Skip to Content

Contributors

Re: solution for audit compliant storage of documents for dematerialized document

Hi Alex, 

not within the standards of odoo, in particular not with it's ability to alter anything anytime in postgres (pSQL) and the way the documents are stored. 

We always use a document management system to fulfil what shall be holding up with compliance. If this a feasible solution for your project , let me know, and I can fill you in then. 
Together with all the requirements, including DigSig there. Which is often not enough to really prove unaltered records, as the time base and signature provider comes into play, too. We have done a particular Public Sector project in 2001/2 with qualified DigSig in Germany (waybill for hazardous transports) and learned it that way.

Greeting to Luc 
Best Joe



Von: "Alexandre Fayolle" <notifications@odoo-community.org>
An: "Odoo Community Association, (OCA) Contributors" <contributors@odoo-community.org>
Gesendet: Mittwoch, 5. Oktober 2022 15:11:58
Betreff: solution for audit compliant storage of documents for dematerialized document

Hello,

A customer of mine is asking if the storage of Documents is compliant 
with the various audit requirements (inalterability, etc). I don't think 
the standard (even in EE) can take care of this. But maybe I'm wrong.

I see requirements such as

"""
technical procedures, such as electronic signatures, must be used to 
ensure the integrity of the recorded information. The time at which the 
information was recorded must be verifiable without any possibility of 
falsification (e.g. by time stamping). Information such as protocols, 
log files, etc. must also be retained.
"""

Has anyone implemented something similar and would be willing to share 
experience?



-- 
Alexandre Fayolle
Senior Software Engineer
Tel : +33 4 58 48 20 30

Camptocamp France SAS
18 rue du Lac Saint André
73 370 Le Bourget-du-Lac
France

http://www.camptocamp.com

_______________________________________________
Mailing-List: https://odoo-community.org/groups/contributors-15
Post to: mailto:contributors@odoo-community.org
Unsubscribe: https://odoo-community.org/groups?unsubscribe



by Joerg Lorenz. - 03:46 - 5 Oct 2022

Reference

  • solution for audit compliant storage of documents for dematerialized document
    Hello,
    
    A customer of mine is asking if the storage of Documents is compliant 
    with the various audit requirements (inalterability, etc). I don't think 
    the standard (even in EE) can take care of this. But maybe I'm wrong.
    
    I see requirements such as
    
    """
    technical procedures, such as electronic signatures, must be used to 
    ensure the integrity of the recorded information. The time at which the 
    information was recorded must be verifiable without any possibility of 
    falsification (e.g. by time stamping). Information such as protocols, 
    log files, etc. must also be retained.
    """
    
    Has anyone implemented something similar and would be willing to share 
    experience?
    
    
    -- 
    Alexandre Fayolle
    Senior Software Engineer
    Tel : +33 4 58 48 20 30
    
    Camptocamp France SAS
    18 rue du Lac Saint André
    73 370 Le Bourget-du-Lac
    France
    
    http://www.camptocamp.com
    

    by Alexandre Fayolle - 03:06 - 5 Oct 2022