Full product guide — everything Safe School does, in the open

Help & Documentation

Complete guide to using Safe School Maintenance. Find detailed information about every feature and how to make the most of the system.

About Safe School Maintenance

Safe School Maintenance is a comprehensive facilities management system designed specifically for educational institutions. It streamlines maintenance operations, asset tracking, health & safety compliance, and vendor management all in one integrated platform.

Key Features:

  • ✓ Work order management with status tracking and escalation
  • ✓ Preventative maintenance scheduling
  • ✓ Fleet and vehicle inspection management
  • ✓ Asset register with maintenance history
  • ✓ Health & Safety documentation and compliance
  • ✓ COSHH library for hazardous substances
  • ✓ Fire alarm logging and testing records
  • ✓ Vendor and contractor management with safeguarding
  • ✓ Building and space management
  • ✓ Comprehensive reporting and analytics

Who uses this system?

  • Facilities Managers: Oversee all maintenance operations and compliance
  • Maintenance Staff: Receive and complete work orders
  • Administrators: Manage users, settings, and system configuration
  • School Staff: Submit maintenance requests via customer portal
What's New — Recent Upgrades

The system has undergone significant upgrades across security, compliance automation, and user experience. Below is a methodical breakdown of every major improvement.

Security Hardening

  • Rate-limit bypass fixed: Public form rate limits now trust only the edge-set cf-connecting-ip header. The spoofable X-Real-IP and X-Forwarded-For headers are no longer used, so attackers can't rotate IPs to bypass per-IP caps.
  • File URL injection blocked: All file URLs submitted through public forms (work orders, driver registrations, vehicle bookings) are validated server-side to reject non-HTTPS schemes, preventing javascript: URI XSS attacks.
  • CSV formula injection prevented: All CSV exports (reports, spaces, buildings) now route through a shared helper that prefixes any cell starting with =, +, -, @, or tab with a tab character, neutralising spreadsheet formula execution.
  • Email content spoofing fixed: Booking confirmation and resend emails now HTML-escape every interpolated field, and the vehicle booking function strips HTML tags from free-text inputs before storing.
  • Frame-embedding protection: The app blocks being embedded in iframes on third-party sites, preventing clickjacking attacks.
  • Strict Origin verification: All public-facing backend functions verify the Origin header to prevent cross-site invocation.
  • Server-side HTML escaping: All automated email templates escape dynamic content server-side to prevent stored XSS in notifications.
  • Auto-approval restriction: Public vehicle booking auto-approval is now restricted to verified driver licenses only — unregistered drivers enter the manual approval queue.

Building Condition Survey Importer

A new third tab on the Work Orders page for importing professional building condition surveys:

  • Multi-step import modal: Upload XLSX survey files with a guided step-by-step process that maps spreadsheet blocks to Building records
  • Condition ratings A–E: Each building element (external walls, roof, windows, etc.) is graded A (good) through E (urgent)
  • Automatic routing: D and E rated items auto-create Work Orders; A, B, and C rated items auto-create Planned Maintenance tasks
  • Bulk editing: Select multiple survey items and route them together to work orders or planned maintenance
  • Template download: Download a pre-formatted template to ensure your survey data matches the expected structure
  • Filtering & search: Filter by survey batch, building, condition rating, and routing status

H&S Compliance Tracker Import

  • Batch XLSX processing: Import entire Health & Safety compliance trackers from Excel files in one operation
  • Mismatch detection: The importer detects and reports when an uploaded file doesn't match the expected H&S tracker format, with clear error messaging
  • Auto-computation: Due dates are automatically calculated from the last undertaken date plus the frequency interval
  • Linked risk assessments: Imported compliance items can be linked to existing Risk Assessment records

Vendor Safeguarding Upgrades

  • Private cloud storage: Safeguarding statement attachments are now stored in private cloud storage, preserving original file formats (PDF, DOCX, images) instead of lossy base64 strings
  • Cascading deletion: Deleting a vendor automatically removes all associated safeguarding timeline records to prevent orphaned data
  • Status enforcement: Safeguarding compliance status is integrated into the vendor details view with visible controls
  • Timeline notifications: Automated email notifications at 90, 60, and 30 days before statement expiry, configurable in Settings

Risk Assessments & Forms UX

  • Inline card editing: Risk assessments now use inline card-based editing and review, removing reliance on side panels
  • Auto-scroll: The dynamic form element auto-scrolls into view when triggering edit or new actions on list items
  • Optimistic updates: List views update in-place after edits to prevent UI jump on save
  • Mobile select drawers: All selection inputs on mobile use a consistent bottom-drawer UX
  • URL-based form state: Form visibility states use URL search parameters for hardware back-button compatibility

Fleet & Vehicle Booking Upgrades

  • Round-trip mileage: Automatically calculated and displayed when the destination postcode is entered
  • Cost estimation: Approximate trip cost computed from configurable cost-per-mile in Settings
  • Overdue document blocking: Vehicles with overdue MOT or road tax are blocked from booking selection and from booking approval
  • Odometer capture: Start and end odometer readings captured on completion for actual mileage tracking
  • Driver license auto-approval: Registered drivers matching name + email are auto-approved on booking submission; unregistered drivers go to the manual queue

