DocumentCAPABILITIES
Versionv2.1
ClassificationPUBLIC
RefACF-2026-002
// platform.capabilities

Consent infrastructure built for the field.

UN agencies, NGOs and international organisations operate where connectivity fails, languages differ and accountability is non-negotiable. Agency Consent is built for exactly those conditions — GDPR-ready consent capture that holds up in the field and in an audit.

Capture F-01
F-01

Offline-first field capture

A progressive web app your team installs once and uses anywhere. Captures queue locally on the device and sync automatically the moment a connection returns — so a lost signal never means a lost consent.

Specification
  • Zero-connectivity capture. Full consent flow works with no signal; nothing is lost between capture and sync.
  • Automatic background sync. Queued records upload without user action once online.
  • Install once. No app store, no per-device provisioning — a PWA on any modern device.
  • GPS + timestamp recorded at point of capture, not point of sync.
Capture F-02
F-02

Single-use consent links

Not every subject is in front of a field worker. Send a secure, one-time link and the subject gives consent on their own device — no app, no account — fully bound to your published form version.

Specification
  • One-time, expiring links. Each link is single-use and cannot be reused or forwarded to capture a different subject.
  • No account required. The subject needs nothing but the link and a browser.
  • Version-bound. The subject sees, and consents to, the exact form version you published.
  • Remote-friendly. Ideal for follow-up consent, remote contributors or subjects reached after the fact.
Integrity F-03
F-03

Tamper-evident records

Each consent record stores the exact form version the subject saw, their signature, and full capture metadata — with a complete activity log. Consent isn't just collected; it's provable, years later, in a compliance review.

Every record retains
  • Published form version — the precise wording and fields shown at capture.
  • Signature + capture method — how consent was given and by whom.
  • GPS, device ID, UTC timestamp, staff ID — the full provenance chain.
  • Immutable activity log — every action on the record, retained for audit.
Consent capture model 3 tiers · always a valid record

Three ways to capture consent. No situation left uncovered.

Field conditions are never uniform. A subject may be able to sign, may only give verbal consent before a witness, or may be reachable only on video. Agency Consent supports all three — and every tier produces a structured, searchable, audit-ready record.

Tier 01 · Preferred

Digital signature

The subject signs directly on the device or via a single-use link. The cleanest, strongest form of consent — a signature bound to the exact form version they saw.

Signature captured
Tier 02 · Witnessed

Witnessed verbal

Where a subject can't sign, verbal consent is recorded and attested by a witness — with the witness's identity and the field worker's staff ID retained on the record.

Witness attested
Tier 03 · In extremis

Video consent

Where neither signature nor witness is possible, consent is captured on video — a last-resort tier for the most difficult field conditions, still producing a structured record.

Video retained
Compliance & safeguarding GDPR-ready
🛡

GDPR-ready by default

Your agency's data is fully isolated and only ever visible to your team. Consent is bound to a published form version, with full capture metadata and an exportable audit trail — built for data-protection review, not retrofitted for it.

👤

Minor safeguarding

Subjects under 18 are detected automatically at capture. Guardian co-signature is required, and any non-compliant record is flagged immediately to the agency admin for review.

🔍

Audit-ready record store

Every record is searchable and exportable, with an immutable activity log. Prove consent instantly — at the point of capture, or years later when it's questioned.

// next_step

See it working with your own forms.

Get in touch →