Master Policy Attestation
SyncMate — WYHEN Pty Ltd (ABN 57 688 078 999) Version 1.0 · Effective 31 August 2026 · Owner: Founder/Technical Operator · Review: annually
1. Purpose
This document replaces the need to read, sign and return each SyncMate policy separately. A single signature on this attestation binds the signatory to every document in the Policy Register below, at the versions current on the date of signing and at all later versions except where clause 5 requires a fresh attestation.
It is used in two ways:
- Personnel attestation — every founder, employee, contractor or third party signs once before being granted any access to SyncMate systems or customer data, and re-attests annually.
- Customer / due-diligence attestation — a customer, accounting firm or auditor signs (or simply accepts) once to confirm they have received and reviewed the framework, instead of executing ten separate acknowledgements.
2. Policy Register (incorporated by reference)
| Ref | Document | Version | Effective |
|---|---|---|---|
| A1 | Service Level Agreement | 1.0 | 31 Aug 2026 |
| A2 | Security and Privacy Training Programme | 1.0 | 31 Aug 2026 |
| A3 | Development Process and Standards | 1.0 | 31 Aug 2026 |
| A4 | Risk Management Policy and Register | 1.0 | 31 Aug 2026 |
| A5 | IT Security Risk Assessment Methodology | 1.0 | 31 Aug 2026 |
| A6 | Vulnerability Management Policy | 1.0 | 31 Aug 2026 |
| A7 | Threat Intelligence and Threat Assessment | 1.0 | 31 Aug 2026 |
| A8 | Dev/Test/Prod Environment and Release Framework | 1.0 | 31 Aug 2026 |
| A9 | Data Protection and Confidentiality Statement | 1.0 | 31 Aug 2026 |
| A10 | Exit, Data Destruction and Litigation Hold | 1.0 | 31 Aug 2026 |
The authoritative, always-current register is published at https://syncmate.wyhen.com.au/policies. Each document there carries its own version number and effective date.
3. Attestation statement
By signing this document (or by accepting it electronically through the SyncMate policy portal), I confirm that:
- I have been given access to, and have read, each document in the Policy Register.
- I agree to comply with every obligation in those documents that applies to me, including the confidentiality, credential-handling, device-security and incident-reporting obligations in A9.
- Where I am signing on behalf of an organisation, I confirm I am authorised to do so and that the obligations flow to my personnel who use SyncMate.
- I will report any suspected security incident, data loss or policy breach to contact@wyhen.com.au without delay and at the latest within 24 hours of becoming aware of it.
- I understand that my obligations under A9 (confidentiality) survive the end of my engagement or subscription indefinitely.
4. Scope of coverage over time
This attestation is rolling. It covers:
- the versions of the registered documents current at the date of signature; and
- all later versions of those documents that make editorial, clarifying or strengthening changes; and
- any new policy added to the register that does not impose a materially greater obligation on the signatory.
WYHEN publishes every change on the policy portal with an updated version number, effective date and change note. Notice of any change is emailed to attesting customers at least 14 days before it takes effect.
5. When a fresh attestation is required
A new signature is required only where:
- a change materially increases the signatory's obligations (WYHEN will say so explicitly in the change note); or
- 12 months have elapsed since the last attestation (annual re-attestation for personnel); or
- the signatory's role or access level changes materially (e.g. gaining production database access).
6. Record keeping
Signed attestations are retained for the duration of the relationship plus seven years, in the WYHEN document store. The register of who has attested, to which version, and on what date is maintained by the Founder and is available to customers and auditors on request as evidence of control operation.
7. Signature
Signatory
| Field | Entry |
|---|---|
| Full name | |
| Organisation | |
| Role / capacity | |
| Attesting as | ☐ Personnel ☐ Customer / firm ☐ Auditor |
| Register version attested | 1.0 (31 Aug 2026) |
| Signature | |
| Date signed |
Countersigned for WYHEN Pty Ltd
| Field | Entry |
|---|---|
| Name | |
| Role | |
| Signature | |
| Date |
Electronic acceptance recorded through the SyncMate policy portal, or a signed and returned PDF or scan of this page, each constitute a valid attestation.