Surveillance systems should not normally capture what members of the public say to each other; audio, especially continuous, is more intrusive than video, needs much stronger justification, should be disabled by default and used only exceptionally (for example by a trigger switch). It should be used only where a specific need is evidenced, less intrusive methods have been considered and found inadequate, and audio is the only way; an independent sound facility should be disabled unless justified, and people should be told separately that audio is being recorded.
This control maps to 1 controls across 1 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.
Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.
The graph holds this control, the 1 it maps to, and the evidence behind each claim, over MCP and REST.