Audit Guidence
Audit Guidence
Contents
Chapter 1 (Sections 1-3) Introduction
1. Background 5
1.2 SMETA and the Ethical Trading Initiative (ETI) Base Code 6
3. Supporting Documents 10
4. Risk Assessment 12
4.2 13
5. Types of Audit 16
7. Audit Execution 40
9. Audit Follow-up 81
Introduction
1. Background
Contains an explanation of how SMETA (Sedex
1.1 Sedex and SMETA 1.2 SMETA and the Ethical Trading
Sedex is the name of the organisation – SMETA
Initiative (ETI) Base Code
is the name of an audit methodology. SMETA uses the Ethical Trading Initiative
Base Code and the local law as its monitoring
The Supplier Ethical Data Exchange (Sedex)
standards. SMETA can be tailored to use
with other codes based on conventions of the
that leads work with buyers and suppliers to
International Labour Organisation.
deliver improvements in responsible and ethical
business practices in global supply chains. Sedex Note: The ETI is an alliance of companies, trade
was founded in 2001 by a group of retailers to unions and voluntary organisations that work in
drive convergence in social audit standards and partnership to improve the lives of workers across
monitoring practices. Sedex aims to ease the the globe. More information can be found at
auditing burden on suppliers through the sharing www.ethicaltrade.org.
of audit reports and to drive improvements in
supply chain standards. SMETA Best Practice Guidance (BPG) describes
the key steps of planning, executing and
SMETA (Sedex Members Ethical Trade Audit) is documenting a SMETA Audit against the following
the audit methodology created by the Sedex four auditing pillars:
membership to give a central agreed audit
A SMETA 2-Pillar audit comprises:
Originally created by the Sedex Associate
Auditor Group (AAG), now renamed the Sedex Labour Standards
Stakeholder Forum (SSF) and involving multi-
Health and Safety
stakeholder consultation, it draws from practices
Additional Elements:
Social Compliance Programme (GSCP)
www.gscpnet.com. • Universal Rights covering UNGP
• Management Systems
SMETA consists of four core documents: • Entitlement to Work
• Subcontracting and Homeworking
SMETA Best Practice Guidance (this
• Environment (shortened)
document)
A SMETA 4-Pillar audit contains in addition:
SMETA Measurement Criteria
Environment (extended) – this replaces the
SMETA Audit Report
Environment (shortened) section detailed
SMETA Corrective Action Plan Report (CAPR) above
Business Ethics
Many types of social audits are performed such Note: Since Sedex allows sharing of audit data, any
as BSCI, WRAP, SA8000 and ICTI, and all social company uploading a SMETA audit must follow this
audits can be uploaded onto the Sedex platform. SMETA BPG exactly, especially ensuring that non-
It lies with the individual member to decide compliances uploaded on the system have been
what audit is acceptable to them; however, measured against at least the ETI Base Code and
Sedex hopes that by providing SMETA publicly, the local law. Companies may use this methodology
companies will increasingly converge on one for a variety of codes, but it must not be called a
international audit protocol. SMETA audit unless it follows the SMETA BPG and
SMETA Measurement Criteria.
SMETA 2-Pillar audit has been developed for
auditing against a Human Rights framework and SMETA BPG undergoes a regular review to ensure
the Ethical Trading Initiative (ETI) Base Code, Local
Law, plus the Additional Elements listed above. process includes feedback from stakeholders.
The latest version will be available on the Sedex
SMETA 4-Pillar audit includes the additional website.
assessments of Environment and Business Ethics.
In recognition of some members wishing to use
SMETA has been developed to provide the SMETA methodology for their own company
guidance for both 2-Pillar and 4-Pillar audits, code the SSF has developed this new version,
allowing individual supply chains to choose their in which a customer may require a SMETA audit
requirements. The guidance can be adopted and to include their own code, providing that it is in
tailored to carry out audits against a range of addition to the ETI Base Code and the local law.
other labour codes based on the conventions of
the International Labour Organisation (ILO). Note: It is imperative that the SMETA audit continues
to also be conducted against ETI base code and
local law requirements. All non-conformances
against ETI base code must be declared in a SMETA
audit report, even if the site or customer are not ETI
members. This is to enable sharing of SMETA audits
with other customers.
1.3 SMETA 2-Pillar and 4-Pillar 1.4 SMETA and Universal Rights
Audits covering UNGP – UN Guiding
Principles (Ruggie Framework)
An Introduction to an Environmental and
This SMETA review introduces the responsibility
Business Ethics Assessment.
for businesses to respect all human rights and to
A SMETA 2-Pillar audit comprises the 2 pillars measure the impact of their business operations
of Labour Standards and Health and Safety. within the areas and communities in which they
These are mandatory modules for any SMETA
audit. It also contains the additional elements of rights (human rights in the workplace) but this
Management Systems (including Land Rights), version also aims to address the responsibility
Universal Rights covering UNGP, Responsible of businesses to understand their broader
Recruitment Practices, Entitlement to Work, human rights impacts including the need to
Subcontracting and Homeworking, and a recognise community human rights e.g. in the
shortened Environment Assessment. form of grievance mechanisms and Freedom
of Association (the Remedy pillar). Also in this
A SMETA 4-Pillar audit includes all the version, business impacts are put into context of
above elements plus the additional pillars of the state’s duty to protect and create judiciary
Environment (extended assessment – replaces methods for business to have access to remedy
shortened assessment) and Business Ethics. (part of the Remedy pillar).
These additional pillars may not be required for
all Sedex members and it is important that sites Currently SMETA uses the ETI Base Code, the law
of employment and auditors are clear when these and under certain circumstances a customer’s
extra modules are required. For more information own code of conduct as measurement standards.
on 4-Pillar SMETA audits, see ‘5.4 4-Pillar SMETA
The UN Guiding Principles for Business and
Audits’.
Human Rights provide a global framework for
The basic 2-Pillars of a SMETA audit are governed preventing and addressing the risk of adverse
by the standards contained in the ETI Base Code. impacts on human rights linked to business
activity. The framework is set out in a
The additional pillars of Environment (extended
version) and Business Ethics in a 4-Pillar audit 3-pillar framework - “Protect, Respect and
are governed by standards developed through Remedy” - that details:
a process of member and multi-stakeholder
consultation.
rights.
measure these direct and indirect human rights Any auditor or audit company including non-
impacts, both within the workplace (workplace Sedex members may use SMETA. It is also
rights) and beyond. applicable to all sizes and types of employment
site including manufacturing sites, agricultural
SMETA does include guidance for an optional sites and service providers. Supply chains,
perimeter survey (page 58 – Perimeter survey), however, come in all shapes and sizes and a
which can provide additional information to standard SMETA protocol may need adjustments
SMETA BPG assists the auditor to carry out a of the auditors and their ability to meet SMETA
SMETA Audit using a standard agreed protocol. requirements, as set out in the document ‘SMETA
Guide to Social Systems Auditor Competencies’.
SMETA BPG and Measurement Criteria are a This is available on the Sedex Advance
compilation of social audit best practices to help Knowledge Hub.
auditors achieve the consistency needed for
social audits to be widely accepted by retailers See also ‘6.3 Selecting the Auditor/Audit Team’.
and brands. It also helps organisations that are
Guidance can also be found for non-members at
commissioning audits to specify the auditing
‘GSCP reference tool for Auditing Competence’.
methodology required.
