AuditPro Core is a multi-tenant assurance platform built from the database up around explainable machine intelligence — predictive risk scoring, procurement anomaly detection and rule-based NLP drafters that turn raw findings into board-ready evidence. Every model is glass-box: every score is a published formula, every flag links back to the transaction that triggered it.
Already onboarded? Sign in to your workspace
Built for organisations preparing for Auditor-General review
Grounded in the auditing canon
AuditPro Core is not a generic workflow tool with an audit skin. Its data model, controls and intelligence layer are built directly on the methodology taught in the profession's foundational texts — Arens' Auditing & Assurance Services, Montgomery's Auditingand Whittington & Pany's Principles of Auditing. Below is the universal audit pipeline those three pillars share — and exactly how the platform operationalises each phase.
The canon
Professional ethics, legal liability, client acceptance and independence.
How AuditPro Core solves it
Conflict-of-interest and gift registers, engagement-acceptance workflows and an independence trail are first-class records — so the auditor's mindset of prudence and skepticism is enforced before a single test is run.
The canon
Setting materiality, assessing inherent risk and mapping internal controls (the Audit Risk Model: AR = IR × CR × DR).
How AuditPro Core solves it
Predictive risk scoring assesses inherent and control risk over the tenant's own history, derives the required detection risk, and tailors the audit programme automatically. Materiality and sample sizes are calculated, not guessed.
The canon
Tests of controls vs. substantive procedures — vouching, tracing and the eight types of audit evidence.
How AuditPro Core solves it
Statistical and monetary-unit sampling, full-population analytics and procurement anomaly detection (Benford's Law, split-PO, vendor concentration) execute the substantive work. Every flag drills back to the source transaction.
The canon
Evaluating misstatements, assessing going concern and formulating the final audit opinion.
How AuditPro Core solves it
Findings roll up against materiality with a tamper-evident evidence chain behind every conclusion, and rule-based NLP drafts board-ready management reports — so the opinion is defensible to the cent.
The Audit Risk Model & the transaction-cycle approach.
Sales-&-collection, acquisition-&-payment, payroll, inventory and capital cycles are modelled as interconnected evidence, with SOX-style dual assurance over financial data and internal control.
Professional prudence, skepticism & forensic foundations.
The auditor's defensive mindset, exhaustive balance-sheet verification and classic fraud-vulnerability points are encoded as controls, reconciliations and anomaly detection.
COSO, sampling theory & other-assurance services.
The five COSO components, attribute and monetary-unit sampling, and the expansion into attestation, IT-system reliability and ESG assurance all map to dedicated modules.
The intelligence layer
In assurance, a black box is worthless — if you can't explain the score, you can't put it in a working paper. So we built our AI/ML stack around explainability first: heuristic and statistical models over the tenant's own data, every output reproducible and traceable to source.
Risk scoring per AGSA focus area — a weighted, published blend of repeat-finding rate, overdue remediation and critical severity over the tenant's own historical findings. Outputs a probability band per area with a written rationale, so internal audit can target effort before the AG arrives.
Benford's-law goodness-of-fit on contract values, vendor-concentration analysis, and split-PO detection across the single-quotation threshold. Reproducible math, not a mystery — every anomaly links back to the contracts that triggered it.
Paste a finding; the deterministic composer classifies root cause, returns applicable PFMA sections, draft AGSA wording and a management response. Every working paper starts at 80% — drafted by an explainable rule engine, not an opaque LLM.
Ingest the AGSA management report (PDF/Word); NLP extracts and classifies findings by root cause, pre-populates action plans with owners and deadlines, and tracks closure against the repeat-finding definition.
Automated analytics monitors run on a schedule across transactions, raising exception alerts the moment data crosses a defined boundary — turning point-in-time audit into a live signal.
On the roadmap.Today's models are deliberately explainable heuristics and statistics over your own data. We are extending the pipeline toward trained ML classifiers and retrieval-grounded copilots — shipped only once they meet the same bar: reproducible, auditable, and traceable to source.
Built in-house, end to end
AuditPro Core is one codebase, designed and developed as a single system — a typed .NET domain core, a server-rendered Next.js front end, and an intelligence layer that shares the same evidence model. No stitched-together SaaS; no data leaving the tenant boundary to be scored.
A rich .NET domain layer — entities, invariants and value objects — so business rules live in code, not in scattered SQL.
Minimal-API endpoints with enum-as-integer contracts and a single source of truth shared with the typed front end.
Module-registry integrity tests, tenant-gating contracts and CI checks keep every release auditable and regression-safe.
Tenant identity flows from the database through the API to the session and the menu — one boundary, enforced everywhere.
Platform
Plan, sample, test and evidence every audit against ISSAI and internal charters — working papers, CAATs, findings and recommendations.
Conflict-of-interest and gift registers, committee charters and King IV disclosures, all in one place.
Reconcile the fixed-asset register, run reporting engines and evidence statutory compliance end to end.
Track delivery targets and performance indicators against audited evidence with variance analysis.
Log irregular expenditure, manage the risk register with traceable owners, and run escalation workflows.
One real-time screen of findings, expenditure pipelines and deviations — each tile mapped to its source.
Architecture & trust
The audit plan, working papers, findings and disclosures live in the same tamper-evident ledger. Every action is time-stamped, every document hashed, every decision traceable — and the AI runs inside that boundary, scoring your data where it lives.
Explainable models — every score is a published formula, not a black box
Public-sector tenant archetypes supported, from municipalities to universities
Unified evidence ledger feeding assurance, governance and the AI engine
Continuous monitors raising anomaly alerts as data crosses defined limits
Tell us about your entity and we'll be in touch with a walkthrough, pricing and next steps — everything you see is traceable to source.