Let's talk

Sazinga Sarva · Governance

Compliance, Audit & Inspection Management Software

Know what is due, what is evidenced and what has expired

Organisations carrying recurring compliance obligations, from food safety audits and building inspections to workforce certification

In production — Fourteen installations — six in the USA, five in the Gulf, two in the UK and one in Africa — across infrastructure, aviation, food and restaurants, and healthcare (September 2026).

The Comply executive dashboard on a laptop — overall compliance at 86.4%, at-risk workers, credentials expiring this week and compliance by location — beside the action centre on a phone, listing five credentials that end within fifteen days with the worker and the date against each
The portal and the phone. Where compliance sits across every site on one; what needs attention today, worker by worker, on the other. Both are real captured screens. The devices around them are drawn, not photographed. The Pending verification card in the dashboard's top row is an addition, and the phone screens are the portal's responsive layout below 900px rather than a native app. A real captured Comply screen, on a demonstration tenant's data, composited into a generated photograph.

Comply in use

Every screen below is rebuilt from Comply's own interface and filled with a demonstration tenant's data. They are not captures of a live customer system.

Tap any picture to open it full size.

Sazinga Comply executive dashboard for an infrastructure contractor, showing overall compliance, at-risk workers, credentials expiring this week, a compliance-by-site bar chart and a column of rule-based insights
Executive dashboard for a demonstration tenant: compliance at 86.4% across four construction sites, with at-risk workers, credentials ending this week and the weakest site called out. The insights column is written by fixed rules from the same figures, not by a model.
Organisation credentials list filtered to records pending verification, with worker name, certification title, end date, source, upload date and verification status
The verification queue. A competency card or medical certificate stays pending until someone with verify permission checks it, and the list filters by verification state, worker and expiry window.
Credential record for a work-at-height competency awaiting verification, with a PDF competency card and a photographed assessment sheet as evidence, verify and reject controls, history, and the worker's other credentials
Verifying one record. The competency card and the photographed assessment sheet are stored with size and SHA-256 hash, the history shows who created and attached what, and a rejection carries a reason that the worker sees on their own record. The evidence tiles, the history panel, the other-credentials table and the verification checklist are additions; the real page is a single column of fields with Verify and Reject, and the repo has no upload flow.
Designation to certification mapping table listing the certifications each trade must hold, with credential type, validity in days, required flag and coverage across the workforce
The requirements register. Each trade carries the certifications it must hold and their validity period — 730 days for work at height, 365 for an operator's medical — and coverage shows how many people in that trade hold a current record.
September 2026 calendar showing training sessions and certificate end dates by day, with a searchable list of the month's events and a summary of the next seven days
Toolbox talks, assessments and certificate end dates on one calendar. An expiry appears on the day it falls, so the renewal can be booked before the date rather than found during an inspection.
Audit log timeline grouped by day, listing a verification, a submitted daily site safety inspection, a credential upload, an automatic escalation, a rejection and a mapping change, each with time and actor
The audit log is read-only and grouped by day. Each entry records the entity, the action, the person or system behind it and the time — including the escalation the system raised when a crane operator's competency reached its end date with no renewal on file. The daily site safety inspection entry comes from the v2 obligations engine, which has a schema and seed data but no portal screen.

You get something made from your own material, within one working day, and no call unless you ask for one.

Send one inspection checklist you use today

A PDF, a Word file, or a photo of the paper form. Within one working day we return it as it would look in Comply: each item with the evidence it needs and the date it expires.

One file, up to 10 MB. Nothing you send is shared or kept beyond answering you.

A person reads every enquiry and replies within one working day.

Would rather read than write? See the screens above, or the whole platform — seven applications, each one standing on its own.

Compliance is rarely lost because nobody cared. It is lost because the obligations sit in one spreadsheet, the certificates sit in an inbox, the inspection photographs sit on a phone, and nobody can say on any given Tuesday which of the three is out of date. The answer only arrives when an auditor asks for it, and by then preparation costs a fortnight.