Integrations & Connectivity

  • Gmail connector: Branded notification emails sent through the school's own Gmail account for work orders, safeguarding, and booking confirmations
  • Google Calendar sync: Two-way calendar synchronisation — fetch events from and sync maintenance tasks to Google Calendar
  • AI agents: Maintenance Coordinator and Safety Compliance Assistant agents available for WhatsApp/Telegram integration

General UX & Accessibility

  • Settings tabs wrapped: Settings tabs wrap into multiple rows for better visibility on smaller screens
  • Login prompts: Unauthenticated users see a clear login prompt instead of an admin-only error message
  • File upload transparency: Upload dropzones disclose file name, size, and type for transparency
  • Square checkmarks: All checkbox components use square (non-rounded) checkmarks for consistency
  • PWA enhancements: Pull-to-refresh, page transitions, install prompts, and connected device management
Work Orders

The Work Orders module is the heart of the maintenance system. It allows you to create, track, and manage maintenance requests from start to completion.

Creating Work Orders

Click "New Work Order" to create a maintenance request. Required fields:

  • Title: Brief description of the issue
  • Category: Type of work (electrical, plumbing, HVAC, etc.)
  • Location: Select building and optionally a specific space
  • Priority: Low, Medium, High, or Critical

Work Order Statuses

Open
Newly created, awaiting assignment
In Progress
Actively being worked on by assigned user
Completed
Work finished, can be archived
Cancelled
Request cancelled or no longer needed

Key Features

  • Assignment: Assign work to specific users or departments
  • Escalation: Escalate issues to external vendors with automatic emails
  • Change History: Complete audit trail of all modifications
  • Document Upload: Attach photos, PDFs, safeguarding statements
  • Request Info: Email requesters for additional details
  • Archiving: Archive completed work to keep active lists clean
  • Public Form: Share QR code for staff to submit requests

AI Assistant via WhatsApp

Connect the Maintenance Coordinator AI agent to WhatsApp to create, update, and query work orders via chat!

Dashboard

The Dashboard provides a real-time overview of your facilities operations with key metrics, recent activities, and important alerts.

What You'll See

  • Key Statistics: Open work orders, critical issues, monthly costs, completion rates
  • Recent Work Orders: Latest maintenance requests and their status
  • Maintenance Calendar: Upcoming scheduled maintenance tasks
  • Asset Health: Assets requiring attention or maintenance
  • Contract Alerts: Contracts expiring soon that need renewal
  • Safeguarding Alerts: Vendor safeguarding statements expiring within 90 days

Quick Actions

Use quick action buttons to jump directly to creating new work orders, assets, or planned maintenance tasks. Share the app via QR code for easy mobile access.

Planned Maintenance

Schedule and track preventative maintenance tasks to avoid equipment failures and extend asset lifespan.

Creating Maintenance Tasks

  • Select the asset that needs maintenance
  • Assign to a specific user or team
  • Set start and end dates
  • Set priority level (Low, Medium, High)
  • Optionally configure recurring tasks (daily, weekly, monthly, yearly)

Visual Timeline (Gantt Chart)

View all scheduled maintenance on an interactive timeline. Color-coded by status:

Scheduled
Completed
Skipped

Auto-scheduling from Assets

When you set an inspection interval on an asset (daily, weekly, monthly), maintenance tasks can be automatically generated!

Condition Surveys

Import professional building condition surveys and automatically route maintenance requirements to work orders or planned maintenance tasks. Accessible as the third tab on the Work Orders page.

Importing a Survey

  1. Open Work Orders → Condition Surveys tab
  2. Click Import Survey to open the multi-step modal
  3. Name your survey batch and select the survey date
  4. Upload your XLSX file — each sheet/block is mapped to a Building record
  5. Review the mapping and confirm the import
  6. Survey items are created with condition ratings A through E

Condition Ratings & Automatic Routing

A
Good condition — routed to Planned Maintenance
B
Fair condition — routed to Planned Maintenance
C
Poor condition — routed to Planned Maintenance
D
Bad condition — auto-creates a Work Order
E
Urgent — auto-creates a Work Order

Routing can also be done manually per item or in bulk after import.

Managing Survey Items

  • Summary cards: Total items, items per condition rating, routed vs pending counts
  • Filters: Filter by survey batch, building, condition rating, and action status
  • Bulk routing: Select multiple items and route them all to work orders or planned maintenance
  • Linked records: Each item shows its linked work order or maintenance task ID once routed

Template

Download a pre-formatted template from the Condition Surveys tab to ensure your spreadsheet matches the expected structure before importing.

Fleet Inspection

Manage your vehicle fleet, conduct monthly inspections, and track driver licenses all in one place.

