**Article 12**

**Technical Provision for Event Logging**

The Academic Compliance Monitor is engineered to implement continuous automated logging throughout its operational lifetime. Logs capture discrete instances of final detection outcomes—specifically, confirmed flags of anomalous or suspicious behavior aligned with predefined integrity breach patterns—and the precise timestamps at which such detections are made. This approach aligns the granularity of recorded events with the system’s core function: to identify and respond to potential violations of exam conduct policies. To maintain operational efficiency and data minimization principles, logs exclude intermediate computational artifacts such as model confidence levels (e.g., likelihood scores produced by the Random Forest or RNN subsystems), as well as any transient internal states or parameter configurations.

**Criteria-Based Event Capture Fulfilling Risk Identification Needs**

Logging is designed to support retrospective identification of risk conditions without preserving sensitive or potentially privacy-invasive metadata. By recording only unequivocal final detection signals (e.g., “anomaly detected,” “behavioral outlier confirmed”), the system delineates clearly the occurrence of risk situations pertinent under Article 79(1)—here, potential academic dishonesty. This binary event capture ensures that post hoc analyses can pinpoint when and where flagged incidents arose without embedding supplementary confidence metrics that may complicate or bias interpretation. Moreover, since the system excludes logging of model parameter changes during updates, the traceability of modifications relies on external version control and configuration management logs maintained by Veritas Learning Systems separately from runtime event logging.

**Support for Post-Market Monitoring and Operational Oversight**

The recorded logs consist of immutable event entries that facilitate temporal mapping of system detections relative to examination schedules and specific input streams, enabling downstream audit processes consistent with Article 72 requirements. Timestamped detection records allow exam controllers and compliance auditors to reconstruct incident timelines and assess frequency and distribution of anomalous behaviors across monitored sessions. By omitting contextual details related to ambiguous or borderline cases, the system preserves a focused and streamlined dataset that supports operation monitoring as stipulated in Article 26(5), while limiting potential data retention risks linked to ambiguous pattern contexts. This design choice reflects a calibrated balance between traceability and data minimization, emphasizing transparent final outcomes over underlying probabilistic nuances or ambiguous detection states.

**Logging Infrastructure and Data Integrity**

The logging mechanism relies on a dedicated, tamper-resistant append-only ledger integrated within the AI system’s runtime environment. Each log entry consists of a structured record containing a uniform resource identifier (URI) specifying the monitored exam session and input device channel, the anonymized exam subject identifier, the discrete detection label, and an ISO 8601-compliant timestamp denoting event occurrence. The system employs cryptographic hashing and digital signatures for each logged entry to guarantee data integrity and non-repudiation during post-market review cycles. To optimize resource usage and comply with data retention policies applicable to educational institutions, logs are stored in encrypted form and archived systematically on secure servers operated by Veritas Learning Systems, with access controls implemented according to the principle of least privilege.

**Rationale for Logging Scope and Design Choices**

The decision to exclude model confidence scores, parameter update logs, and contextual ambiguity annotations from the automatic event logging scope responds to a considered risk assessment of data sensitivity and the potential for misuse or misinterpretation of such information. Confidence scores, while informative internally, may mislead non-technical stakeholders or introduce subjective judgment variability during incident assessments. Similarly, parameter change workflows—governed by Veritas Learning Systems’ controlled deployment pipeline featuring CI/CD audit trails—are tracked in dedicated versioning systems rather than within runtime log streams to maintain separation of concerns and ensure clarity in event audit trails. Omitting contextual information on ambiguous behavior patterns mitigates inadvertent storage of potentially bias-sensitive or personally identifiable inputs, thereby preserving compliance with data minimization and privacy principles without compromising functional traceability of detection decisions relevant for the system’s high-risk classification.