Appearance
Upload and Link Evidence
This guide walks through uploading evidence documents and linking them to internal controls and regulatory obligations.
Step 1: Uploading an Evidence Document
- Navigate to Controls & Assurance > Evidence Library (
/evidence). - Click + Upload Evidence.
- Select your file (PDF, DOCX, XLSX, PNG, JPG, or CSV).
- Enter artifact metadata:
- Evidence Title: Clear, identifiable title (e.g., 2026 Penetration Test Executive Summary).
- Description: Summary of contents and key findings.
- Validity Window / Expiration Date: Set the date until which this evidence is considered valid (e.g., 1 year from test completion).
- Click Upload & Process. The file is scanned for security and processed into the Evidence Fabric.
Step 2: Linking Evidence to Controls and Requirements
- Open the uploaded evidence item from the Evidence table.
- Under the Linked Entities section:
- Click + Link Control and select the relevant internal controls (e.g.,
CTL-2026-0004). - Click + Link Requirement to associate the proof directly with regulatory obligations.
- Click + Link Control and select the relevant internal controls (e.g.,
- Once linked, the evidence automatically contributes to the assurance score and freshness status of the associated controls.