Vehicle Management

  • Track registration, make, model, mileage
  • Monitor MOT, tax, and insurance expiry dates
  • Assign authorized drivers to each vehicle
  • Upload vehicle documents and photos
  • Set next service and inspection dates

Monthly Inspections

Comprehensive checklist covering:

  • Exterior: Bodywork, lights, windows, mirrors, wipers, tyres
  • Interior: Seatbelts, seats, dashboard warnings, horn, steering
  • Under Bonnet: Oil, coolant, brake fluid, battery, leaks
  • Safety Equipment: First aid kit, fire extinguisher, warning triangle
  • Documents: MOT, insurance, tax, service book

Each item can be marked Pass, Fail, or Advisory with optional photos and notes.

Driver Licenses

Maintain records of all approved drivers including license numbers, expiry dates, categories, and uploaded license photos. Track penalty points and ensure compliance.

Public Registration Form

Share a QR code for drivers to register themselves and upload their license details for approval!

Contracts

Track vendor contracts, service agreements, and ensure timely renewals with automatic alerts.

Contract Information

  • Link contracts to specific vendors
  • Record contract values and terms
  • Set start, expiry, and review dates
  • Schedule service visits under the contract
  • Upload contract documents securely

Visual Timeline

View all contracts on a Gantt chart timeline showing active periods, expiry dates, and review milestones. Quickly identify contracts requiring attention.

Renewal Alerts

Dashboard displays contracts expiring within the next 90 days. Never miss a renewal deadline!

Assets

Maintain a complete register of all equipment, track maintenance history, warranty information, and depreciation.

Asset Details

  • Identification: Name, tag, serial number, manufacturer, model
  • Financial: Purchase cost, current value, depreciation rate
  • Location: Building, department, specific location
  • Warranty: Start and expiry dates
  • Maintenance: Last maintenance, next scheduled, interval
  • Condition: Excellent, Good, Fair, Poor, Out of Service

Inspection Intervals

Set automatic inspection schedules (daily, weekly, monthly) for assets that require regular checks. This integrates with the Planned Maintenance module.

Import/Export

Bulk import assets from CSV files or export your asset register for reporting. Download a template to see the required format.

Asset Categories

HVAC, Electrical, Plumbing, Safety, Furniture, Equipment, IT, Appliance, Vehicle, and more. Filter and sort by any attribute.

Reports & Analytics

Generate comprehensive reports and export data for analysis, compliance, and management review.

Available Reports

  • Work Orders: Filter by date range, status, category, building
  • Assets: Complete asset register with all details
  • Maintenance History: Scheduled vs completed tasks
  • Vendor Performance: Escalations, ratings, services provided
  • Contracts: Active contracts, values, expiry dates
  • Spaces: Space utilization and management
  • Activity Log: System usage and user activity
  • Health & Safety: Compliance status across all categories
  • Risk Assessments: Current risk levels and control measures
  • COSHH: Hazardous substances inventory

Export Options

All reports can be exported to CSV format for use in Excel or other analysis tools. Filtered data exports only the records matching your current filters.

Date Range Filtering

Use the date range picker to focus reports on specific time periods for monthly, quarterly, or annual reviews.

Health & Safety

Manage all health and safety documentation required for compliance with UK regulations and standards.

Documentation Categories

  • Health and Safety Policy
  • Management Systems
  • Safety Plan & Emergency Plan
  • First Aid & Accident Reporting
  • Control of Contractors
  • Risk Assessment
  • Plant, Work Equipment & PPE
  • DSE & Ergonomics
  • COSHH
  • Work at Height
  • Welfare Facilities
  • Safe Systems of Work
  • Vulnerable Persons

Compliance Status Tracking

Mark each requirement as Compliant, Non-Compliant, Review Due, Pending, or Not Applicable. Upload supporting documents and set review dates.

Quick Overview

Dashboard shows compliance percentage and items requiring immediate attention. All documents stored securely with access logging.

Risk Assessments

Create, manage, and track risk assessments for various activities and areas within your facilities.

Assessment Types

  • Fire Risk
  • COSHH
  • Grounds Maintenance
  • Legionella
  • Manual Handling
  • Working at Height
  • Vibration Tools
  • Workplace Inspection
  • General and Custom Types

Key Information

  • Risk Level: Low, Medium, High, or Critical
  • Status: Current, Review Due, Overdue, or Draft
  • Assessor: Name of person who conducted assessment
  • Review Dates: When completed and when next review is due
  • Control Measures: Detailed safety controls in place
  • Location: Specific area or activity covered

Review Reminders

System highlights assessments due for review. Upload updated assessment documents and reset review dates to maintain current records.

COSHH Library

Control of Substances Hazardous to Health (COSHH) - Maintain a complete inventory of all hazardous substances with safety data sheets.

Substance Information

  • Identification: Name, product code, manufacturer
  • Hazard Types: Toxic, corrosive, flammable, irritant, etc.
  • Purpose: What the substance is used for
  • Storage: Location and quantity on site
  • Safety Data: SDS date and expiry
  • Review Schedule: Last and next review dates
  • Safety Measures: Required PPE and emergency procedures
  • Disposal: Proper disposal methods

Document Management

Upload and store Safety Data Sheets (SDS), risk assessments, and handling instructions. Documents are securely stored and easily accessible when needed.

