How to Review Evidence Requests
Evidence requests are centrally managed in the Evidence Repository. This is where you'll review incoming requests and upload documentation to demonstrate compliance with each requirement.
Written By Micah
Overview
Customer security requests are centrally managed in the Evidence Repository. This is where you'll review incoming requests and upload documentation to demonstrate compliance with each requirement.
Understanding the Evidence Repository
When you navigate to the Evidence Repository, you'll find a complete list of security documentation requests from your customers. Each request displays:
Request name and description — Details provided by your customer explaining what they need
Owner — The team member assigned to fulfill the request
Status — Visual indicators showing whether action is needed
Expiration schedule — How frequently you'll need to refresh this evidence
Attachments — Current documentation on file
How Documentation is Handled
Your uploaded documents are securely stored within the platform and remain confidential—they are never directly shared with your customers. Instead, our independent verification system reviews your documentation against third-party risk management requirements and identifies any gaps that may need your attention. This approach eliminates the need for lengthy questionnaires or repeated document sharing.
Reviewing and Responding to Requests
For each evidence request in the repository:
Review the description to understand what documentation is needed
Assign an owner from your team who will be responsible for providing the evidence
Upload relevant documentation such as policies, configurations, or process descriptions
Monitor validation status through visual indicators
Status Indicators
The platform uses clear visual signals to help you prioritize:
Alert icon (!) — Appears next to items requiring immediate attention
Green checkmark — Indicates the evidence has been uploaded and validated successfully by our Verify AI system
Automating Evidence Collection
To streamline the process, visit the Integration Manager to connect with Office 365 or Google Workspace. These integrations can automatically collect and submit documentation, reducing manual effort for recurring evidence requests.
Evidence Refresh Schedule
Each request includes an expiration timeline showing when you'll need to update the documentation. Most items require annual renewal, giving you visibility into upcoming compliance activities.