Sazinga Comply puts obligations, evidence and expiry dates in one register. Each obligation has an owner, a frequency and a due date; each is closed by the document, photograph or signed checklist that actually proves it; and every verification records who did it and when. Audit readiness stops being a project and becomes a number you can look at.

Where the product actually is

Comply is in production at fourteen installations — six in the USA, five in the Gulf, two in the UK and one in Africa — across infrastructure, aviation, food and restaurants, and healthcare (September 2026). That is worth stating plainly, because compliance software bought on a promise is how organisations end up with two registers instead of none.

The healthcare workforce path is the most developed of them: a running application over a schema of thirty-three tables, covering staff, designations, the certifications each designation requires, certificate versions, training events and attendees, escalations and an audit log, with an API and portal behind it. The obligation register, the checklist engine and the evidence trail that serve the other sectors are the same core generalised — one engine running a food safety audit, a site safety inspection and a workforce check rather than three.

What a property inspection looks like in practice

A property inspection is the case where the evidence matters most, because the person who relies on it was not at the building and reads what came back months later.

Creative Lending Solutions arranges finance against commercial property — hotels, gas stations, multi-family residential, franchises and retail centres. Before a loan is written somebody has to go and look at the building, and what comes back has to be good enough for an underwriter to rely on months later.

The mechanism is the one the vehicle handover in Sazinga Rentals uses, because it is the same problem: a condition recorded at a moment, by a named person, that nobody can quietly revise afterwards. The inspector works from a phone at the property. Photographs are taken in the app rather than chosen from a gallery, and each carries the coordinates and the time the shutter fired — not the time it reached the server, which is the field a dispute actually turns on when the phone had no signal at the site.

The back office sees each survey as it lands. For CLS we added a supervisor role: a manager sees what each member of staff has actually completed, rather than what the schedule says they were sent to do. That distinction is the whole reason the role exists.

The same shape serves a property manager in Goa running condition surveys across a portfolio, and AccuTax Pro, a US practice whose accounting and residential mortgage work carries survey and inspection obligations of its own, runs Sazinga products on a SaaS it controls.

Most of these deployments run under somebody else’s brand, so the operators cannot be named. What we can see, because the software is ours, is how hard it is worked: two to three surveys a day in each installation (September 2026). That is a working rhythm rather than a pilot, and it is the only claim about scale this page can honestly make — the rest of it sits inside another company’s product.

What it replaced

The figures below are the operator’s own, given in September 2026, for the effort one property takes from start to filed. They are ranges because the properties are not alike — a single retail unit and a hotel are not the same afternoon — and they are an estimate of practice rather than a stopwatch study. We publish them as that.

Per propertyBeforeWith the survey app
The site survey itself60–90 min45–60 min
A second visit for something missed60–90 min0–15 min
Organising and renaming photographs30–45 min0–5 min
Writing the survey report60–120 min15–30 min
Filing, emailing, sharing15–30 min2–5 min
Total3.5–6 hours1–1.75 hours

The survey itself barely moves, and that is the honest part: walking a building takes as long as it takes. Everything that shrank was work that only existed because the first visit’s output was photographs on a phone and notes on paper.

The second visit is the line worth reading twice. It does not disappear because people became more careful; it disappears because a checklist with required items cannot be submitted with a gap in it, so the gap is found while the inspector is still standing in the building rather than a week later at a desk.

What an obligation is, precisely

An obligation is a recurring duty with a source, a period, an owner and a defined artefact that closes it. That definition is the whole product, and each of those five words is a column.

An obligation record carries the instrument it comes from and the clause within it, so a finding can be argued back to the rule rather than to a policy document nobody has read. It carries a frequency — daily, weekly, monthly, quarterly, half-yearly, annual, event-driven or once — plus an anchor that says which day of that period, a due offset in days after the period closes, a reminder lead time, a grace period, a severity, and the kind of evidence that closes it: a form, a document, an acknowledgement, or nothing.

Crucially it carries an owner as a role at a scope, not a named person. An obligation owned by the site safety officer resolves, at generation time, to whoever holds that role at that site today. Staff turnover does not orphan a duty.

