The audit produces two outputs, generated from the same reviewed set of findings.
Branded PDF report. The cover states the audit verdict — Pass, Flag, or Fail — and the finding counts by severity. Each finding in the body shows: the normative clause cited, the exact passage from the EPD that triggered the finding, and a specific question to put to the applicant or verifier. The report is formatted for use in registration correspondence and can be issued to the applicant directly.
Excel workbook. All findings in a sortable table — by severity (Critical / Warning / Info), check group, and product. Designed for internal Programme Operator use: batch screening across a publication cycle, auditor QA, and tracking applicant responses. Findings can be filtered to show only Critical items, or grouped by check category for pattern analysis across the submission pool.
Risk grading follows three levels. Critical — must be resolved before registration can proceed. Warning — flagged for Programme Operator review; the PO decides whether to require a response. Info — noted for the applicant's awareness; no action required for registration.