was authorized, what was consulted, what crossed the boundary, what was done, and what the source systems confirmed. It is produced by doing the work rather than assembled afterwards, and it is deliberately incomplete in one respect: it proves what Proxara emitted, not what a third party later retained.

What the record answers

QuestionRecorded
Who askedThe employee, application or agent, and the firm
Under what authorityThe approved kind of work, the purpose, and the authority revision in force
What was consultedEach source capability, and the provider revision read
What was connectedWhich records were correlated, and which were deliberately kept separate
What was worked out locallyDerivations, calculations and classifications made inside the firm
What was releasedWhich claims went to which destination and processor
What did not leaveWhat stayed private, and what was omitted, with the reason
What the model proposedThe typed proposal, and whether it was allowed or refused
Which targets were boundThe real client, record and recipient resolved inside the firm
What intervention occurredThe consequence decision, the approver, and why it was required
What was attemptedEach provider call, in order
What was observedThe authoritative state read back from each provider
What remainsRepairs completed, and anything still unresolved
How it endedThe exact terminal state

The record is content-minimized

It carries counts, categories, states, digests, revisions and references rather than client content or client names. An examiner projection, a partner view, an employee's own history and a cryptographic verifier need different fields, and each receives only its own.

Opening the record does not reveal the work's clear material. That lives in the private workspace, under the same authority as the work itself.

Retention is a class, not a number

Each thing the work produces is retained as a class with a purpose, an owner, an expiry and a method of erasure.

ClassHeld forEnded by
Working copies of source materialThe active piece of work and its verificationDeletion on expiry
Stand-in mappingsMulti-turn work, target binding, recovery, verification and repairCryptographic erasure at expiry
Private artifacts and their revisionsReview, revision and repairDeletion under the firm's retention setting
Effect and observation historyProving and repairing real changesThe firm's records policy
Content-minimized evidenceThe firm's supervisory and examination needsThe firm's records policy

Mappings needed for recovery and repair are durably encrypted with explicit expiry and least-privilege access. Volatile memory is a cache, never the authority. A single fixed lifetime applied to every class belongs to a demonstration configuration rather than to the product.

What a signature does, and what it does not

A signature makes the record tamper-evident and independently verifiable. It does not turn a guessed outcome into a verified effect, and it is not compliance.

The record is also honest about its edge. It proves what Proxara sent, to which endpoint, under which policy, and what each provider confirmed afterwards. What an external model retained or inferred beyond that is governed by the contract with that processor, and the record does not claim to observe it.

Evidence is the exhaust of completed work

It exists because the work happened, not as a separate task anyone performs. A firm that has to do extra clerical work to produce evidence has a reporting product rather than a work product.

Where to go next

To understandRead
What authorized the work in the first placeApproved work
How an effect is confirmedExecution and verification
The review path for a security ownerThe Connect security review
How access ends, on either sideEnding access