Every interaction the agent has handled — input type, retrieved sources, safety outcome, response latency. Phone numbers are anonymized to last-4-digit identifiers; transcripts are sample/demo content unless stated otherwise. Auditability is a safety requirement, not a feature: any reviewer can see exactly which queries the system grounded, which it refused, and why.