Reviewing Evidence
Browse the evidence repository, review files, link them to objectives, and use the split-screen Reader.
The client gives you three ways to work with the evidence that arrived in the OSC's package: the engagement's Evidence tab, a per-file review page, and a split-screen Evidence Reader built for scoring while you read.
The Evidence tab and repository
In the engagement's Package Data section, the Evidence tab lists the package's evidence files with a count badge. The full-page Evidence Repository view adds summary cards — Total Evidence, Expiring Soon (within 30 days), and Expired — above the Evidence Files table, and a red Expired Evidence alert appears when any file is past its expiration date. The repository is marked Read Only: you review what the OSC uploaded; you don't change it.
Reviewing a single file
From a control's Evidence list, click Review on a file (or Download to save it locally). The review page shows the file preview on the left and a two-tab panel on the right:
- Objectives — the assessment objectives this file is linked to. Click Link to Objectives to open a searchable picker and connect the file to the objectives it supports; linked objectives can be unlinked again from the same list.
- Details — file metadata, plus an internal review thread where your team can leave comments about the file. These comments stay inside your instance.
The Evidence Reader
For long documents, the Reader gives you a full-screen split view: evidence on one side, the control's objectives on the other, so you can score as you read.
- On a control detail page, click Reader in the top-right. It opens in a new tab.
- The top bar has a Jump to control picker plus previous/next control buttons, and an exit button to return to the normal control page.
- The assessment pane shows the control's objectives with the same scoring fields as the control detail page, and a Save Findings button for the control-level findings.