Every action, on the record.
An append-only trail of who did what, and when — that users can't edit.
Write-once
Only the system writes it; no user can alter it.
Fully attributed
Actor, action, target and context on every event.
Tamper-evident sign-off
A SHA-256 hash of the approved state.
EU-resident
Stored exclusively in the EU to remain GDPR compliant.
No PII in the log
Metadata never stores document text.
12-month retention
Full log available on request.
Proof, not promises.
The record an indemnity insurer, regulator or opponent would ask for — already kept.
Immutable
A log users can't rewrite
Audit entries are written only by the system itself — there is no insert path for ordinary users, so the trail can't be edited or back-dated from the app. Every meaningful action — a finding accepted, a fact cleared, a playbook published — is captured with actor, firm, target and context.
Tamper-evident
Cryptographic proof of what was signed
At sign-off, Denua hashes the exact state of every claim and finding with SHA-256. Change anything afterwards and the hash no longer matches — so you can prove precisely what a lawyer approved, and when.
Client-safe
Two records, one truth
The full Control Record carries runs, claims and the complete audit trail for internal and regulatory use; a separate client-safe Assurance export shares the outcome without the internal workings. Data is EU-resident, and audit entries are retained for twelve months.
Show your working — to anyone who asks.
An immutable, EU-resident record of every decision on every matter.
