Purpose and scope
Confidentiality
Certiqual publishes enough information to make a quality decision understandable while protecting assessment evidence, personal data, security-sensitive material and legitimate commercial information.
01
Information classification
Public information includes standards, policies and the defined register record. Restricted information includes evidence files, item content, security controls, personal data, deliberations and material whose disclosure would create harm or breach a duty.
02
Access and use
Access is limited by role and need. Information is used only for the stated quality, professional-award, legal or administrative purpose and is transferred through controlled channels. Confidential information must not be reused for commercial advantage or unrelated work.
03
Permitted disclosure
Disclosure may occur with authority, to competent advisers and service providers under duty, where required by law or authority, or where necessary to address a serious risk. Where lawful and practicable, the affected party is informed before compelled disclosure.
Mandatory controls
What the policy requires in operation
- Confidentiality obligations continue after an assignment ends.
- Public reporting avoids unnecessary personal or security-sensitive detail.
- Suspected loss, unauthorised access or disclosure is escalated and investigated.
- Retention and disposal follow purpose, legal need, security and the applicable privacy notice.
Public accountability
Status changes remain visible
Where this policy affects a public accreditation or Certi Mark, the live register reflects the current status, restrictions and material public history without disclosing protected evidence or personal data.