AUDIT PROCESS
3. Supporting Documents
SMETA Guidance for Auditors for Extended
There are a number of additional documents that Environment and Business Ethics Assessment:
support a SMETA audit. assessment checks for Auditors.
SMETA BPG and Measurement Criteria are used SMETA Guidance for Suppliers for Extended
in conjunction with the SMETA Audit Report form Environment and Business Ethics Assessment:
and accompanying CAPR. These are the four core guide for Supplier Sites.
documents of SMETA and they are all available on
the public section of the Sedex website. SMETA Non-Compliance Guidance:
format that can be uploaded to the Sedex SMETA Corrective Action Guidance: suggested
platform. ways in which manufacturing sites may make
improvements.
SMETA Corrective Action Plan Report (CAPR):
a template for recording a summary of audit DIFFERENT TYPES OF SMETA AUDITS
In addition, Sedex has created the two supporting the use and adjustment of this methodology.
documents for preparing for a SMETA audit:
PRE-AUDIT PROCESS
supply chain types that require tailored approaches.
SMETA Pre-Audit Information Pack: contains
It is important to remember that the standards
information to be sent to a supplier site before
governing the SMETA process will remain the
a SMETA audit.
same – the Ethical Trading Initiative Base Code,
SMETA Guide to Social Systems Auditor
Competencies: competency requirements for approaches will mainly cover sampling plans and
auditors who practice social audits. reporting procedures, with the aim of creating a
process that recognises the standard BPG may
not work for all. These Supplements should be
used in conjunction with this core Best Practice
Guidance and the Measurement Criteria.
Audit Planning
4. Risk Assessment
4.1 Sedex Self-Assessment Completion of the SAQ before an audit will give
employment sites detailed information on the
Questionnaire (SAQ)
issues that auditors will be covering during a
SMETA audit. By completing and reviewing their
The Sedex SAQ, when completed by the site, own SAQ, an employment site will be able to self-
enables customers to use the Sedex Risk diagnose problem areas and correct issues prior
Assessment Tool. By examining the details to an audit.
recorded in the SAQ, both suppliers and
customers can identify areas that may need
addressing before the audit is carried out. information) enables a buying company,
supplier or agent to obtain information about an
To align with best practice guidance, sites of employment site, how it manages compliance
employment should complete the SAQ and make with social, environmental and governance
it available to customers before they decide standards and requirements, and how it measures
whether to commission an audit. The SAQ, which its performance against local, national and
international standards.
made available to the audit company to help plan
the audit. It is a useful tool that enables auditors to The site of employment is asked to complete
the SAQ within a given timescale and provide
supporting documentation. The buying company
The purpose-built Sedex SAQ, created in uses this information as part of its risk assessment.
consultation with Sedex members, is available The auditor uses the information to plan the audit
to members via the Sedex platform. The SAQ and to focus on high-risk areas.
consists of 4 key pillars – Labour Standards,
Health and Safety, Environment and Business
Ethics. All four pillars take into account legal
requirements, international standards and good
practice. Outlines the importance of the site completing
The Sedex system uses the information given
available to the auditor.
by the site of employment’s SAQ to feed into the
Sedex Risk Assessment Tool. An indication of risk
is created by combining inherent risk with the SAQ essential for the auditor to cost, plan and arrange
risk to support an assessment of the likelihood of the audit. It is therefore essential that the site of
an issue occurring in the supply chain. employment completes the SAQ in full and gives
access to the auditor ahead of the audit.
The intelligence behind the Risk Assessment Tool
is provided by global risk experts, Maplecroft. Customers (Sedex A or AB members) request the
For more information on the Tool and Maplecroft site of employment to complete the SAQ. When
please visit the Sedex website. doing so, they should communicate the following:
Note for sites: Failure to complete the Sedex SAQ The importance of accuracy in completing the
may result in a default to high risk. SAQ.
Notes:
the audit process.
If the site of employment does not give access request the site to give the auditor access to their
to the SAQ, the auditor will need to obtain the completed SAQ. The Sedex SAQ contains the site
Complete the SAQ. Self- Review and use SAQ Review and use SAQ
diagnose and correct information to assess information to create a
issues in advance of the highest area of priority quote, plan the audit and
audit. assess areas of focus for
set priorities for future the audit.
collaboration with supplier.
4.3 Pre-Audit Information Pack The ‘SMETA Pre-Audit Information Pack’ contains
suggestions only. The auditor should ensure that
Outlines the importance of the Audit Company the materials are appropriate to the size of site. At
sending necessary pre-audit information in a minimum, the auditor should communicate
advance of conducting the audit at the site. essential information relating to the audit process
including:
As the SMETA process becomes more widely
used, Sedex members see the need for a pre- - What is a social / ethical audit?
audit pack to provide suppliers/supplier sites with - The topics the covered by the audit.
essential pre-audit information, which will help - Links to the SMETA core documents
them to prepare for a SMETA audit. to allow sites to adequately prepare
including:
This pre-audit pack, developed by the SSF, o SMETA Best Practice Guidance
is a compilation of existing best practices of o SMETA Measurement Criteria
audit companies/auditors currently performing o SMETA report template
SMETA audits as well as some new additions. o SMETA CAPR
This pack has been assembled from an auditor’s o For a 4-pillar audit the additional
perspective and for an auditor’s use, anticipating guidance for Environment and
Business Ethics
has with Sedex & SMETA. - An agenda for the day.
- A list of documents to be available on the
Sedex members’ experience shows that both day.
- An overview of report distribution.
helpful in preparing supplier sites for audit. - A code of integrity and professional
Supplier sites can also improve their performance conduct of the auditor/audit company.
pre-audit pack is an essential pre-audit step as it In order for a site to adequately prepare for a
outlines the activities required of a supplier site in SMETA audit, the auditor should send the pre-
preparation for an audit. Correctly followed, this audit pack, to be received by the site to be
will facilitate the audit proceeding smoothly with audited at least 2 weeks ahead of a SMETA audit.
all relevant logistical arrangements, people and
documents in place on the day. Note:
as agreed by the Sedex membership, as well based on their relationship with the audited site.
and sequence. More detailed information is also All social audit types can be uploaded to the
provided on the extended 4-Pillar SMETA Audit. Sedex platform, including those carried out by
assessments that may be undertaken to evaluate First Party: a company that “self-audits” their
an employment site. The use of these will vary own employment site using their own audit
depending on factors such as the outcome of risk resource.
assessments, a buying company’s relationship
Second Party: an audit or assessment
with its suppliers, audit cost and the history of a
undertaken by a body with a trading
site’s performance. A buying company may deploy
relationship with the site such as a retailer,
brand, vendor or agent.
supply chain.
