Master Policy Attestation

SyncMate — WYHEN Pty Ltd (ABN 57 688 078 999) Version 1.0 · Effective 31 August 2026 · Owner: Founder/Technical Operator · Review: annually

1. Purpose

This document replaces the need to read, sign and return each SyncMate policy separately. A single signature on this attestation binds the signatory to every document in the Policy Register below, at the versions current on the date of signing and at all later versions except where clause 5 requires a fresh attestation.

It is used in two ways:

2. Policy Register (incorporated by reference)

Ref Document Version Effective
A1 Service Level Agreement 1.0 31 Aug 2026
A2 Security and Privacy Training Programme 1.0 31 Aug 2026
A3 Development Process and Standards 1.0 31 Aug 2026
A4 Risk Management Policy and Register 1.0 31 Aug 2026
A5 IT Security Risk Assessment Methodology 1.0 31 Aug 2026
A6 Vulnerability Management Policy 1.0 31 Aug 2026
A7 Threat Intelligence and Threat Assessment 1.0 31 Aug 2026
A8 Dev/Test/Prod Environment and Release Framework 1.0 31 Aug 2026
A9 Data Protection and Confidentiality Statement 1.0 31 Aug 2026
A10 Exit, Data Destruction and Litigation Hold 1.0 31 Aug 2026

The authoritative, always-current register is published at https://syncmate.wyhen.com.au/policies. Each document there carries its own version number and effective date.

3. Attestation statement

By signing this document (or by accepting it electronically through the SyncMate policy portal), I confirm that:

  1. I have been given access to, and have read, each document in the Policy Register.
  2. I agree to comply with every obligation in those documents that applies to me, including the confidentiality, credential-handling, device-security and incident-reporting obligations in A9.
  3. Where I am signing on behalf of an organisation, I confirm I am authorised to do so and that the obligations flow to my personnel who use SyncMate.
  4. I will report any suspected security incident, data loss or policy breach to contact@wyhen.com.au without delay and at the latest within 24 hours of becoming aware of it.
  5. I understand that my obligations under A9 (confidentiality) survive the end of my engagement or subscription indefinitely.

4. Scope of coverage over time

This attestation is rolling. It covers:

WYHEN publishes every change on the policy portal with an updated version number, effective date and change note. Notice of any change is emailed to attesting customers at least 14 days before it takes effect.

5. When a fresh attestation is required

A new signature is required only where:

6. Record keeping

Signed attestations are retained for the duration of the relationship plus seven years, in the WYHEN document store. The register of who has attested, to which version, and on what date is maintained by the Founder and is available to customers and auditors on request as evidence of control operation.

7. Signature

Signatory

Field Entry
Full name
Organisation
Role / capacity
Attesting as ☐ Personnel ☐ Customer / firm ☐ Auditor
Register version attested 1.0 (31 Aug 2026)
Signature
Date signed

Countersigned for WYHEN Pty Ltd

Field Entry
Name
Role
Signature
Date

Electronic acceptance recorded through the SyncMate policy portal, or a signed and returned PDF or scan of this page, each constitute a valid attestation.