The application already holds the records. We audit what it does with them.
System Kernel Path is a small practice on Jalan SS 24/11. We sit with SharePoint tenancies, M-Files vaults, OpenText libraries, Laserfiche repositories, and the file servers that still pretend to be a document system — then write down what they actually do.
Field note: an application audit starts with the store people actually use, not the architecture diagram from go-live.
What can be requested
These are booked as scoped engagements from the Petaling Jaya studio. Pricing is discussed after we know the repositories, sites, and whether you need a written report for an internal owner or for a regulator-facing file.
A second reading of how a vendor or internal team set up the live application.
One to three weeks
From recent fieldwork
Selangor · construction contracts
214 sharing links still open after practical completion
A vault used by consultants had never had its guest links reviewed. We counted what was still reachable, split drawings from declared contracts, and gave the commercial team a revoke order they could actually run.
Klang Valley · finance libraries
Retention labels published, almost none applied
Purview looked complete in the catalogue. The working libraries did not apply a label. The report named the auto-apply policies that pointed at a renamed department, and the drop library that had to stay separate from the official store.
How we work
A method you can walk into a tenancy with
Inventory, sample, compare with policy, write findings in the order of harm. The full sequence — including what we need from you before week one — is on the methodology page.
We use a small set of cookies to remember this choice and to understand which pages are read. You can accept or reject non-essential cookies. Either choice still lets you use the site. Read the cookie notice.