Appearance
Reporting & Executive Visibility
Where to find it: Reports (/reports), Compliance Dashboard (/compliance-dashboard), Compliance Visualizer (/visualizer) and Home Dashboard (/dashboard).
Reporting in OrviQ is derived from the governed records rather than maintained alongside them. There is no separate reporting store to reconcile, and no export that can drift from the register it came from.
Articles
| Article | What it covers |
|---|---|
| Dashboards | Home, compliance dashboard and the visualizer |
| Compliance Posture | Reading a posture figure honestly, and what each number means |
| Reports & Exports | The available reports, CSV exports, report packs and schedules |
| Historical Reconstruction | Reproducing any past position, and its limits |
The governing principle
Every figure is traceable to a record
OrviQ does not produce a number it cannot explain. Percentages are shown with their numerator, denominator and the rule that produced them; unassessed items are counted as unassessed rather than being excluded or assumed compliant; and an approved exclusion appears as an exclusion with its justification and approver visible.
This is the practical consequence of the separation principles. It makes some dashboards less flattering than they would otherwise be, and every figure on them survives a follow-up question.
What is read-only
The portfolio aggregate, the regulatory reporting dashboard, the freshness view and every CSV export are read-only. They compute from governed records, write nothing, produce no audit events and involve no AI.
Running a report never changes a compliance position.
Reconciliation
The portfolio aggregate reconciles with the requirement projection and the requirement workspace. The same requirement viewed in three places shows the same position.
This matters more than it sounds. Registers and dashboards that compute independently drift, and the first anyone knows is when a board pack disagrees with the register somebody opened during the meeting.
Who reads what
| Audience | Typically reads |
|---|---|
| Compliance Analyst | The registers themselves, plus freshness and evidence gap views |
| Compliance Manager | Portfolio aggregate, requirement assurance cockpit, findings and action plan status |
| CISO or CRO | Compliance posture, risk visibility, evidence gaps, resilience posture |
| Internal Auditor | Determination explainability, evidence packages, historical reconstruction |
| Board or committee | Compliance posture, accepted deviations, overdue remediation, resilience status |
| External Auditor or Regulator | Exported evidence packages and reconstructed positions |
Permissions
| Action | Permission |
|---|---|
| View dashboards and reports | report.read |
| Download CSV and exports | export.data |
| Create and manage recurring report generation | report.schedule |