Skip to main content

Miscellaneous HR and Security Documents

A catch-all evidence library for compliance documents that don't fit Policies or Devices — privacy policy, incident response tests, contractor agreements, and more.

Written by Upendra Varma

Manage → Organisation → Documents is a catch-all for compliance evidence that doesn't belong under Policies or Devices — things like your public privacy policy, incident response test records, security role job descriptions, contractor agreements, and your whistleblower reporting channel.

Despite living under the HR-flavored HR Miscellaneous category (visible on each document's Details tab), several of these span into security and engineering territory — the incident response plan test and security page, for example, aren't really HR documents, they just don't have a more specific home elsewhere in the product.

The All / Passing / Failing / Excluded tabs filter the list the same way the Tests page does, since each document is itself a compliance test — it passes once valid evidence is attached, and fails until then.

Providing evidence

Open any document and use the Evidence tab to attach what satisfies it — upload a file, add a URL to something already public (like a live privacy policy page), or link a ticket:

Instructions and templates

The Instructions tab explains what "done" looks like for that specific document — how to actually implement it, and what evidence to collect — plus a Download Template button where one's available:

Details shows the document's owner, category, and any notes; Controls shows which compliance controls it maps to.

Adding a custom document

Some documents (like Contractor Agreement) are marked Optional — relevant only if they apply to your company. If you need to track evidence for something not already in the list, Add Document lets you define your own:

Give it a name and description, and set a Recurrence if it needs periodic renewal (e.g. an annual policy review) rather than a one-time upload.

Did this answer your question?