Compliance Tracking

Track substance status (Active, Discontinued, Review Due) and ensure all SDS documents are current. System flags substances requiring review.

Fire Alarm Log

Maintain comprehensive records of all fire alarm tests, activations, faults, and maintenance activities as required by regulations.

Log Entry Types

Test
Regular testing of alarm systems and devices
Activation
Actual alarm activations and responses
Fault
System faults requiring attention
Maintenance
Maintenance and repairs performed

Required Information

  • Date and time of event
  • Building and specific location/space
  • Panel zone and point number
  • Device type (smoke detector, heat detector, manual call point, etc.)
  • Test results (Pass/Fail/Partial)
  • Actions taken in response
  • Who tested or logged the event
  • Emergency response details (fire brigade called, evacuation completed)
  • Photos and supporting documents

Export for Compliance

Export complete fire alarm log to CSV for regulatory inspections and fire officer visits. Filter by date range and event type.

Vendors

Manage your contractors and service providers with complete contact details, service categories, and safeguarding compliance.

Vendor Details

  • Company name and unique ID
  • Primary contact person, email, and phone
  • Services provided (electrical, plumbing, HVAC, etc.)
  • Hourly rates and pricing
  • Rating (1-5 stars) and preferred vendor status
  • Engineer details with DBS numbers and dates

Safeguarding Statements

Track safeguarding statements for all vendors working in school environments. System includes:

  • Statement issue and expiry dates
  • Secure document storage
  • Visual timeline showing coverage periods
  • Automatic email notifications at 90, 60, and 30 days before expiry
  • Dashboard alerts for expiring statements

Document Management

Upload insurance certificates, contracts, risk assessments, method statements, permits, and other vendor documentation. All files stored securely.

Work Order Integration

Escalate work orders directly to vendors with automatic emails containing all job details, location, and priority information.

Spaces & Buildings

Organize your facility structure by managing buildings and the spaces within them for accurate work order location tracking.

Buildings

  • Building name and code
  • Address and location
  • Number of floors
  • Year built and total square footage

Spaces

  • Space name and room number
  • Associated building and floor
  • Type (classroom, office, lab, gym, cafeteria, etc.)
  • Capacity and square footage
  • Department assignment
  • Current status (occupied, vacant, maintenance, renovation)

Bulk Import

Import multiple buildings and spaces from CSV files. Download templates to see the required format. Update existing records by including the ID.

Work Order Integration

When creating work orders, select building and space for precise location tracking. Locations can be filtered in reports and work order lists.

Users & Permissions

View system users and manage their department assignments, roles, and notification preferences.

User Roles

Admin
Full system access and configuration
Manager
Additional permissions configurable in Settings
User
Standard access to assigned work

Department Assignments

Users can be assigned to multiple departments (electrical, plumbing, HVAC, cleaning, etc.). This enables:

  • Automatic work order routing based on category
  • Filtering users by department when assigning tasks
  • Department-specific workload reports

User Profiles

Admins can edit user job titles, phone numbers, and notification preferences. Users receive emails when work orders are assigned to them.

Inviting New Users

Users are invited via the Base44 platform. After invitation, share the QR code from Settings so they can easily access the app on mobile devices.

Settings & Configuration

Admin Only: Configure system-wide settings using the tabbed Settings interface. Each section manages different aspects of your system.

🔐 Security Tab

  • Overview: View security status, active users, and authentication status
  • Session Timeout: Set auto-logout time (5-480 minutes)
  • Password Policies: Require password change on first login
  • Audit Logs: Review recent system activity and access all audit logs
  • Data Protection: Encryption, access control, and audit trail information
  • Backup & Restore: Create manual backups, download, or restore from file

🔔 Notifications Tab

  • Default Notification Email: Email for work order alerts and system notifications
  • Safeguarding Email: Separate email for vendor statement expiry notifications (optional)
  • Notifications automatically trigger on safeguarding statement expiry (90, 60, 30 days)
  • Work order assignment and status change notifications sent to assigned users

👥 User Rights Tab

  • Manager Permissions: Configure what Manager-role users can access and modify
  • Toggle permissions per module: Work Orders, Assets, Vendors, Contracts, etc.
  • Granular control over create, edit, delete, and view operations
  • Prevents accidental data modifications by non-admins

📦 Archiving Tab

  • Auto-Archive Settings: Automatically archive completed work orders after specified days
  • Set to 0 to disable auto-archiving
  • Keeps active work order lists clean while preserving historical data
  • Archived orders can be unarchived if needed

💾 Backup Tab

  • Create Backup: Click "Create Full Backup" to backup all data
  • Download: Download backup file for secure offsite storage
  • Restore: Upload backup file to restore system from a previous state
  • Backups include all entities, work orders, assets, documents, and user data

