How does authorizing outbound API requests satisfy 21 CFR Part 11 requirements?

Kastra enforces authorizing outbound API requests at the moment of execution and writes a signed evidence record for every API call. Auditors get a complete, append-only trail of who attempted what, what policy fired, why the decision was made, and what data was touched. This evidence maps directly to 21 CFR Part 11, GxP, HIPAA control families.