Evidence register

Read credentials in the context of the work

A credential only means what its holder and scope support. Project records show what happened to your assets; the two forms of evidence should not be confused.

CREDENTIAL / RULECHECK THE SCOPE
Holder + covered work + current evidence
Ask what the credential covers and how that connects to the quoted service.

Project records

Evidence supplied for the work performed

Itemised asset report

Lists what was collected, by make, model and serial number where available.

Destruction certificate

Issued for every data-bearing device processed and records that the destruction process ran.

Forensic verification report

Separately tests whether data remains recoverable and records the finding and exceptions.

Scope mapping

What each credential covers

A credential should be mapped to its holder and the work it actually supports.

The organisation
An individual operator
A process or service
A site
Equipment or a method
A downstream provider

The quote should state which evidence relates to the organisation, an individual, a site, a process or a downstream provider. One scope is not treated as another.

Boundaries

What a credential does not claim

Person is not organisation

A qualification held by one operator is not presented as an organisation-wide certification.

Provider is not operator

A downstream provider's credential is not presented as belonging to this business.

One scope is not every service

Evidence for one site, method or process does not automatically cover other work.

Read the holder, covered activity and limitations together. If the evidence does not cover the quoted work, it should not be used to support that work.

Verification access

Make the evidence independently checkable

Accessible documents can redact private information without hiding the holder, issuer, scope, identifier or status needed for verification.

DOCUMENT CONTROLCHECKABLE EVIDENCE
Holder • scope • status • verification route
Private information may be redacted, but the details needed to understand scope and status should remain clear.

Project evidence

A forensic verification report is separate evidence

Credentials establish capability and scope. They do not replace records for a specific project.

For certified data destruction, a destruction certificate records the process. A forensic verification report separately checks whether data remains recoverable, informed by the operator's data recovery and digital forensics work.

See how forensic verification works
EVIDENCE TYPESKEEP DISTINCT
Credential scope ≠ project outcome
Ask which credentials apply and which project records will be supplied.

Questions

Questions about credential scope

Which credentials apply to my project?

Ask for the evidence relevant to the quoted service. The response should identify the holder and scope without extending the claim beyond the work it covers.

Are the credentials current?

Current status must be checked against the available evidence. No scheme or status is claimed on this page.

Can I verify the details independently?

Request the verification route for any credential relied on for your project. The route and documents available are confirmed with the quote.

Ask for evidence relevant to your scope

Connect credentials to the work being quoted

The quote should identify the credentials and project records relevant to the requested service.