📱 Connected Devices Tab

  • Device Registry: View all devices that have accessed the app
  • Device Details: See OS, browser, device type, and last access time
  • Send Refresh: Queue app refresh signal for specific devices or all devices
  • Stats: Monitor active devices, PWA installs, and mobile users
  • Remove: Delete device records as needed

🌐 Customer Portal Tab

  • Share Links: Copy portal URL, generate QR codes, or open in browser
  • Branding: Upload logo, choose hero background color from presets or custom
  • Team Info: Set contact email, phone, and team name
  • Information Banner: Create scrolling announcement with colors, size, schedule
  • Save Settings: Changes persist across all public portal views

🔗 Safeguarding & Email Templates Tabs

  • Safeguarding: Customize email template for vendor statement notifications
  • Work Order: Customize email template for work order notifications
  • Use available placeholders: {vendor_name}, {expiry_date}, {days_until_expiry}, {work_order_id} etc.
  • Upload document attachments to include with emails
  • Reset to default templates anytime

🚨 Emergency Types Tab

  • Manage Types: View all configured emergency types
  • Add Custom: Enter new emergency type name and click Add
  • Remove: Delete emergency types no longer needed
  • Custom types appear in Emergency log entry dropdown

⚙️ General Tab

  • School/Organization Name: Used in emails and portal branding
  • Address: Physical location for facility management
  • Phone: Contact number displayed on customer portal
  • Departments: Add custom departments (electrical, plumbing, cleaning, etc.)
  • Categories: Add custom work order categories and assign to departments

How to Access Settings

Admin users: Click Settings in the main navigation menu. Use horizontal tabs to switch between different configuration sections. Click "Save All Settings" at the bottom to persist changes.

Public Requests & Bookings

Share public forms via QR code or link to allow staff, students, drivers, or external users to submit requests and bookings without logging in. All public submissions are validated and routed to the appropriate staff for action.

Work Order Request Form

A public form for anyone to submit maintenance requests. Features include:

  • Simple interface with branded logo display
  • Location selection from buildings/spaces or custom entry
  • Photo upload capability (up to 5 images)
  • Email notification registration with custom preferences
  • Automatic confirmation emails to requesters
  • Automatic routing to department users
  • Customizable categories and branding in Settings

How to share: Open Work Orders → Share → copy link or download QR code. Submit your own request from the Work Orders page to test the flow.

Public Vehicle Booking

A public portal for booking fleet vehicles by trip. The booking workflow:

  1. Vehicle selection: Browse available vehicles and dates. Vehicles already booked, or with overdue MOT or road tax, are blocked from selection.
  2. Driver verification: Enter your name and email. The system looks up drivers in the central license registry — registered drivers are auto-approved, unregistered ones enter the standard approval queue.
  3. Trip details: Enter destination and a valid UK postcode (required for mileage calculation), plus the trip purpose, department, and date/time range.
  4. Review & submit: Estimated round-trip mileage and approximate cost are calculated automatically; submit to create a pending booking.
  • Booking statuses: Pending → Approved / Rejected → Completed (or Cancelled)
  • Admins approve/reject bookings from the Fleet Inspection calendar; overdue MOT/tax blocks approval
  • Start and end odometer readings are captured on completion for actual mileage
  • Cost-per-mile and currency are configurable in Settings (General tab)

How to share: Open Fleet Inspection → share the booking link or QR code with staff who need to reserve a vehicle.

Driver License Registration

A public form for drivers to register themselves and submit their driving license for approval by fleet managers. Submitted records enter the Driver License list with a

Pending Verification
status until an admin or manager approves them.

  • Required details: Full name, date of birth, license number, expiry date
  • Optional details: License categories, issue date, issuing authority, email, phone, address
  • License images: Upload front/back photos of the license for verification
  • Documents: Attach insurance, medical certificates, or other supporting files
  • Auto-approval: Registered drivers matching name + email are auto-approved on booking submission

How to share: Open Fleet Inspection → Driver License Registration → share link or QR code with prospective drivers.

Customer Portal

Enhanced customer portal for registered users includes:

  • Branded logo and custom team name
  • Customizable hero section with color presets
  • Information banner for announcements (scheduled or ongoing)
  • Step-by-step request submission guide
  • Contact information and how-to section
  • Mobile-optimized responsive design

Sharing Public Forms

Generate and download QR codes from the Work Orders page, Settings (Customer Portal tab), or Fleet Inspection page. Display them in offices, hallways, or send via email for easy mobile access — no login required to submit.

Emergency Lighting

Manage emergency lighting tests per building, tracking individual light points, test records, and compliance with British Standards (BS 5266).

Test Types

  • Monthly Function Test: Short function check of each emergency light point
  • Annual Full Duration Test: Full 3-hour duration test as required by regulations
  • 3-Hour Duration Test: Extended duration test for compliance verification
  • Visual Inspection: Quick visual check of fittings and signage

Per-Building Records

  • Select a building to view and manage its emergency lighting tests
  • Record individual light point results (Pass, Fail, Not Tested)
  • Track fitting type (maintained, non-maintained, combined, self-contained, central battery)
  • Log fault descriptions and required actions per light point
  • Mark actions as completed and track overall test result (Pass, Fail, Partial Pass)

Responsible Persons

Each building's emergency lighting record includes a named responsible person and email, ensuring clear accountability for testing and compliance.