Third Party: an audit or assessment
SMETA only covers formal social audits.
undertaken by an independent party e.g. an
However, buying companies may engage with
independent commercial audit company,
employment sites in a variety of other ways to
NGO or trade union. Where an independent
promote improvement, which may include site
commercial audit company is used, the
visits, follow-up assessments, improvement
auditor(s) should have no connection with the
programmes, workshops, multi-stakeholder
projects etc.
of interest. Audits may also be undertaken
Sites of employment register on Sedex thus collectively by a group of these stakeholders
encouraging them to take ownership of their (multi- stakeholder).
social compliance performance. The SSF has
Note: A multi-stakeholder audit is an audit carried
created a number of documents to assist this
out by a group of stakeholders including NGO’s
process of ownership including the
and/or unions where the NGO and/or union have
Corrective Action Guidance’ available for
been involved in a shared decision-making process
members on the member resources of Sedex.
on inspection methods. SMETA recommends the
use of multi-stakeholder audits as more sustained
nature/type of SMETA audit. The requestor of change and greater impact of corrective actions
each audit will decide which type(s) meet their have been seen as a result of multi-stakeholder
needs. audits.
3. Unannounced: no prior notice is given. The buying company or audit body will specify
a window during which an audit may take
The use or combination of these audit types place. Audit windows may range between 2
will depend upon the particular circumstances weeks and 2 months. (The SSF recommends
that a 3-week window gives optimum results.)
given on their selection, however below are some
examples of when they are used. All employment sites are required to provide
up-to-date and accurate pre-audit and self-
assessment information at the beginning of
5.2.1 Announced Audits the window.
The right to perform an announced audit should Auditors presenting the correct credentials
be a normal part of the commercial relationship. during the audit window should be allowed
However there is a risk that employment sites may full access to the employment site.
make special preparations for the audit, therefore
best practice is to use a mix of announced, semi- The necessary records should be kept at the
announced and unannounced audits to mitigate
this risk. Buying companies should clearly
communicate their policy on announced audits
to suppliers and employment sites. The policy 5.2.3 Unannounced Audits
should state that: Unannounced audits allow auditors to assess the
conditions at an employment site in their normal
The buying company will agree an audit date
state since the employment site has not had the
with the employment site in advance.
opportunity to make any special preparations.
The employment site is required to provide However there is a risk that the employment site
up-to-date and accurate pre-audit and self- will perceive unannounced auditing as deceitful,
assessment information in advance of the that the auditor will not be able to gain access
audit. to the employment site and that the necessary
information and personnel may not be available
Auditors presenting the correct credentials on on the day of the visit to complete the audit.
the date of the audit should be allowed full
access to the employment site.
To minimise these risks, the buying company monitor supplier sites on an on-going basis.
should clearly communicate its policy The intervals between periodic audits may
on unannounced audits to suppliers and vary depending on the individual member.
employment sites. The policy should state that:
Follow-up Audit: Depending on the outcome
Audits may occur at any time on an of the initial audit, a follow-up audit may be
unannounced basis. required.
All employment sites are required to Follow-up audits are normally used to check
provide both pre-audit and self-assessment progress against issues found in the initial
information on a regular basis and this audit and so they may be of shorter duration
information must be accurate. than an initial or periodic audit. Follow-up
audits will also demonstrate the process of
Auditors presenting the correct credentials continuous improvement. It is essential that all
should be allowed full access to the appropriate site personnel are fully briefed on
employment site.
audit e.g. by re-sending the previous CAPR as
The necessary records for an audit should
part of the pre-audit information pack. There
always be kept at the employment site or
are three types of follow-up audits:
readily available.
completed SAQ and should give the reader the are not already conducting full Environmental
option to: and/or Business Ethics audits.
5.4.4.2 Permits and Licenses: These should be 5.4.4.5 Worker Interview: The auditor seeks
checked against legal as well as customer to verify practices in areas of legal
requirements and details should be compliance, such as contents of waste-
noted on the audit report. This should water discharge for the Environment
also include a review of any relevant assessment. Discussion with employees
prosecutions or legal actions against responsible for checking these contents
the site for environmental issues and can be evidence of procedures correctly
business ethics as well as noting any implemented. Business Ethics interviews
should be with departments where
Business Ethics policies are most
appropriate e.g. sales, purchasing, service
5.4.4.3 Natural Resources Usage: Where possible control and logistics departments.
usage and disposal of natural resources
5.4.4.6 As a minimum the auditor should interview
such as volumes of water used/recycled/ at least one worker from each of the areas
discharged. For details see 10B4 in ‘SMETA of Environment and Business Ethics.
Measurement Criteria’ and the SMETA
Audit Report. Note: Where policies do not exist, an auditor should
use the assessment process as an opportunity
5.4.4.4 Management Interview: The auditor to raise awareness, especially on Business Ethics
checks documentary evidence and issues. To assist this, process the SSF has produced
actual practices by interviewing relevant a suggested framework for content – See 10C of
personnel. As a minimum, this should ‘SMETA Measurement Criteria’.
the site as the person(s) responsible Additional information for members can be
for Environmental and Business Ethics found in the knowledge hub section, ‘SMETA
performance. Guidance for Auditors for Extended Environment
and Business Ethics Assessment’ and
‘SMETA Guidance for Suppliers for Extended
Environment and Business Ethics Assessment’.
Audit Execution
6. Overview Of The Audit Process
The following stages are covered by SMETA BPG: 6.1 Audit Request
1. Audit Request For the audit process to commence an audit
must be requested. Any company/organisation/
2. Preparation site requesting an audit is termed an “audit
requestor”. An audit may be commissioned and
3. Audit Execution paid for by a buying company, by a supplier, by
the site of employment or by any other party with
4. Audit Outputs
a legitimate interest in the site’s performance
5. Audit Follow-up in relation to responsible business issues. It is
essential that all the stages of a SMETA audit are
clearly understood and that costs of each stage
Note: Sites of employment should be involved as are made transparent by the audit company,
much as possible in the audit process. The focus ahead of the audit. See ‘6.1.2 Quote Generation
of the audit should be on how the site manages and Audit Information’ and section 8 ‘Audit
all items covered by the code (see ‘SMETA Report and Outputs’.
Measurement Criteria’ for more details).
Audit companies manage and supply professional
For example, this can be done by: auditing services to a wide variety of customers.
•
the preparation required of a site for in clients’ audit requests/requirements. When
audit. audits are commissioned, the audit company can
• Sharing other resources found on the
Sedex Advance Knowledge Hub (the customer requirements into one SMETA audit
member resources section of Sedex), e.g. if a customer requires the audit company
which includes details of common
auditors. For this reason, it is important for sites to
actions etc. declare ALL their customers to the audit company
when requesting a quote in order to minimise the
need for multiple audits.
