Connection
Credentials would be held for the length of a session and never written to disk or sent outside the bank’s network. The scan reads schema metadata; it does not sample rows, and the container is blocked from egress while it runs.
No scanner ran in this build: there is no database driver in it, and this log is a written-down record rather than the output of a session. What it evidences is the shape an examiner would query — actor, action, object, outcome, date — and not that these actions occurred here. The control it describes is real and ordinary, and a bank should take it from its own change record rather than from us.
Status
Completed · 8 schemas · 280 tables · 0 rows extracted
Discovery results
A schema reconciles when the observed count is within 2 per cent of the documented volume.6 of 8 reconciled| Schema | Read from | Tables | Documented | Observed | Variance | Classification | Mapped domains | Status |
|---|---|---|---|---|---|---|---|---|
| FCBPROD.CFMAST | Core (Db2 for i) | 42 | 32,083 | 32,236 | +153 | NPI | Customer / CIF, Officer / Branch hierarchy | Reconciled |
| FCBPROD.DDMAST | Core (Db2 for i) | 68 | 63,896 | 64,655 | +759 | NPI | Deposits | Reconciled |
| FCBPROD.LNMAST | Core (Db2 for i) | 91 | 6,952 | 6,999 | +47 | NPI | Loans | Reconciled |
| FCBPROD.GLMAST | Core (Db2 for i) | 24 | 9,855 | 9,792 | -63 | None | General Ledger, Accruals | Reconciled |
| EDW.TRANSACTIONS | Enterprise Data Warehouse | 12 | 18,736,341 | 18,687,800 | -48541 | NPI | Transactions | Reconciled |
| EDW.CARD_ACTIVITY | Enterprise Data Warehouse | 19 | 27,999 | 22,959 | -5040 | NPI, PCI DSS | Cards & Payments | Variance |
| EDW.DIGITAL_PROFILE | Enterprise Data Warehouse | 15 | 21,155 | 21,245 | +90 | NPI | Digital Banking | Reconciled |
| YHAML.ALERTS | Yellow Hammer BSA | 9 | — | 4,255 | — | SAR confidential, NPI | BSA / AML | Out of scope |
1 of 8 schemas did not reconcile, and 1 belongs to a domain the bank kept out of scope, which is a boundary rather than a gap. The bank redacted that schema at review; the package withholds it, and the audit log below records who did so and on what basis.
Audit log
Every discovery action, with its actor, object and outcome.13 entries| Date | Time | Actor | Action | Object | Outcome |
|---|---|---|---|---|---|
| 2026-08-05 | 09:08:12 | dwhitfield@firstcommunity.bank | Confirmed institution profile and core system | Institution profile; Jack Henry SilverLake 2024.2 | Recorded |
| 2026-08-05 | 09:31:47 | dwhitfield@firstcommunity.bank | Recorded data domains and scope | 10 domains; 9 in scope | Recorded |
| 2026-08-05 | 09:33:10 | apetrakis@firstcommunity.bank | Excluded domain from scope | BSA / AML | Excluded — SAR confidential under 31 CFR 1020.320(e); the exclusion is a control, not a gap |
| 2026-08-05 | 09:48:20 | mreyes@firstcommunity.bank | Recorded integration register | 5 integration points; 4 enabled | Recorded |
| 2026-08-05 | 09:52:04 | dwhitfield@firstcommunity.bank | Opened scan session | core-ha01.fcb.internal, library FCBPROD | Granted |
| 2026-08-05 | 09:52:05 | SVCACCT_SMARTERFI_RO | Validated credentials | Read-only role, *USE authority | Granted |
| 2026-08-05 | 09:52:06 | SVCACCT_SMARTERFI_RO | Attempted write-permission check | FCBPROD | DENIED as expected — session enforced read-only |
| 2026-08-05 | 09:52:11 | SVCACCT_SMARTERFI_RO | Enumerated schemas and tables | 8 schemas / 280 tables across FCBPROD, EDW and YHAML | Completed — no row data extracted |
| 2026-08-05 | 09:52:58 | SVCACCT_SMARTERFI_RO | Compared observed row counts against documented volumes | 8 schemas | 6 reconciled inside tolerance, 1 did not, 1 belongs to an excluded domain |
| 2026-08-05 | 09:53:47 | SVCACCT_SMARTERFI_RO | Hashed and stored metadata fingerprint | Scan result set (SHA-256) | Stored |
| 2026-08-05 | 09:53:48 | SVCACCT_SMARTERFI_RO | Closed session | core-ha01.fcb.internal | Connection torn down |
| 2026-08-05 | 10:06:31 | mreyes@firstcommunity.bank | Reviewed scan results | 8 schemas | Accepted |
| 2026-08-05 | 10:07:02 | apetrakis@firstcommunity.bank | Redacted discovered schema from scoring and export | YHAML.ALERTS | Withheld from scoring and from the export package — SAR confidential under 31 CFR 1020.320(e) |
Brief
Written at build time from the results above.One schema does not reconcile with the documented volume
The scan enumerated 8 schemas and 280 tables, and extracted 0 rows of data. EDW.CARD_ACTIVITY holds 22,959 rows against 27,999 documented for Cards & Payments, a shortfall of 5,040 rows.