{
  "$schema": "https://aigovernanceengineer.com/schemas/control-observation.v1.json",
  "control_id": "AIGE-CTL-EVAL-002",
  "profile": "evaluation-environment",
  "control_version": "0.1",
  "subject": "eval-env-eu-west@2026-09-26",
  "subject_kind": "eval-environment",
  "expected": "Outbound connections only to the destinations on the run's egress allow-list.",
  "observed": "1 connection to an unlisted host during run 88213; the egress policy allowed it because the task environment had no policy attached.",
  "status": "fail",
  "timestamp": "2026-09-26T09:42:17Z",
  "enforcement_point": "runtime",
  "verification_kind": "observe",
  "observer": "egress-flow-log-adapter",
  "evidence": [
    {
      "artefact": "flow log of run 88213",
      "url": "https://evidence.example/runs/88213/flows.jsonl",
      "hash": "sha256:9f2c4e1a7b3d5f8e0a2c4b6d8f1e3a5c7b9d0f2e4a6c8b1d3f5e7a9c0b2d4f6e"
    },
    {
      "artefact": "evidence record of the environment admission check, which found no egress policy attached",
      "url": "https://evidence.example/runs/88213/admission.json",
      "schema": "https://aigovernanceengineer.com/schemas/evidence-record.v1.json"
    }
  ],
  "run_id": "88213",
  "notes": "Illustrative example. The run was stopped and the environment template fixed; the rerun is filed as a separate observation.",
  "signature": "ed25519:Q2xvc2VkRWdyZXNzT2JzZXJ2YXRpb24yMDI2"
}