Declare all customers to Ensure audit details and Ensure all additional
audit company customer requirements requirements are clearly
are clearly communicated communicated to audit
Understand report and all additional costs are companies and suppliers
receivership and anti- transparent
corruption policy Encourage suppliers to
Ensure an initial audit quote share any existing audits in
Communicate any existing is generated only where no place
/ historical audits audit has taken place
6.2 Preparation for an Audit member of the audit team should have good,
personal knowledge of the local prevailing
(for Auditors)
issues for workers in the area. Meetings with local
unions and NGO’s in the region can give useful
It is essential that all parties are fully briefed on information on prevailing labour conditions and
the scope of the SMETA audit and the information the main issues for local workers.
which must be available at the audit. The auditor/
audit company is responsible for ensuring all Caution: a site’s details should not be discussed
requirements are clear to the site. between auditors and any local groups (unless
expressly directed by the audit requestor), as this is
Note: See also ‘6.6 Preparation for an Audit (site
of employment)’ which gives details of the actions
required of the site prior to the audit visit. Where possible, the auditor should familiarise
themselves with any previous audit reports and
Once the audit has been agreed certain CAPR’s. In addition, the auditor should be aware
preparations are required of the auditor. These of the current issues in the purchaser member’s
include but should not be limited to: markets.
living wage or living costs in the region. More 6.3 Selecting the Auditor/
information on the living wage is available from
Audit Team
the following organisations:
Auditors and auditing bodies should be chosen The team should meet the following criteria:
based on:
6.4 Audit Body Management System 6.4.2 Quality Control and Global
Consistency
It is essential that an auditor/audit body has a
system in place to assure the quality of their
output – the audit and documentation produced
practices, conducting a social audit is especially
to record the audit.
challenging. In addition, audit results are shared
with customers around the world. A SMETA
against a recognised quality management system
such as ISO9001:2000 and should ideally be and practices at a site level in a consistent way.
accredited to the requirements of ISO/IEC Guide Therefore, there is a need for robust systems to
62, 65 or ISO17020, ISO 17021, ISO 17065. make the complex process of a social audit as
clear and consistent as possible for all interested
parties. The following processes should be in
6.4.1 Auditor Monitoring and place to help minimize inconsistency and uphold
Evaluation a certain quality level for a SMETA audit:
Attend a Social Audit full refresher course Ensuring personnel are suitably trained for
every two years. their job role and responsibilities (See above).
Annual observed audit (2 observed audits Implementation and maintenance of the audit
where possible) à Shadow audits. body’s management system.
6.5 Communication with the Site Key people to be available on the day of the
audit.
It is important that the site takes an active part
Request the presence of union and/or worker
in the audit process. It is the responsibility of the
representatives at all stages of the audit
auditor/audit company to make sure that the site
including the opening meeting.
has all relevant pre-audit information at least 2
weeks before the audit takes place. Arrangements for employee interviews.
When an audit request is made, the auditor should Arrangements to take photos.
Purpose and scope of the audit. Note: Where there is a majority language at the
site of 50% plus of workers, the worker interviewer
Introduction to auditors and their role must be a native speaker of this language. Minority
(emphasising that they are independent and languages can then be covered using translators.
external).
The audit process including notice of 6.5.3 Audit Length, Sample Size and
Timetable
Below is an “auditor day” table setting out the
number of auditor days, individual and group
Contact details for the auditor/audit company
interviews as well as a sample size for review of
and for any whistle-blowing facility supported
by the audit requestor.
The table excludes audit preparation, travel,
Note: For an example of the type of information
Sedex “audit report uploading time” and audit
which should be given to workers see ‘SMETA Pre-
report writing, but includes production of a CAP
Audit Information Pack’.
(Corrective Action Plan) on site.
1 1
2 2
3-7 3
8-48 4
49-54 5
55-64 6
245+ Maximum 25
6.5.3.2 Table of Auditor Days and Sample Size for A partial follow-up audit (see
a Partial Follow-up Audit Process Audits’
need less time depending on the nature of the
A follow-up audit is required when corrective
6.5.3.3 Example Programme for a 1-day Ethical 6.5.3.4 Example Programme for a 2-day Ethical
Trade Audit Trade Audit - Two Auditors
One auditor over one day – example 50 workers: Two auditors over one day – example 500 workers:
Day 1: Day 2:
9:00 Opening meeting (management 09:00 Further HR documentation
team including Health and Safety,
Environmental, Union and HR payroll/time records) including
representatives). paperwork (when authorised) of
9:30 Site tour (Health and Safety rep. and those individuals interviewed.
Environmental rep. to be available). 11:00 Further review of payroll/time/
Health & Safety, including selection
13:00 Review Health and Safety
10:30 Individual employee interviews documentation and further tour/
interviews if required.
including one union representative 15:00 Auditor to prepare CAPR for closing
interview of thirty minutes. meeting.
12:00 Reviewing of HR documentation 16:00 Closing meeting with management:
Code requires that all employees are fully Employee handbook (terms and conditions of
aware of the code. employment)
Facility polices: Note: Although a 1st and 2nd party audit may lack
objectivity, members report that a thorough pre-
audit assessment results in fewer corrective actions
required and reduces the need for a follow-up audit.
contractors
The overall aim of the audit is to provide an areas of good performance as well as areas which
accurate and clear account of the level of require improvement.
performance of the employment site compared
with the relevant standards.
compliances, observations and good examples
The ‘SMETA Measurement Criteria’ – a (good practices) for each individual code item.
companion publication to this Best Practice
Guidance – gives the auditor clear instructions
Managers who are responsible for key required to be available (this should have
functions e.g. HR and production. already been received by the site with the
pre-audit information at least 2 weeks ahead
Trade union or worker representatives (if
of the audit). The site may wish to share
present at the site). Both groups should be
other documents at the audit and it may be
involved if both are at the site.
necessary to agree a more detailed list at the
Note: Where union and/or worker representatives opening meeting.
are present at the site auditors should strongly
request that they are present at the opening meeting.
cross-check the areas to be visited.
If this does not occur the auditor should obtain a
reason from the site and record this on the audit Discuss the need for openness and
report. transparency. For example, indicate where
relevant that Sedex members prefer to work
CHECKLIST – OPENING MEETING
with sites on challenging areas such as
A suggested agenda for the opening meeting is excessive overtime hours, rather than record
outlined below:
because of inconsistent records.
management the opportunity to provide Agree the managers responsible for each area
additional evidence to show how they are of the labour code (e.g. HR manager, Health
complying. It is best practice to communicate and Safety Manager) and where to conduct
issues as they arise to build agreement around interviews with these relevant persons.
Agree who will support the audit and 7.2 Tour of the Employment Site
accompany the site tour.
A detailed list of what must be covered as part of
the site tour.
production periods and explain the need to
sample working hours from this period. The purpose of the employment site tour is for
the audit team to observe physical conditions and
current practices in all areas of the employment
precautions required for the employment site
site, and to form a view of how they compare with
the applicable standards and codes. At the same
time, the auditor should be checking how the site
including dormitories. performs against its own policies and procedures.
Review list of chemicals available on site. Where a site is meeting the required customer
standard of the law and the code, but is not
Ask the management if they have any meeting its own internal standards, this can be
questions. recorded as an “opportunity for improvement”
and can be recorded on the audit report as an
If the employment site’s management do observation.
not agree to the participation of worker
representatives in the opening meeting or audit The tour is also an opportunity to hold
process, auditors should note this in the audit unstructured conversations with management
report and auditors must always arrange a and workers, seek site- based evidence to
separate meeting with worker representatives
where they exist.
evidence from management, document reviews
Note: Auditors should communicate issues to and worker interviews.
management as they arise during the audit. This
As a general principle, the auditor should be
corrective actions and allow management to: able to visit all the areas of the employment site
and should set the pace of the tour. In some
Provide additional evidence where necessary. cases, employment sites may prohibit visitors
from walking through some areas or forbid
Address issues immediately (these issues will
photography for reasons of safety or commercial
be recorded, but where corrective actions are
taken immediately, the issues will be recorded as
on access or photography in the audit report and
observations only and the positive steps taken by
if restrictions seem unreasonable should escalate
the site will also be recorded).
according to the audit requestor’s policy.
