Search all 478 artefacts by title, document ID or content.
Form | Family 15, Trust Center Meta
Estimated completion time: 40 seconds. Five fields, four of them things you already know.
This document is the source of truth for: access-request-field-set, additional-credential-request-field-set
Those surfaces render this text from here. They do not keep their own copy, so they cannot drift from it.
Artefacts this one references or cannot be issued without.
Artefacts that would be blocked if this one were missing or out of date.
FRM-GL-504 | Version 1.0.0 | Last Modified On 31 July 2026
Estimated completion time: 40 seconds. Five fields, four of them things you already know.
What this unblocks. A credential gives you the assurance documents that a hospital's IT and security review needs: full assessment reports, detailed architecture, continuity test evidence and insurance. The security whitepaper, the sub-processor register, the DPA, the SLA, the standard MSA, the exit commitment and every security bulletin are already public and need no credential at all. Start there if you are in a hurry.
Decision target: four business hours. Outer limit: one Business Day. If you have not had a decision by then, write to
info@pensievelabs.organd it is escalated to the Founder.
| # | Field | Type | Required | Help text | Validation | Why it is needed |
|---|---|---|---|---|---|---|
| 1 | Full name | text | Yes | The name of the person who will hold the credential | 2 to 100 characters | Access is granted to a person, never to a role or a shared mailbox (POL-GL-500 Section 1.4) |
| 2 | Work e-mail | Yes | Your organisation's e-mail address | Valid address; free webmail domains are declined with a reason | It is the whole basis of the gate. It also becomes your watermark (POL-GL-510) |
|
| 3 | Organisation | text | Yes | The hospital, group, advisory firm or authority you act for | 2 to 150 characters | Determines your tier and whether auto-approval applies |
| 4 | Role | select | Yes | IT Head, CISO / Security, Medical Superintendent, CEO / Director / Owner, CFO / Finance, Quality / Accreditation, Legal / Company Secretary, Procurement, Consultant or adviser, Other | One value; free text where Other | Determines which documents are surfaced first. An IT head and a CFO should not land on the same page |
| 5 | What do you need? | textarea | No | A document name, a question, or a subject. "Everything" is a valid answer | ≤ 1,000 characters | Lets the decision be made once, with the right documents, instead of over three e-mails |
| 6 | Deployment model of interest | select | No | DM-1 Dedicated, DM-2 Shared, DM-3 Your own cloud, DM-4 On-premise, Not sure yet |
One value | Every security answer differs by model. "Not sure yet" is the most common and most useful answer |
| 7 | Existing customer? | radio | No | Yes / No / In discussion | One value | Routes to the workspace credential path where yes |
Consent and terms, shown above the submit control:
By submitting this form you agree to the Trust Center Terms of Use (
POL-GL-052) and confirm you have read the Privacy Policy (POL-GL-053). Documents at the NDA tier additionally require you to accept the mutual non-disclosure agreement (NDA-GL-002) on first access. It is a single click and it is recorded.
Edsol Edtech Pvt. Ltd.will use this information to decide your request, to provision and administer your credential, and to contact you about the documents you asked for. It will not be sold, will not be enriched from third-party sources, and will not be used to profile your organisation. You may ask for it to be deleted at any time:info@pensievelabs.org.
What Pensieve Labs deliberately does not ask for: your telephone number, your budget, your
timeline, your purchase intent, your bed count, or a meeting. POL-GL-500 Section 3.
Validation and error messages. Each error names the field and the fix: "That looks like a personal e-mail address. Please use your work address; access is granted to a named person at an organisation." Never "Invalid input."
On submit: the request is written to the audit log with the timestamp, IP and user agent
(POL-GL-503), auto-approval rules are evaluated, and either NTC-GL-505, NTC-GL-506 or
NTC-GL-508 is sent.
Estimated completion time: 60 seconds. For hospitals that have reached the five-credential cap.