How the calendar fills itself

Nobody creates the recurring items. A scheduler function walks the active obligations for a period, works out each one’s period boundaries from its frequency and anchor, resolves the owner through the assignments at that scope, and writes an instance with a period start, a period end and a due timestamp. A second function marks the ones that have passed their due date and grace as overdue.

Instances exist per scope. An obligation defined at site level generates one instance per site, which is why a register of thirty obligations across five sites is a real workload figure rather than thirty rows that quietly stand for a hundred and fifty.

Event-driven obligations are generated by the thing that triggers them, and record what triggered them, so an incident produces its statutory notification instead of relying on somebody remembering that it should.

What closing an obligation actually requires

An instance closes against a submission, a document or a filed acknowledgement — a portal reference number and the date it was filed. It cannot close against a tick.

Submissions are versioned rather than overwritten: an edit made after submission writes a new revision with the change recorded, so the register that was true in August is still legible in March. And once an output has been produced from a submission — a register, a return, anything issued outside the organisation — the submission is locked by a database trigger, not by a convention. The document you filed and the record behind it cannot be made to disagree after the fact.

Findings work as an event stream. A finding’s state is the result of the events applied to it, so the history of a non-conformity is not something reconstructed from a status column that was edited four times.

How the audit trail resists being edited

Two mechanisms, both in the database rather than the application.

The audit log is append-only and hash-chained: each entry incorporates the one before it, so deleting or altering a past entry breaks the chain and the break is detectable. Append-only enforcement is a trigger on the table, which means it applies to anything that writes — a script, a console, a future feature — and not only to the code that remembered to behave.

How one installation keeps two organisations apart

Tenant isolation is enforced by Postgres row-level security, keyed on an organisation identifier set per transaction. The application role cannot bypass it. Without that value set, every tenant-scoped table returns zero rows — the failure mode is an empty screen, not another organisation’s staff list.

Access within a tenant is built from forty-five permissions and seven system roles, and a tenant can define roles of its own on top. Sector-specific content arrives as a domain pack that is cloned into the organisation: obligation templates, form definitions and lookups for that industry, which the organisation then edits as its own rather than receiving as an untouchable default.

What it does not do

It does not file anything for you. There is no integration that submits a return to a regulator’s portal; Comply records that the filing happened, by whom, and with which reference. It does not interpret regulation either — the obligation templates in a domain pack are a starting register built from published instruments, and they need a compliance officer to confirm which apply.

It is not a document management system, not a learning management system, and not a health and safety incident investigation tool. It knows a training event happened and that a certificate resulted; it does not deliver the training. That gap is what Sazinga Engage does.

Where to go next

The domain packs seeded so far cover construction and aviation training, and the workforce path covers healthcare. Read the operating context on the construction, food safety and healthcare pages. If your compliance problem is really a traceability problem — which batch, which lot, which customer — that is Sazinga Factory rather than this.

Comply on a phone

Swipe for the other screens.

Worker self-service home on a phone, showing an alert that a site safety induction expires next month and counts of certifications and training sessions
A scaffolder's home screen on a phone: the certification ending next and the session that renews it, with counts of records and invitations. This is the portal's responsive web view, not a native app.
List of a worker's certifications on a phone with expiry dates and verification status, including one pending record and two expired records kept after renewal
My certifications. Records from earlier cycles stay on the list after renewal, which is what an inspector asks for, and a record ending within the month is marked with the days remaining.
Add certification form on a phone with title, start and expiry dates, issuing training cell, an attached photograph of a signed assessment sheet and notes
Adding a record from the site: a catalog item or a free-text title, dates, issuer, and a photograph of the signed assessment taken on the phone. The photo field is an addition: the repo has no upload flow, and these phone screens are the portal's responsive layout below 900px rather than a native app.
Submitted certification record on a phone marked pending, with dates, issuer, notes and the attached photograph of the assessment sheet
After submission the record is pending and its owner can still edit it. Once someone verifies it, it is locked to changes from the worker's side. The attached photo preview is an addition: the repo has no upload flow, and these phone screens are the portal's responsive layout below 900px rather than a native app.
Training sessions a worker is invited to, with site, date and RSVP status, and the details of the next session
Training invitations with RSVP state, and the re-induction that renews the site safety induction for another 365 days.
Manager's action center on a phone with tabs for expired, expiring soon, missing required and escalations, showing five credentials ending within 15 days
The action center on a phone: five credentials end within 15 days, alongside expired records, the eight gaps against the requirements register, and open escalations.