Raise questions and address concerns.
The ability of management to continue
production at the site during a visit is crucial to
enable the auditor to gain an accurate idea of
working conditions and to secure management
co-operation for the remainder of the visit.
ensure production is not disrupted during the tour, with the auditor taking care to select a
employment site tour, whilst ensuring that they representative sample including workers who may
are able to view the production area during busy be considered more vulnerable such as those in
production periods. It should be possible to more hazardous jobs.
move around the site without delaying or halting
production. The site tour is important to establish an
overview of health and safety issues. However,
During the site tour, the auditor should meet a it is advisable that the time spent on the site
range of managers/supervisors/workers across tour is managed carefully so that it does not
all site operations. The auditor should not be disproportionately impact on the time available to
purely guided by management on areas to visit investigate other areas of the code.
and should freely investigate all areas that they
feel are needed to perform the audit. For detailed information on numbers of workers
to be selected for interview see ‘6.5.3.1 Table for
The auditor should raise issues as they arise, Auditor days and sample size’.
giving managers the opportunity to seek
Note: Auditors should ensure that workers cannot be
further evidence.
interviewed.
The auditor should walk around all areas of the Hazardous substances storage, handling and
employment site in order to: disposal.
Take the opportunity to have some informal Employment and Labour Practices
conversations with workers during the tour.
Young-looking workers.
During the site tour, the auditor should include the
Workers who could be at risk e.g. pregnant
following areas of focus:
workers or those working with potentially
Working Environment and Health and Safety hazardous equipment or chemicals.
Displayed information relating to trade union It is essential that site practices are observed to
or workers’ committee meetings.
written procedures. Information from manager
Any legally required postings.
and worker interviews forms a key part of this
observation.
PERIMETER SURVEY
Local perceptions of the employment site e.g. Ask - “How do you check ages when recruiting
work hours, labour issues, support for the local new workers?”
community, waste discharge etc.
This question allows for better responses and
Other facilities located on the employment therefore better information gathered than “Do
site e.g. dormitories, canteen, clinic, water you ensure that all workers are over the minimum
treatment vs. external water discharge. age at recruitment?”
The physical construction and layout of the Ask - “Can you show me the evidence to support
employment site e.g. building structure, how you check this?”
access, worker transport etc.
This should allow the site to take an active role in
Other production units or facilities on the re-examining their own procedures.
employment site which are not part of the
scope of the audit.
managers, and the process of examining and
sharing their practices with the auditor, will allow
the site to review its own practices during the
audit.
The audit team should work with administration 7.3.2 Worker Interviews
review. If management is in possession of any INTERVIEW PRINCIPLES
worker survey feedback, this should form part
of the management interviews and can used in It is essential that workers are interviewed to hear
subsequent worker interviews if permitted by directly what they think of working conditions
management. at the employment site. The number of workers
to be interviewed relates to the total number of
The audit team should be prepared to challenge workers at the site. See ‘6.5.3.1 Audit Length,
management to obtain genuine information Sample Size and Timetable’ for information on
about management practices but should remain sample sizes.
courteous and cooperative.
Individual or group interviews may raise new issues,
50% or more of the total workforce, the worker Wherever possible, the identities of interviewees
interviewer must be a native speaker of that
language.
Audit team members carrying out worker of feedback to be maintained. Where it is felt that
interviews must have the skills to make workers
feel at ease. It is best practice to use informal, taken regarding the issues that are documented in
open interviewing techniques to encourage
interviewees to identify the issues of most
importance to them. It is important to uncover Identities of workers e.g. names or ID numbers
any hidden issues such as discrimination and should never be included in the audit report.
intimidation, which are not easily found through
In countries where Data Protection Laws apply,
other stages of the audit process.
the auditor should ensure that appropriate
Worker interviews should be conducted in a place
where the workers feel comfortable and where
Details of the number of workers that should be
a relaxed and informal setting can be created.
interviewed and the methods for selecting them
are covered in ‘6.5.3.1 Audit Length, Sample Size
with no representatives of management present
and Timetable’.
and where the interview cannot be watched or
overheard. Informal interviews may also take
place during the physical tour of the employment during the site tour as selection from documentation
site, at lunch-time or during breaks. assumes that all workers on site are documented. If
interviews are carried out prior to document review,
any issues raised can then be checked against
appropriate, especially if the auditor feels that
employees’ records to gain supporting evidence.
workers may be coached or intimidated in the
employment site. Possible locations may include
workers’ homes or local shops or facilities used by
workers.
The worker interview samples take account issues such as disciplinary action.
of the proportion of local and migrant workers
The selection of workers should take place as
late as possible i.e. just before the interview,
types e.g. permanent, temporary and agency
in order to minimise the risk of workers being
coached.
work where possible.
The interviewer should aim to talk to a
Interviewees should be selected by the audit
wide range of workers including potentially
team and never by management. In making
vulnerable workers and those in less skilled
the selection, the auditor considers:
positions.
representatives.
representative(s).
training quality).
Pregnant women.
3-7 3
Where two auditors are conducting interviews
8-48 4 together, it may help communication if
one auditor takes notes while the other
49-54 5
concentrates on establishing a rapport with
55-64 6
the interviewee(s).
The following points are guidance only and 7.3.5.5 Group interviews are most valuable when
workers actively participate. In regions
However, the total number of interviewees where literacy levels are low, it may
given in ‘6.5.3.1 Audit Length, Sample Size and
Timetable’ should be adhered to as a minimum. communication, for example by using
paper and drawing tools to describe what
for safety reasons and to capture and interpret spent on the SMETA audit at the main site.
information accurately.
interviews, there is a risk that they may perceive any training and support given by the trade union,
the practice to be inciting workers or causing as well as the union representatives’ knowledge
discontent. This can damage supply chain of collective bargaining agreements and union
relationships if not handled carefully. An auditor procedures for worker participation.
should always check whether this is a required
part of the audit programme.
worker representation present, especially where
there is a legal requirement for formal worker
information indicates that production processes management dialogue. For example, in some
are undertaken by homeworkers, the auditor areas where there may not be a legal requirement
should check with the audit requestor whether to have a union, there may instead be a law that
these are to be included in the audit’s scope. requires a functioning workers’ committee. It is
Where homeworking is discovered during an important that the auditor establishes and records
audit, the auditor should, at the least, report the responsibilities and actual function of any
the presence of homeworking and, again, committee present – Have they been elected by
check with the audit requestor whether a visit co-workers or selected by management? Does
to homeworkers is within the audit’s scope. In the committee only arrange leisure activities or
cases where a visit is not possible, for example does it also negotiate on behalf of workers?
due to location constraints, a separate audit of
External interviews with unions and NGOs in the
homeworkers and their working conditions may
region can give useful information regarding
be required.
prevailing labour conditions and the main issues
Similarly, if a site is found to be sub-contracting, for local workers.
the auditor should try to establish whether this
Caution: A site’s details should not be discussed
falls within the scope of the audit. The auditor
between auditors and any local groups (unless
may be required only to establish what systems
expressly directed by the audit requestor) as
the audited site has in place to control sub-
contractors, or they may be required to pay a visit
its customers. (See also ‘6.2.1 Background and
to sub-contractors. In any event, sub-contracting
context review’).
should always be reported on a SMETA Audit
Report. The auditor should gain an understanding of how
the trade union is organised at a local level and its
If the auditor is required to pay a visit to the
relationships with workers and management.
subcontractors, this ideally should be pre-agreed
ahead of the audit. The scope of the audit can Note: It is useful to ask the general workforce if they
then be increased to give time for visits to external know who their worker/union representatives are
sites alongside ensuring that the correct time is and how they use them.