Planned Maintenance Integration

Emergency lighting tests can be added to the Planned Maintenance schedule, and test records support attachment uploads for certificates and supporting documents.

Residential Surveys

Conduct detailed condition surveys of residential properties, scoring every room and external area element by element.

Survey Structure

Each residential survey covers the following areas:

  • External: Walls, windows, decorations, kitchen external, rainwater goods, chimneys, expansion joints, floor construction, garden/outbuildings, external doors, heating
  • Internal rooms: Cloakroom, kitchen, hall/stairs/landing, bedrooms 1–4, living room, bathroom, other room
  • Per-room elements: Internal walls, ceilings, doors, fixtures & fittings, internal decorations, lighting

Scoring System

A
Good — no action needed
B
Fair — monitor / planned maintenance
C
Poor — action recommended
D
Bad — work order required
E
Urgent — immediate action

Each element can also be marked N/A (not applicable) with optional comments per element.

Survey Details

  • Attendees: Record who attended the survey
  • H&S Rep & Facilities Manager: Names of key personnel present
  • Prior notes: Notes from the resident before the visit
  • Overall priority: A–E summary score for the entire property
  • Status tracking: Draft → Completed → Actioned

Photos & Documentation

Upload photos taken during the survey to document conditions. Additional information and notes can be recorded for the entire survey.

AI Assistants

The system includes AI-powered agents that can be connected to messaging platforms (WhatsApp, Telegram) for conversational interaction with your maintenance data.

Maintenance Coordinator

An AI agent that can create, update, and query work orders via chat.

  • Create new work orders from chat messages
  • Check the status of existing work orders
  • Update work order status and assignments
  • Query work orders by priority, category, or assignee
  • Connect via WhatsApp or Telegram for mobile field reporting

Safety Compliance Assistant

An AI agent focused on health & safety compliance queries and guidance.

  • Query compliance status across H&S categories
  • Get guidance on regulatory requirements
  • Check upcoming review dates and overdue items
  • Assist with risk assessment and COSHH queries

Connecting an Agent

Agents are configured in the platform dashboard. Once connected to WhatsApp or Telegram, staff can interact with the agents from their phones to report issues, check status, and get compliance guidance without opening the full app.

Google Calendar & Gmail

Synchronise maintenance tasks and work order deadlines with Google Calendar so staff can see upcoming work alongside their other commitments.

Two-Way Synchronisation

  • Fetch events: Pull events from connected Google Calendars to see what's scheduled
  • Sync tasks: Push maintenance tasks and work order due dates to Google Calendar
  • Automatic updates: Changes to task dates in the system sync to the calendar

Gmail Notification Integration

  • Branded notification emails sent through the school's own Gmail account
  • Work order assignment, status change, and completion notifications
  • Safeguarding statement expiry warnings (90, 60, 30 days)
  • Vehicle booking approval and rejection confirmations
  • Customisable email templates in Settings

Setting Up Integrations

Google Calendar and Gmail integrations are connected through the platform's integration settings. Once authorised, notifications and calendar sync run automatically.

Call Out Log

Track out-of-hours emergency call outs and after-hours facility responses for security, emergencies, and urgent issues.

Call Out Types

  • Emergency: General emergencies requiring immediate response
  • Fire Alarm: Fire alarm activations (auto-creates fire log entry)
  • Security: Security breaches or incidents
  • Facility Failure: Critical system failures (heating, water, power)
  • Weather Related: Storm damage, flooding, snow response

Recording Call Outs

  • Date, time, and location of incident
  • Who attended and response times (arrival/departure)
  • Issue description and actions taken
  • Whether emergency services were called (fire, police, ambulance)
  • Resolution status and follow-up requirements
  • Photos and supporting documents

Automatic Work Order Creation

When logging a call out, optionally create a linked work order for follow-up repairs or actions needed during normal hours.

Legionella Management

Manage Legionella control and water system safety assessments in compliance with HSE ACoP L8 regulations.

Assessment Management

  • Building-specific Legionella risk assessments
  • Designated responsible persons and assessors
  • Overall risk level tracking (Low, Medium, High, Very High)
  • Assessment and review date scheduling (typically 2-year cycle)
  • Upload schematic diagrams and supporting documents

Water Systems Tracking

Record details for each water system type:

  • Hot water, cold water, cooling towers
  • Showers, spas, fountains
  • Location-specific risk levels
  • Control measures for each system

Temperature Monitoring

Log monthly temperature checks with hot water (≥50°C) and cold water (≤20°C) targets. Track compliance, record actions taken, and maintain detailed monitoring history.

HSE Guidance Included

Built-in HSE guidance tab provides direct links to official ACoP L8 documents, temperature control guidance, and risk assessment templates.

Mobile & Responsive Design

The entire system is optimized for mobile devices, tablets, and desktop computers with fully responsive layouts and touch-friendly controls.

