Your AI does the work.
Your signature carries the liability.
Supervisors treat that signature as evidence of effective challenge. It only holds if you can reconstruct what the AI read.
A signature is not the control. Oversight is.
The overseer must be able to understand the system's capacities and limitations, remain aware of automation bias, correctly interpret its output, and override, disregard or stop it.EU AI Act, Article 14(4) — paraphrased
That is a capability standard, not an approval standard. Nobody can override output they cannot trace back to its sources.
What a supervisable run looks like.
Every link in this chain exists today. The audit event is the artefact, not the agent.
What changes with Lakekeeper.
Deployable today — access control and a durably-recorded, append-only audit trail.
Building now, with design partners
A first-class catalog object declaring which agent, which model, which task, which sources and which outputs — adding agent identity, run ID, model version and prompt/output hashes to every audit event.
Lakekeeper does not just manage data.
It manages liability.
Bring whoever owns AI risk and whoever owns data governance.
Sources: McKinsey, The State of AI (Nov 2025); Deloitte, State of AI in the Enterprise (2026); Regulation (EU) 2024/1689 (AI Act) Arts. 14 and 99, as amended by Regulation (EU) 2026/1744.