Note: The auditor may need to keep identity 7.3.8.1 Supplementary Audit Report
information for traceability reasons but this must not
be disclosed. See also ‘Supplementary Guidance Information too sensitive for the audit report.
for Dealing with Sensitive Issues Raised at Audit’
Concerns that cannot be substantiated
in the Sedex Advance knowledge hub.
through evidence and/or interviews.
In exceptional circumstances, where the best
Attitude of management towards the non-
interests of the worker cannot be met without
compliances or the audit process as a whole.
disclosure of their identity (for example, names
of child workers that the auditor fears may be
Supplementary reports may be appropriate:
sacked without any remediation), the auditor can
communicate this information to the appropriate If workers appear to be under undue pressure
from management on the day of audit.
Any issues of a sensitive nature or unsubstantiated If workers appear to have been coached.
information should not be mentioned to the site’s
management if this endangers workers. However, If management was obstructive or reluctant to
the issues or information may be reported
7.3.8.2
are required these should be made available to
Note: Where immediate communication is advisable. the appropriate reviewers within 24 hours of the
Where immediate communication is advisable The following steps are essential to protect the
identity of workers who divulge information during
Note: This type of report may not be appropriate interviews:
when the audit requestor is the employment site
itself. The auditor must check whether separate
reports are required. These separate reports to be interviewed so that points raised are not
containing sensitive information must not be attributable.
uploaded to the Sedex platform. Please see
‘Supplementary Guidance for Dealing with The auditor should also consider the use of
Sensitive Issues Raised at Audit’ available individual rather than group interviews to
for members. For this reason there is no SMETA
template for these documents but examples are
available at GSCP ‘GSCP Reference Tools on Audit
who is being interviewed so that workers can
Process and Methodology’.
be protected in future if necessary.
Reminder: The auditor should always check if
Auditors should ensure that problems raised
by workers are discussed with management
are required. These should NOT be uploaded to
in a non- attributable way. Auditors must also
the Sedex platform.
ensure that the comments that they report
cannot be traced back to an individual worker.
this is the case. Any non-legitimate absence of always be checked. The remainder of
documentation should be recorded on the audit records checked should be sampled from
report as non-compliance. the broader pool of employees.
For a full list of the documents that need to be 7.4.2.4 For each pay period selected, a minimum
reviewed, see 6.6 Preparation for Audit (Site of 10 records for a site up to 100 workers
of Employment)’. The list is also included in the should be reviewed. For larger sites the
‘SMETA Pre-Audit Information Pack’. number of workers reviewed should
follow the sample size table detailed in
this document. A larger sample may be
7.4.2 Document Sampling for Wages
and Hours found in the initial sample. A minimum
of 3 pay periods should be checked
Auditors should review at least three months’
including peak, current (or the most recent
worth of records from the 12-month set of data
available) and random/low month. For the
(or the available data for all months of production
avoidance of doubt the full sample should
when the factory has been operational less than
be reviewed for each of the pay periods
12 months) and should include records for the
selected.
most recent peak season available and for low
season or random months. In addition, documents 7.4.2.5 Wages and overtime rates paid must be
should be checked for correct holiday/leave recorded at the level of each individual
entitlement. Particular emphasis should be worker (see wages analysis table SMETA
placed on how the site manages all aspects of the Audit Report) . It must be made clear to
the reader of the audit report whether
and hours in contracts/engagement letters. the rates meet local law requirements
and whether they have been agreed with
To complete the wages and hours analysis,
representatives of the workforce.
auditors should concentrate on all types of
workers. The following points will help auditors 7.4.2.6 Hours worked must be recorded at
to complete the analysis in line with SMETA Audit the level of each individual worker (see
Report requirements. working hours analysis table SMETA
Audit Report) . It must made be clear to
7.4.2.1 It is necessary to examine full wage
the reader of the audit report whether
records for selected workers for a full
the hours meet local law requirements
12-month period to establish peak
and whether they have been agreed with
production and the extremes of both low
representatives of the workforce.
and high levels of wages and hours over
one year.
be able to complete the SMETA wages and hours
7.4.2.2 Working hours and wage records are
analysis, which requires highest, average and lowest
selected for investigation to cover peak
wage information for workers. Where discrepancies
and current production levels, and a
exist, for example between production records and
random/low month.
payroll records, the auditor should still endeavour to
7.4.2.3 The records for the workers who have complete the wages and hours table for individual
taken part in individual interviews should workers.
See ‘6.5.3.1 Audit Length, Sample Size and should examine (where possible) hours records
Timetable’ for details. from a 12-month period for a sample of workers to
ascertain whether their actual hours worked meet
the waiver.
7.4.3 Presence of Waivers
It should be clearly recorded whether the non-
compliances are contrary to law as well as the
ETI Base Code. The legality of such a waiver
should be investigated and endorsement by local
working hours, whilst still meeting the law. If the
government should be noted.
auditor is presented with a waiver, the details
should be documented in the audit report and Note: Even if a local waiver is in place that overrides
copies attached (with translation into English if the local law, it can still be a non-compliance
necessary). against the ETI Base Code.
are found. To try to overcome this lack of production records and wages and hours
trust, auditors should develop a rapport with records for example, OR if they are, in the opinion
management to explain that SMETA audits do not
other documents e.g. broken needle record,
to provide accurate records which present the production records etc. Members request that
full picture of the employment site’s operations. as much detail as possible is given about any
It should also be explained that Sedex members inconsistencies e.g. what records are showing
Suppliers may have several reasons for excessive The audit team should meet before the closing
overtime hours and they should be encouraged to
share these with the auditor. Their views should be and identify inconsistencies, non-compliances,
recorded at the end of the Working Hours Analysis observations and good examples. The analysis of
table under evidence gathered must be undertaken before
the closing meeting, even if there is a single
auditor carrying out the audit.
reasons/circumstances that explain the highest
working hours)’ in the SMETA Audit Report. The audit team should prepare for the closing
meeting by reviewing and discussing the
Suppliers may feel that customers play a key role evidence presented and then identifying and
in managing overtime levels by ensuring that they agreeing:
The Sedex system also allows all members A/ Whether it is an isolated incident or a more
AB/B to allocate grading severities to their own systemic problem.
non-compliances on the system, and the system
supplies a default grading list accepted by most
Sedex members.