Why there is a cap. Five active credentials per hospital, enforced in the database. It is not a commercial limit and there is no charge to raise it. It exists so that the list of people who can read your workspace's documents stays a list somebody actually knows, and so that a departed employee's access is noticed.
POL-GL-500Section 1.3.You have two routes and both are quick. Replace a credential you no longer need: that is instant and needs no approval from
Pensieve Labs. Or ask for an additional one using this form.
| # | Field | Type | Required | Help text | Validation | Why it is needed |
|---|---|---|---|---|---|---|
| 1 | Hospital / workspace | prefilled | Yes | Prefilled from your credential | Read-only | Identifies the workspace the cap applies to |
| 2 | Requested by | prefilled | Yes | You must hold an active credential to submit this | Read-only | The request must come from inside the hospital, not from the new person |
| 3 | New user: full name | text | Yes | 2 to 100 characters | Access is granted to a person | |
| 4 | New user: work e-mail | Yes | Must be on the hospital's domain, or a domain you confirm belongs to the hospital group | Valid address | Domain determines whether auto-approval applies | |
| 5 | New user: role | select | Yes | Same list as FRM-GL-504 field 4 |
One value | Determines the documents surfaced |
| 6 | Route | radio | Yes | (a) Replace an existing credential (pick one below); (b) Request a sixth or further credential | One value | (a) is instant; (b) needs a decision |
| 7 | Credential to replace | select | Conditional | Required where route (a). Lists your five active credentials with the last access date | One value | The last-access date usually makes the choice obvious |
| 8 | Reason for an additional credential | textarea | Conditional | Required where route (b). One sentence is enough: for example, a second site, a separate finance reviewer, an external auditor engaged by you | ≤ 500 characters | It is the record of why the cap was raised, and it is what the quarterly access review reads |
| 9 | Duration needed | select | Yes | Permanent, Until a stated date | One value plus a date | A time-boxed credential is approved faster and expires without anybody having to remember |
| 10 | Authorised by | text | Yes | Name and designation of the person at the hospital authorising this | 2 to 150 characters | The hospital, not Pensieve Labs, decides who inside the hospital sees its documents |
Decision and service level.
| Route | Outcome | Timing |
|---|---|---|
| (a) Replace | Automatic. The replaced credential is revoked and NTC-GL-507 is sent to its holder |
Immediate |
| (b) Additional, time-boxed, on the hospital's own domain | Approved by the Trust Center admin | 4 business hours |
| (b) Additional, permanent, or on a domain outside the hospital's | Approved by the Founder | 1 Business Day |
| Refused | NTC-GL-506 with the ground and the alternative |
Same targets |
What raising the cap does not do. It does not change your Charges, does not require a Change Order, and
does not alter your Agreement. Every additional credential is reviewed at the next quarterly access review
(POL-GL-500 Section 4) and time-boxed credentials expire on their own.
External auditors and advisers. A credential for a person outside the hospital, such as an auditor, an
accreditation consultant, an IT adviser, is granted where the hospital authorises it in field 10, is
time-boxed by default, and is subject to NDA-GL-002. Pensieve Labs does not require a separate paper
NDA from the adviser.
| Topic | Document |
|---|---|
| Who gets access, refusal grounds, review and revocation | POL-GL-500 |
| Trust Center terms of use | POL-GL-052 |
| Privacy Policy | POL-GL-053 |
| Click-through mutual NDA | NDA-GL-002 |
| Approval, refusal, revocation and cap e-mails | NTC-GL-505 to NTC-GL-508 |
| What is logged about your use | POL-GL-503 |
| Watermarking | POL-GL-510 |
| Version | Date | Author | Summary |
|---|---|---|---|
| 1.0.0 | 31 July 2026 |
Trust Center Admin | First publication. Seven-field access request with a 40-second completion target, an explicit list of what is not asked for, and the four-business-hour decision target on its face; additional-credential form with an instant replace route, time-boxing by default, and hospital-side authorisation of every new credential. |