The organization selects and develops control activities that contribute to mitigating risks. Control from COSO Internal Control - Integrated Framework (2013) framework, domain: Control Activities.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.