<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:video="http://www.google.com/schemas/sitemap-video/1.1">

  <url>
    <loc>https://www.nsauditor.com/ai/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>1.0</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/pro/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/enterprise/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
    <video:video>
      <video:thumbnail_loc>https://www.nsauditor.com/ai/images/soc2-hipaa-nist-pci-iso-cis-gdpr.png</video:thumbnail_loc>
      <video:title>NSAuditor AI Pro &amp; Enterprise 0.37.0 &#8212; Full Product Overview: The Audit Does Not Care That Your Network Is Disconnected</video:title>
      <video:description>Full product overview recorded on the NSAuditor AI Enterprise 0.37.0 release. It opens on the network where the security rules are simple &#8212; nothing comes in, nothing goes out &#8212; and the audit does not care: the assessor still asks what you found, what you left out and who approved that. NSAuditor AI is a security and compliance-evidence platform that runs on your infrastructure, scans network hosts and AWS, Azure and GCP accounts agentless with read-only credentials enforced in the product&#8217;s own code, and produces pre-audit evidence packs mapped to seven frameworks with a SHA-256 chain of custody. No customer data is collected, transmitted, or stored by us. The 0.37.0 headline is delivery for isolated networks: a dependency-complete offline bundle of about sixty-one megabytes, distributed to Enterprise customers as a restricted npm package, whose installer checks every SHA-256 checksum before installing anything and refuses a tampered byte. No CVE, KEV or EPSS data ships with the product and nothing is fetched on the isolated host &#8212; the data is always your own download: feed bundle merges the NVD year files, CISA&#8217;s Known Exploited Vulnerabilities catalog and FIRST&#8217;s EPSS scores into one portable archive on a connected machine, and feed import places your own carried data on the isolated host, with as-of dates recorded in the output. The bundle is integrity-checked, not authenticated. NSAuditor&#8217;s air-gapped operation is compatible with the FedRAMP / DFARS / CMMC threat model where SaaS data flow is prohibited. Exploit-first triage joins both catalogs at scan time by CVE ID so a KEV-listed MEDIUM outranks an unexploited CRITICAL &#8212; and the video names the band labels that were refused: not ACTIVE, not PROBABLE, never UNLIKELY, because the bottom band must not encode a negative. Every compliance report verifies each suppression signature it renders, for approvers whose registry entry carries key material; a missing verdict means NOT CHECKED and never means failed; a tampered record renders as a failed verification, proven with a one-character, length-preserving edit. One read-only scan maps to seven frameworks &#8212; SOC 2, HIPAA, NIST CSF 2.0, PCI DSS, ISO 27001, CIS Controls v8 and GDPR Article 32 as security-of-processing substrate &#8212; and every pack carries an explicit out-of-scope column with a reason per control. It closes on the published register of enumerated outbound paths, each with its trigger, its default and its off switch. Exploit intelligence is Pro tier and both catalogs are operator-supplied. Enterprise 0.37.0 requires Community Edition 0.2.42 or newer.</video:description>
      <video:content_loc>https://www.nsauditor.com/ai/videos/NSAuditor_AI_0.37.mp4</video:content_loc>
      <video:duration>554</video:duration>
      <video:publication_date>2026-08-16T18:03:50+00:00</video:publication_date>
      <video:family_friendly>yes</video:family_friendly>
      <video:live>no</video:live>
    </video:video>
    <video:video>
      <video:thumbnail_loc>https://www.nsauditor.com/ai/images/soc2-hipaa-nist-pci-iso-cis-gdpr.png</video:thumbnail_loc>
      <video:title>NSAuditor AI Enterprise — Extended Walk-Through: One Scan, Seven Compliance Frameworks Across AWS, Azure &amp; GCP</video:title>
      <video:description>Overview of NSAuditor AI Enterprise, the local-first, zero-data-exfiltration AI security auditor for AWS, Azure, and GCP. One scan generates seven framework-mapped evidence packs in parallel, each with SHA-256 chain-of-custody sidecars — SOC 2, HIPAA Security Rule §164.312, NIST CSF 2.0, PCI DSS v4.0.1, ISO/IEC 27001:2022, CIS Controls v8, and the newest framework GDPR Article 32 (Security of Processing) — the Article 32 infrastructure substrate only, NOT GDPR compliance, with four-factor proportionality and the Art. 83(4) lower fine tier. Covers the 28 Enterprise plugins — 27 cloud auditors plus a Zero Trust posture assessment scored from a network-host scan — with multi-region fan-out, honest coverage matrices with explicit out-of-scope declarations, the published egress register of 17 enumerated outbound paths, air-gapped operation, and the MCP server for AI agents.</video:description>
      <video:content_loc>https://www.nsauditor.com/ai/videos/NSAuditor_AI_Enterprise.mp4</video:content_loc>
      <video:publication_date>2026-06-12T14:00:00+00:00</video:publication_date>
      <video:family_friendly>yes</video:family_friendly>
      <video:live>no</video:live>
    </video:video>
    <video:video>
      <video:thumbnail_loc>https://www.nsauditor.com/ai/images/unified-compliance-soc2-hipaa-poster.jpg</video:thumbnail_loc>
      <video:title>Unified Compliance: SOC 2 + HIPAA in One Scan — NSAuditor AI Enterprise</video:title>
      <video:description>Short-form explainer of the NSAuditor AI Enterprise dual-framework workflow. HIPAA Security Rule §164.312 Technical Safeguards is supported alongside SOC 2, and a single scan produces both evidence packs. Zero BAA required — the scanner reads infrastructure configuration, never ePHI.</video:description>
      <video:content_loc>https://www.nsauditor.com/ai/videos/Unified_Compliance.mp4</video:content_loc>
      <video:publication_date>2026-05-21T14:00:00+00:00</video:publication_date>
      <video:family_friendly>yes</video:family_friendly>
      <video:live>no</video:live>
    </video:video>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/enterprise/technical-specifications/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.8</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/pricing/</loc>
    <lastmod>2026-08-13</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/getting-started/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/soc2/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/hipaa/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
    <video:video>
      <video:thumbnail_loc>https://www.nsauditor.com/ai/images/unified-compliance-soc2-hipaa-poster.jpg</video:thumbnail_loc>
      <video:title>Unified Compliance: SOC 2 + HIPAA in One Scan — NSAuditor AI Enterprise</video:title>
      <video:description>NSAuditor AI Enterprise HIPAA explainer — Security Rule §164.312 Technical Safeguards supported alongside SOC 2, in a dual-framework one-scan workflow. Zero BAA architecture: the scanner reads infrastructure configuration, never ePHI.</video:description>
      <video:content_loc>https://www.nsauditor.com/ai/videos/Unified_Compliance.mp4</video:content_loc>
      <video:publication_date>2026-05-21T14:00:00+00:00</video:publication_date>
      <video:family_friendly>yes</video:family_friendly>
      <video:live>no</video:live>
    </video:video>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/nist/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/pci/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/iso/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/cis/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/gdpr/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/grc/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.95</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/sample-scan/</loc>
    <lastmod>2026-08-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.85</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/feeds/ai.xml</loc>
    <lastmod>2026-08-13</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.5</priority>
  </url>

  <url>
    <loc>https://www.nsauditor.com/ai/docs/NSAuditor-AI-Enterprise-Brochure.pdf</loc>
    <lastmod>2026-08-08</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>

</urlset>