Mobile Navigation

  • Collapsible sidebar menu with hamburger button
  • Bottom navigation bar for quick access to key sections
  • Touch-optimized buttons and controls (44px minimum tap targets)
  • Responsive card layouts that stack on smaller screens
  • Optimized text sizes for readability on all devices
  • Smooth scrolling for horizontal tab navigation

Progressive Web App (PWA)

  • Install to Home Screen: Add app icon to phone/tablet home screen
  • App-Like Experience: Full-screen mode without browser chrome
  • Offline Capable: Basic functionality works without internet connection
  • Auto-Updates: Latest features and security updates downloaded automatically
  • How to Install: Open app in Chrome/Edge → Menu → "Install app" → Add to home screen

QR Code Access

Share QR codes to quickly access the app on mobile:

  • From Settings: Go to Settings → Customer Portal tab → Download or share QR
  • For Work Orders: Work Orders page has Share button with QR code option
  • For Fleet Users: Fleet Inspection → Driver Registration QR code
  • Display on printed materials, email, or displays for instant mobile access

Responsive Design Features

  • Phone: Single-column layouts, stacked cards, hamburger menus
  • Tablet: Two-column layouts, optimized spacing
  • Desktop: Full multi-column layouts with expanded sidebars
  • Tables: Horizontally scroll on mobile without losing functionality
  • Forms: Single-column on phones, multi-column on larger screens
  • Images: Responsive sizing that adapts to screen width

Mobile Best Practices

  • Use landscape mode for data-heavy tables and forms on tablets
  • Access Settings and Admin features on desktop for complex configurations
  • Use bottom nav on mobile for quick navigation to Dashboard, Work Orders, Assets, Vendors
  • Pinch-to-zoom disabled for better fixed layout experience
  • Safe area support on notched devices (iPhone X+, Android notches)
Emergencies

Log and track emergency fire alarm activations, major incidents, and emergency responses with automatic integration to incident records.

Emergency Types

  • Fire Alarm: Actual fire alarm activation (not test)
  • Security Breach: Unauthorized access or security incident
  • Medical Emergency: On-site medical incident requiring response
  • Gas Leak: Suspected or detected gas hazard
  • Flood: Water ingress or flooding incident
  • Power Failure: Complete power outage affecting building
  • Severe Weather: Storm, extreme conditions affecting facility
  • Custom Types: Admins can add additional emergency types in Settings

How to Log an Emergency

  1. Open Emergencies page from main navigation
  2. Click "New Emergency" button
  3. Required Info: Type, date/time, building, description, who attended
  4. Optional Info: Actions taken, emergency services called, evacuation status
  5. Add casualty count, property damage, severity level
  6. Upload photos/documents for evidence
  7. Set follow-up requirements and notes
  8. Click Save to record emergency

Critical Fields

  • Date/Time: When the emergency occurred
  • Building & Space: Exact location of incident
  • Description: What happened and initial observations
  • Attended By: Who responded and managed the situation
  • Severity: Minor, Moderate, Major, or Critical
  • Emergency Services: Whether fire, police, ambulance were called
  • Resolved: Whether situation is contained and safe

Integration Features

  • Work Order Creation: Auto-create linked work order for follow-up repairs
  • Fire Alarm Logging: Fire alarm activations can be linked to fire alarm logs
  • Call Out Integration: Emergency responses connect to call out logs
  • Document Attachments: Upload incident photos, witness statements, medical reports
  • Change History: Complete audit trail of all modifications

Emergency Checklist

  • ✓ Immediately ensure people are safe and move to assembly point if needed
  • ✓ Call emergency services if required (999)
  • ✓ Document the incident with photos/videos when safe to do so
  • ✓ Log the emergency in system as soon as practical with accurate details
  • ✓ Identify required follow-up work (repairs, investigations, training)
  • ✓ Create work orders for necessary remediation
  • ✓ Review incident in management meeting
  • ✓ Update safeguarding/risk assessment records if needed
Maintenance Calendar

Visual calendar view of all scheduled maintenance tasks and work orders. See at a glance what maintenance is due and when.

Calendar Features

  • Monthly View: See the entire month of scheduled maintenance at a glance
  • Color Coding: Different colors for tasks, work orders, and asset maintenance
  • Event Details: Click any date to see list of items scheduled for that day
  • Asset View: Filter to show only specific asset maintenance
  • Work Order Overlay: Toggle display of work orders on calendar
  • Quick Actions: Create new tasks or work orders directly from the calendar

Using the Calendar

  1. Select month/year from date picker at top
  2. Colored dots indicate days with scheduled maintenance
  3. Click a day to expand and see detailed list
  4. Hover over events for quick info preview
  5. Use filters to show specific types or assets
  6. Navigate to task/work order by clicking the event name

Planning Ahead

Use the Maintenance Calendar to plan staffing, order parts, and schedule contractor availability well in advance.

Security & Data Protection

The system implements multiple layers of security to protect sensitive school and student data, prevent abuse of public forms, and maintain compliance with data protection regulations.

