<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
	<url>
		<loc>https://policycortex.com/</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-evidence-package-export.png</image:loc>
			<image:title>PolicyCortex evidence package export</image:title>
			<image:caption>The assessor-ready package: evidence inventory, validations, POA&amp;M, SSP, SAR, in ZIP, OSCAL, and eMASS shapes. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/proof/state</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-evidence-system-artifacts.png</image:loc>
			<image:title>PolicyCortex collectors and hashed artifacts</image:title>
			<image:caption>Registered collectors writing artifacts per control, each with capture time, size, and SHA hash. Illustrative demo data.</image:caption>
		</image:image>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-system-control-collections.png</image:loc>
			<image:title>PolicyCortex control implementation table</image:title>
			<image:caption>The 110-requirement table where state evidence files, control by control. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/proof/change</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-readiness-five-state.png</image:loc>
			<image:title>PolicyCortex readiness, five honest states</image:title>
			<image:caption>Every control in one of five states, with permitted automatic fixes flagged per control. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/federal</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-ato-collection-overview.png</image:loc>
			<image:title>PolicyCortex ATO collection overview</image:title>
			<image:caption>One authorization package from scope to 3PAO assessment: passing controls, family coverage, next action. Illustrative demo data.</image:caption>
		</image:image>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-gap-analysis.png</image:loc>
			<image:title>PolicyCortex gap analysis</image:title>
			<image:caption>Open gaps by control family and severity, each with an owner and a remediation path. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/pricing</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-platform-value-dashboard.png</image:loc>
			<image:title>PolicyCortex value report</image:title>
			<image:caption>Hours returned, controls satisfied, posture held; every claim traceable to a record. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/platform/ato-authorization</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-continuous-ato-workspace.png</image:loc>
			<image:title>PolicyCortex continuous ATO workspace</image:title>
			<image:caption>The authorization lifecycle: posture, POA&amp;Ms, evidence artifacts, and live collections. Illustrative demo data.</image:caption>
		</image:image>
	</url>
	<url>
		<loc>https://policycortex.com/cmmc/emass-c3pao-handoff</loc>
		<image:image>
			<image:loc>https://policycortex.com/images/pcx-evidence-package-export.png</image:loc>
			<image:title>PolicyCortex assessor handoff package</image:title>
			<image:caption>The package a C3PAO receives, in eMASS and OSCAL shapes. Illustrative demo data.</image:caption>
		</image:image>
	</url>
</urlset>