Appearance
Business References
OrviQ enforces an immutable, human-facing identifier standard across all entities in the platform.
The Reference ID Standard
Every enterprise entity possesses two distinct identities:
- Internal ID: The backend primary key (e.g., UUID or system hash), used for database joins and internal routing. Never displayed in the UI.
- Business Reference: A clean, human-readable identifier formatted as
PREFIX-YYYY-NNNN.
Standard Prefix Table
| Entity Type | Prefix | Example Reference |
|---|---|---|
| Control | CTL | CTL-2026-0004 |
| Crosswalk Mapping | MAP | MAP-2026-0019 |
| Risk | RSK | RSK-2026-0032 |
| Finding | FND | FND-2026-0015 |
| Action Plan | ACT | ACT-2026-0008 |
| Policy | POL | POL-2026-0003 |
| Incident | INC | INC-2026-0002 |
| Audit Plan | AUD | AUD-2026-0001 |
| Third Party / Engagement | ENG | ENG-2026-0005 |
Core Guarantees
- Strictly Sequential & Year-Scoped: Counter sequences reset annually and increment atomically per tenant.
- Immutable Once Issued: A business reference is assigned upon record creation and never mutates or re-indexes.
- No Organizational Attribute Leaks: References do not embed mutable attributes like department codes, usernames, or statuses.