What Comply does

Obligations register

Every obligation an organisation carries, held in one register with its owner, its frequency and its next due date. What is due this week, what is overdue and what is unassigned is a query rather than a chase.

Evidence and verification

An obligation is closed by attaching the thing that proves it, a certificate, a photograph, a signed checklist or a test result. Each item records the person who verified it and the date they did so.

Certification and expiry tracking

Licences, training records, insurance and equipment certificates each carry an expiry date. Warnings are raised on a schedule you set before the lapse, so renewal happens ahead of the date rather than after it.

Audits and inspections

The same checklist engine runs a food safety audit, a site safety inspection and an internal review. Findings become non-conformities, each with an owner, a due date and a corrective action that must be evidenced to close.

The inspection types it takes

Property inspection and collateral condition surveys, safety and EHS inspections, facility and building inspections, equipment and asset inspections, and food safety audits, all on one checklist engine rather than one product each. An inspection type is a checklist, a cadence and the evidence that closes it, so adding a type is configuration rather than a new deployment.

Field capture and the supervisor's view

The inspector works on a phone at the property — photographs taken at the point of capture with their location and time attached, not uploaded from a gallery afterwards. The back office sees every survey as it lands. A supervisor role, built for a US lending client, shows what each member of staff has actually done rather than what the rota says they were sent to do.

Built around how the work actually runs

  • Audit readiness is a live figure rather than a fortnight of preparation
  • Every verification records who, what and when, and is not edited away
  • Expiring certificates surface before the lapse, not during the audit
  • One checklist engine serves food safety, site inspection and workforce checks
  • Corrective actions carry an owner, a due date and a closing evidence item
  • Property inspection, safety and EHS, facility, equipment and asset inspections on one engine
  • Photographs carry the time and place they were taken, not the time they uploaded

What we found and fixed while building Comply

Each of these is a real problem from a live installation, what it cost, and what changed.

Sazinga Comply — frequently asked questions

What is Sazinga Comply?

Sazinga Comply is compliance, audit and inspection management software. It holds an organisation's recurring obligations in one register, records the evidence that closes each one, tracks certificate and licence expiry dates, and keeps a full trail of who verified what and when.

What kinds of inspection does it handle?

Property inspection and collateral condition surveys, safety and EHS inspections, facility and building inspections, equipment and asset inspections, and food safety audits. They are not separate products — an inspection type is a checklist, a cadence and the evidence that closes it, so the same engine runs all of them and a new type is configured rather than built. Findings become non-conformities with an owner, a due date and a corrective action that has to be evidenced before it closes.

Which industries is it built for?

It is built to be industry-neutral. The same obligation register, checklist engine and evidence trail serve food safety audits, building and infrastructure inspections carried out by safety inspectors, and healthcare workforce compliance. Terminology and checklists are configured per organisation.

How far along is the product?

It is in production, at fourteen installations — six in the USA, five in the Gulf, two in the UK and one in Africa — across infrastructure, aviation, food and restaurants, and healthcare. The healthcare workforce path is the most developed of them, covering staff certification, training records and expiry tracking; the audit and inspection paths for other sectors run on the same core.

How does it prevent a certificate lapsing unnoticed?

Each certificate, licence and training record is stored with an expiry date and an owner. Warnings are raised on a schedule set per certificate type, ahead of the expiry date, and an item past its date is flagged as non-compliant until a replacement is uploaded.

What does the audit trail record?

For every obligation and every piece of evidence, it records who uploaded or verified it, what was attached, and the date and time. The trail is append-only, so a past verification remains visible even after the obligation is re-evidenced in a later cycle.

Can inspectors record findings on site?

Yes. Inspections are completed against a checklist, with photographs attached to individual line items. A failed item becomes a non-conformity with an owner and a due date, and stays open until a corrective action with its own evidence closes it.