Documentation
Everything worth knowing before you sign up. Once you log in, Help walks you through each screen.
Getting started
1. Choose a standard
After signing up, select the certification standard you are preparing for on the first screen and a project tailored to that standard is created.
2. Define scope and controls
Once you define the scope, your Statement of Applicability (SoA) is populated from the standard's original text. Record whether each control applies and why.
3. Upload evidence
Link evidence files to each control. Files are stored in encrypted object storage, and you can see at a glance what is attached to which control.
4. Run risk assessment and corrective actions
Assess risks based on assets and threats, and track the risk treatment plan, nonconformities (NCR) and corrective actions (CAPA).
5. Generate documents and get audited
Generate the SoA report, risk assessment, internal audit report and more as PDF/Word/Excel. You can issue time-limited, read-only links to external auditors.
Supported standards (14)
| Standard | Name | Edition | Minimum plan |
|---|---|---|---|
| ISO9001 | Quality Management | 2015 | FREE |
| ISO14001 | Environmental Management | 2015 | STANDARD |
| ISO20000 | IT Service Management | 2018 | STANDARD |
| ISO22301 | Business Continuity | 2019 | STANDARD |
| ISO27001 | Information Security | 2022 | STANDARD |
| ISO27701 | Privacy Information | 2025 | STANDARD |
| ISO42001 | AI Management | 2023 | STANDARD |
| ISO45001 | OH&S Management | 2018 | STANDARD |
| ISO13485 | Medical Devices QMS | 2016 | PROFESSIONAL |
| ISO37001 | Anti-bribery Management | 2025 | STANDARD |
| ISO37301 | Compliance Management | 2021 | STANDARD |
| ISO50001 | Energy Management | 2018 | STANDARD |
| ISO22000 | Food Safety Management | 2018 | STANDARD |
| TISAX | TISAX VDA ISA | 6.0.3 | PROFESSIONAL |
What each plan includes
| Item | Free | Standard | Professional | Enterprise |
|---|---|---|---|---|
| Projects | 1 | Unlimited | Unlimited | Unlimited |
| Users | 1 | 3 | 10 | Unlimited |
| Evidence files | 20 | Unlimited | Unlimited | Unlimited |
| AI credits per month | 50 | 100 | 300 | 1,000 |
| Auditor view links | 1 | 3 | 10 | Unlimited |
| Subsidiaries | 0 | 0 | 10 | Unlimited |
| Standards | 1 | 12 | 14 | 14 |
See the pricing page for exact prices and payment terms.
Frequently asked questions
Where is my data stored?
The database and server functions run in the Singapore region. Uploaded evidence files are stored in separate object storage, and download links expire after a short time.
Can I share materials with an external auditor?
Yes — issue a time-limited, read-only access link. Auditors don't need to create an account; they can view only the designated project, without edit or delete rights. Access closes automatically when the period ends.
What does the AI do?
It helps with documentation work such as drafting the scope, SoA control descriptions and gap analysis. AI never decides whether you conform to a standard — judgement and approval always stay with people.
Does it support supplier security assessments?
Yes. Buyers distribute assessment checklists to suppliers, collect responses and evidence, and assign scores and grades. It is a separate add-on, and its data is kept apart from certification management.
How do I delete my account?
Log in and use Delete account at the bottom of Settings > My profile. Your personal information is destroyed; your organization's certification records belong to the organization and remain, with authorship shown as anonymous.
Still have questions?
If you couldn't find your answer, email us. We reply on business days.
acasoty@gmail.com