Reference and details of the relevant area of
the code and/or local law.
7.5.2 Corrective Action Plan Report Recommended corrective action with a
The ‘SMETA Corrective Action Plan Report timeframe for completion, responsibility and
(CAPR)’ has been designed to provide a structure
site develop a corrective action plan at the closing The Corrective Action Plan Report (CAPR) should:
meeting.
Be clear and presented in the local language
For all non-compliances and especially those spoken by the employment site management,
related to working hours or wages, the audit team with a copy provided to the audit requestor
should identify the context of the issue and its in English. In addition, the audit report and
frequency, the number of people impacted and CAPR uploaded to the Sedex platform must
the department(s) concerned both at the closing be in English, signed by the auditor and site
meeting and in the audit report. management.
Note: Where extra copies cannot be signed on the Preventative and Corrective Actions
day, the documents should at least contain the
signatories’names as evidence of signatures. This column contains details of actions to be
taken to clear the non-compliance i.e. immediate
The CAPR should be issued to the site actions and the system changes required to
management immediately/as soon as possible prevent re-occurrence i.e. longer-term actions.
after the audit has taken place. If amends are The recommendations for corrective actions
required, a new version is issued with the audit should be made either by site management or
report to all 3 parties. by workers and, only if necessary, by the auditor.
Auditors are encouraged to share best practice
CHECKLIST FOR COMPLETING A CAPR and solutions from their own experience but
Non-compliance number
site.
This should include a separate line for each
The auditor should attempt to ensure that the
non-compliance. The ETI Base Code number for
recommended actions address root causes as far
the element of the labour code or local law that
as practical.
has not been met should be used. It should be
numbered as per the ETI Base Code i.e. number 2 Note: Auditors should direct suppliers to information
available on the member’s section of Sedex website
e.g. ‘Supplier Workbook’ and ‘SMETA Corrective
Details of non-compliance
Action Guidance’.
The non-compliance should be described clearly
Timescale
and concisely, with reference to the element of
the labour code and/or local law that has been This is the time required for the recommended
breached. The information in the CAPR can be corrective actions to be implemented and for the
more concise than in the audit report, but it is issue to be closed. Immediate correction may
important that the information is consistent with be listed in the timescale column, but the time
the audit report and makes clear which non- allocated for corrective actions to be completed
compliance the action refers to. should be appropriate and realistic. Longer term
actions and recommendations of how to address
Root cause
root causes may require extended timescales and
The main objective of the CAPR is to promote cannot be decided at the closing meeting. In this
improvement at the employment site. The case, they need not be included.
auditor should encourage the site to identify the
In the exceptional cases where it is not possible
root causes of issues as far as is practical to do
to agree timescales e.g. the site wants time to
so. This is best achieved by repeatedly asking
consider, then the auditor should at least record
“why” to develop a deeper understanding of
on the CAPR that timescales were discussed e.g.
underlying causes and their relationship to the
a root cause will often prevent a re-occurrence of Recommended timescales are given in the
that non-compliance (see the ‘SMETA Corrective ‘SMETA Non-Compliance Guidance’.
Action Plan Report (CAPR)’ document for more
information on how to identify root causes).
This column should be completed by the auditor 7.6 Closing Meeting and Summary
in agreement with the site’s management. The
of Findings
auditor should ensure that management clearly
route selected and the next steps required. a full discussion at the closing meeting. The
corrective actions suggested by the site must
On-site follow-up audits are recommended for be fully discussed and recorded once agreed.
non-compliances for which corrective actions can Close attention should be paid to whether the
only be evaluated through a site tour, interviews or suggestions are practical and whether the site is
a physical review of documentation. certain they can be completed within the agreed
time frame.
A desk-based follow-up may be used to verify
corrective actions if agreed by the audit requestor. The aim of the closing meeting is to inform
Desk-based follow-up can be used to verify
corrective actions through photographs, copies employment site’s management, and to verify
7.6.3 Conclusion of the Audit Answer any questions that management have.
Finally, ask the management team if they have Explain when the full audit report will be
any questions. Explain the agreed distribution of completed and who it will be sent to.
the full audit report and who will be in contact
with the employment site regarding any follow- Summary of Findings and Corrective Actions
up. Inform the employment site of the Sedex must be signed by both the lead auditor and
uploading and corrective action management site representative.
process and explain their responsibilities.
Leave an understandable copy of the
See ‘8.3 Sedex and Uploading the Audit’ for more corrective action plan with management.
detail.
The corrective actions should include a
timeframe for completion and the type of
CHECKLIST – CLOSING MEETING:
Thank the management for their time and If the Summary of Findings and Corrective
contribution. Actions are not agreed, the auditor should ask
the site to sign the CAPR in the dispute box
along with reasons for the dispute. The auditor
assessment. should then leave a copy with the factory and
report disputed points to the audit requestor,
copying in the factory.
at the meeting, but any issues they have
agreed to cannot be queried later. Inform the facility of the Sedex uploading and
corrective action management process that
Recognise good examples that have been
forms part of the Sedex system, ensuring they
observed during the day.
are made aware of their responsibilities.
Agree any non-compliances and explain that
See section 8 ‘Audit Report and Outputs’ for more
the audit was based on a sample examination
information.
of their employment site and there may
be some non-compliances that were not
observed.
7.6.4 Dispute of Findings Note: The CAPR must always be signed by a site
page of the CAPR: Or in the box “please indicate below if you, the
to reach agreement with the employment site Where it is not possible to include a handwritten
and obtain their representative’s signature. signature on the uploaded CAPR, the document
should at least include typed names of signatories
Section 2 – Where there are any disputed
as evidence of signatures.
non-compliances, the employment site
management should be invited to complete In cases where the site refuses to sign either
the second part of the signature box and to section, and particularly if the auditor may feel
state their reason for any dispute.
should be recorded in the management attitude
section of the audit report – ensuring that there is
no risk to the auditor.
Audit Reports
and Outputs
8. Audit Report and Outputs
The SMETA Audit Report and CAPR are the most important
outputs from an audit as this information is visible to the
site’s customers. It is essential that both the audit report
and CAPR are clear and contain as much useful information
as possible. The auditor must remember that the parties
reviewing the audit were usually not present at the audit.
If the SMETA Audit Report and CAPR are to be Site-suggested corrective action with a
uploaded to the Sedex platform, they must at timeframe for completion, responsibility
the least be written in English and must use
the standard ‘SMETA Audit Report’ template. In
addition a copy of the audit report should also be
reviewer who was not present at the audit is able
available in the language of the employment site’s
to accurately understand the type and scale of the
management (two languages may be combined
on one copy if agreed by all relevant parties). Any
deviation from the SMETA must be recorded in
the SMETA Declaration at the front of the audit
report.
The purpose of the audit report is to give a full
language, stating the issues or observations of the audit. Readers of the audit report should
clearly so that they could be understood by be able to build up an accurate picture of the
someone who was not present at the audit. supplier site, both what it is like to work there as
An employment site should have detailed, robust correctly as possible making sure that all time
procedures for hiring workers of the correct age. intervals and currencies are included - per hour/
per week/per month and the units stated.
