NC-RISK-missing-evidence — Named evidence is present, but effectiveness is not shown.
This page follows the certification-audit detailed-report fields. Assessment Results stay the kernel original. Requirement cites the catalog ID and catalog title — not ISO shall-prose. Stage 1/2 is not invented. NC-RP and CAR stay journal citations.
| Clause / control | 7.5 |
|---|---|
| Area / owner | risk |
| Requirement | 7.5 Documented information |
| Finding | 7.5 Documented information is named in this pack, but there is no effectiveness evidence. Cited implementation: RR, RTP. |
| Grade | minor |
| Path | Requirement ↔ evidence |
| Procedure | 10.2 |
| Topic | risk |
| Volume | 1 |
Objective evidence
This pack names a policy or an implementation, but there is no effectiveness evidence. The pointers below are those cited artefacts.
Cited artefacts: RR, RTP.
Subject in this pack: 7.5.
No opened file is attached. That is expected when the gap is “nothing in the pack” or “named but not evidenced” — there is no SHA-256 to show until the kernel opens a file.