Authentication & Access Control

  • Role-based access: Admin, Manager, and User roles with configurable permissions per module
  • Row-Level Security (RLS): Users can only see and modify records they own or are assigned to
  • Session management: Configurable session timeout (5–480 minutes) with auto-logout
  • Login prompts: Unauthenticated visitors see a clear login prompt rather than an error
  • Frame-embedding protection: The app cannot be embedded in iframes on third-party sites (clickjacking prevention)

Public Form Protection

  • Rate limiting: Per-IP and per-email limits on all public submissions (work orders, bookings, licence registrations) keyed to the non-spoofable edge IP only
  • Origin verification: All public-facing backend functions verify the Origin header to prevent cross-site invocation
  • File URL validation: Server-side scheme validation rejects non-HTTPS file URLs to prevent javascript: URI XSS attacks
  • Input sanitisation: HTML tags stripped from free-text fields in public submissions before storage
  • Honeypot fields: Hidden form fields detect and reject bot submissions

Data Protection

  • Private file storage: Uploaded documents (safeguarding statements, licence images, certificates) are stored in private cloud storage — no public URLs
  • Signed URLs: Private file access uses time-limited signed URLs that expire
  • CSV injection prevention: All CSV exports neutralise formula-triggering characters (=, +, -, @, tab) to prevent spreadsheet formula execution
  • Email content escaping: All automated email templates escape dynamic content server-side to prevent stored XSS
  • Audit trail: All user actions, data changes, and system events are logged with timestamps and user identity

Security Monitoring

  • Audit logs: Complete activity trail available to admins — filter by date, user, action type, and entity
  • Connected device registry: Track all devices that have accessed the app, with remote refresh capability
  • Backup & restore: Full system backups (manual and automatic) for disaster recovery
  • Security scan: Regular security scanning with actionable findings

GDPR Compliance

Audit logs, data encryption, access controls, and backup retention support GDPR compliance. Personal data (driver licences, DBS numbers, addresses) is protected by RLS and private storage. Retain audit logs for at least 12 months.

Audit Logs

Admin Only: Complete security and activity audit trail. Track all user actions, data changes, and system events for compliance and security.

What Gets Logged

  • Create: New entities created (work orders, assets, users, etc.)
  • Update: Changes to existing records (field changes, status updates)
  • Delete: Records deleted from system
  • View: Access to sensitive data or records
  • Export: Data exported or downloaded from system
  • Escalate: Work orders escalated to vendors
  • Login/Logout: User authentication events
  • Access Denied: Failed access attempts or permission violations

Log Information

Each audit log entry includes:

  • Timestamp: Exact date and time of action
  • User: Email and name of person who performed action
  • Action Type: What was done (create, update, delete, etc.)
  • Entity: Type of record affected (WorkOrder, Asset, User, etc.)
  • Details: Specific information about what changed
  • Before/After: Previous and new values for updates
  • Severity: Low, Medium, High, or Critical severity level

Filtering & Searching

  • Filter by date range for specific time periods
  • Search by user to see all actions by a specific person
  • Filter by action type (create, update, delete, etc.)
  • Filter by entity type to track specific record types
  • View high-severity events for security investigation
  • Export filtered logs to CSV for compliance reports

Compliance & Security

Audit logs are essential for GDPR compliance, security investigations, and proving proper system administration. Retain logs for at least 12 months.

Backups

Admin Only: Create, download, and restore complete system backups for data protection and disaster recovery.

Backup Features

  • Full Backups: Complete snapshot of all data (entities, documents, settings)
  • Automatic Backups: System creates regular automatic backups
  • Manual Backups: Create backups on demand anytime
  • Timestamp: Each backup is dated for easy version tracking
  • Download: Backup files can be downloaded for offsite storage
  • Restore: Restore system from any previous backup file

Creating a Backup

  1. Go to Settings → Backups tab (Admin only)
  2. Click "Create Full Backup" button
  3. System will create a complete data backup (may take several minutes)
  4. Once complete, backup will appear in the Backup History list
  5. Click Download to save backup file locally
  6. Store backup file in secure, offsite location

Restoring from Backup

  1. Go to Settings → Backups tab
  2. Click "Upload & Restore" button
  3. Select previously downloaded backup file from your computer
  4. WARNING: Restore will replace ALL current data with backup data
  5. Confirm you want to proceed with restoration
  6. System will restore data and redirect you after completion
  7. Verify data is correct after restoration

Backup History

  • View list of all available backups with creation timestamps
  • See backup type (manual vs automatic)
  • Download any backup file for archival or transfer
  • Delete old backups to manage storage
  • Latest backup is recommended for restoration

Best Practices

  • Create manual backups before major changes or migrations
  • Download and store backups in multiple secure locations
  • Test restore process periodically to ensure backups work
  • Retain backups for at least 12 months for compliance
  • Document backup schedule and retention policy
  • Use cloud storage or offsite server for backup files

Need More Help?

If you can't find what you're looking for or need additional assistance, please contact your system administrator.

Safe School Maintenance System © 2026