Audit evidence is assembled too late.
When methods, risk tables, comments and signatures live in separate files, proving the full history becomes a manual exercise. The result is slow, inconsistent and vulnerable to missing versions or unattributed decisions.