How workers are hired. The wages table contains a number of questions
that need to be answered for three individual
What is checked? workers based on their wages levels. The records
should be selected from the pool of records How many rest days the workers have in any
reviewed within the scope of the audit. For all 7- or 14-day period.
three wage levels presented in the table, the
same month should be reviewed (e.g. October). If there are deviations from the standard, any
peak, current or random/low sampled months the For both of the above tables, the information
wages table is based on, but it is recommended should be retrieved by checking the provided
that the auditor chooses an example month which records. If the information is not clear, an
is representative for the site. The aim of the wages additional number of records can be checked to
table is to give the reader an understanding of clarify the situation. If the wages level or working
(amongst other things):
in records, the auditor should report on the
Whether or not the workers receive minimum
wage or above/below minimum wage. comment on inconsistencies in other applicable
parts of the audit report (Current Systems and
The spread of wage levels. Evidence Examined, Non-Compliances, Key
information, Management Systems). Members
If the workers are paid extra for overtime and,
if so, how much.
verify’ in the wages or hours table.
province or region where they are not a Current Systems and Evidence Examined by
native and where they are not eligible
to become or do not intend to become
permanent residents. above).
In some countries/areas, they can be For greater clarity in producing a good practice
SMETA audit report, the SSF has produced the
permits to work in that location. ‘Guide to Completing a SMETA Report’ and
‘Guide to Completing a SMETA Corrective Action
Wages and hours analysis must always state Plan Report’, both publicly available on the Sedex
the units (for wages) and the payment interval website.
– per hour, per day, per week, per month.
For hours analysed, the auditor must record
whether they are daily, weekly, monthly for
both standard hours excluding overtime
as well as for the recorded time period for
overtime hours.
The audit report must not include any Sedex members suggest providing maximum
information that could be used to identify detail of the non-compliance action in the audit
report, which should include a description of
descriptions and/or work location. the non-compliance, the local law and/or ETI
requirement, the recommended corrective action
Unless agreed otherwise, the audit body will not and the objective evidence observed.
distribute the audit report outside Sedex to any
entities except the audit requestor. A non-compliance should report on:
Site tour and MSDS of paints. Note: Freedom of Association is a complex area
duties. The committees have agendas for their Minutes of the workers’ committee meeting
meetings. are produced but they are not circulated.
8.2.3 Collecting Good Examples The site supports a local school. They donate
Crèche available for the workers’ children The factory arranges for factory tours for the
(where not required by law). pupils of a local school for children with sight,
hearing and speech disabilities. The pupils
Storage for bikes and shower facilities. learn about life at the factory and, wherever
possible, the factory recruits from the school
Good examples can be collected through on-
– placing individuals into jobs that suit their
site observation and interviews and can be
capabilities (approx. 5% of the workforce had
summarised under each section of the Audit
come from the school).
Results by Clause of the SMETA Audit Report
Information should include but not be limited to: Sedex also allows the sharing of good practice
Sedex members include leading global brands Filling out the Self-Assessment Questionnaire
and thousands of suppliers already registered – this is highly recommend before an audit.
The auditee must be a registered audit. This will give the auditor access to the
active member of Sedex. If the supplier Self-Assessment Questionnaire
requires guidance, please see: http://
www.sedexglobal.com/wp-content/
uploads/2011/06/Supplier-Guidance- 8.3.3 Uploading the Audit (Supplier
Register-for-Sedex-1.pdf
Site or Auditor)
Once the registration process on Sedex Once the audit has been conducted and
Advance has been successful, we suggest completed, it is recommended that the SMETA
they consult the Knowledge Hub for further report and CAPR are shared on the system
steps to minimise audit requests from any further
customers. Any social audit from any auditor
How can the Knowledge Hub be accessed? can be uploaded to the Sedex platform.
Knowledge Hub?
Please note that where the site has requested Sedex strongly recommends that external
the audit on the Sedex system, the system will audits are uploaded by the auditing company
auto-publish within 7 days of audit upload. Audit as this provides greater assurance of
independence.
authorised third parties in a protected and un-
editable format. A documented release statement
should be obtained by the auditor prior to such
release.
reviews SAQ.
Upload
audit report
After audit, the auditor
logs into Sedex Advance Site receives an email
to complete the upload
the Sedex Advance
platform. The site reviews
the audit uploaded and
review &
publishes the audit.
publish audit
Tip: Your audit will only
be visible to the clients
selected and to which
you are fully linked.
the audit requestor is the site, or if the Sedex workers interviewed and records reviewed.
SAQ is already visible to the audit requestor
(through the Sedex system), there is no Data and privacy laws in some countries prohibit
additional need to provide the Pre-Audit copies being made of certain documents; in such
cases, auditors should respect these restrictions.
(CAPR).
Audit Follow-Up
Finding issues during an audit is only one part of any audit
programme. At least equally important are the actions taken
by the site to correct the issues found. Follow-up audits are
an important part of the SMETA process, giving both the site
For all sections in which non-compliances have 9.1.3.1 A full follow-up audit should include a
previously been raised, there should be a clear full review of all areas of the standard
explanation of the evidence reviewed, comments audit process, including the complete
re-sampling of documents, conducting
issue is now considered: interviews and the employment site tour.
The auditor should focus on identifying
changes that address issues raised in the
to bring about an adequate resolution of the initial audit report by using the previous
non-compliance. CAPR, but should also investigate potential
additional issues.
and the non-compliance remains active. 9.1.3.2 The audit should be carried out either
once the deadline for addressing all of the
Progress made – some evidence has been
issues has passed or where urgent actions
received indicating progress, but this is
are necessary to safeguard the safety of
workers.
until further evidence has been made available.
9.1.3.3 Partial follow-up audits generally take
Note: If new non-compliances are found, these
place within six months of the date of
should also be indicated and be highlighted as in an
the initial audit. This can vary – it may be
initial audit. A new CAPR should be issued.
necessary to check with clients.
testimony.
9.1.4 Follow-up by Training SMETA methodology states that when the CAPR
has been agreed, typically it is not possible to
Where supply chains decide that appropriate
raise objections afterwards. However, there
follow-up will contain some training of supplier
may be cases in which further objections
sites, care must be taken to ensure that there is no
are accepted, such as when information has
The team that conducts an audit should not be of employment has questions that remain
the same team that provides training. This would unanswered, or if the concerns reference the
lead to concerns about the objectivity of the audit recorded information.
team and subsequently the accuracy of the audit
essential that the auditor/audit company has a
system in place to deal with such questions or
potential disputes.
9.2 Appeals and Disputes
The auditor or audit company should clearly
Audit companies must have a system of appeal communicate to the site that:
for sites that, after consideration, believe that
some information has been misunderstood. They and/or their organisation are available
Appeals and disputes should primarily be made after the audit to further clarify or explain
to the audit company (although it may be to the decisions to the employment site and/or audit
auditor directly or another external organisation). requestor as needed.
The site must be provided with a contact with
whom they can communicate following the audit
process.. employment site or audit requestor wish to
The SMETA Audit Report and CAPR remain the complaint by the employment site against the
property of the audit requestor and will only be auditor.
shared with other parties by pre-agreement with
the audit requestor.
or email helpdesk@sedexglobal.com