Why references, not uploads

XIRIQ is designed so you never have to upload sensitive documents. The evidence register records what evidence exists and where it lives, not the documents themselves.

The model

An evidence record is a structured citation: a title, what the document demonstrates, and optional detail such as a document reference, type, status, location, owner, version and review date. The record links to the outcomes it supports; the document itself stays wherever it already lives, in your document management system, network share or wiki.

Example
One evidence record: a citation with linked outcomes, not a stored file.

Why it works this way

  • OT network diagrams, security policies and incident procedures are exactly the documents you least want duplicated into another system.
  • Your document management system remains the single source of truth; XIRIQ holds a pointer, so there is no second copy drifting out of date.
  • A reviewer holding the report can locate every cited document from its reference and location without XIRIQ needing to serve a single file.

When storage is still possible

If you do want files in XIRIQ, attachments can be enabled per account. They are off by default, and attaching stays a secondary action on a record: the citation is always the primary thing.

Can't find what you need? Browse the Resources articles or use the feedback button inside the app.