Each row is one of NodeAsset’s own controls: the risk it addresses, its type, the venue function that operates it and the role it acts under, the evidence it leaves on its own, and how an auditor tests that it operated. The parties around NodeAsset, from the investor’s wallet to the advisers, run their own parts: Shared responsibility says what each is responsible for, and what NodeAsset relies on it for, or offers it.

Download the matrix

The same rows as CSV, to load into your own test plan.

Eligibility

Eligibility explains these controls.

Limits and settlement safety

Limits and settlement safety explains these controls.

Pricing

Pricing explains these controls.

Interventions

Interventions explains these controls.

Duties and governance

Duties and governance explains these controls.

Records and privacy

Records and privacy explains these controls.

Shared responsibility

NodeAsset is one part of the arrangement. Each party below runs its own part, with its own controls and its own evidence, which this matrix does not test. Where your organization keeps the register. An asset’s register keeper can be your own organization, as when a bank runs the venue and issues its own deposit token. That is a property of each asset, not of the deployment: one bank can issue its own token and distribute another firm’s fund. For an asset you issue, your issuance desk carries the register keeper’s row above, and wherever a matrix row names the register keeper, read your issuance desk; your venue desk runs NodeAsset. Keep the two desks’ people, roles and keys apart. Deployment patterns lists the combinations and the rules that make each one valid. Related: Compliance overview · Evidence and testing · Mapping to your regulation