Keystone
by CloudVoro
Guides · Free, no email gate

The working library for
audit-ready food production.

Long-form, practical guides written from the production floor, mock recalls, BRCGS traceability, mass balance, FSAI inspections, batch coding, HACCP records. No fluff, no gate, cross-referenced to the standards they cover.

Compliance

BRCGS Traceability Requirements Explained

What clause 3.9 actually asks for, how it connects to 3.11 (recall) and 5.4 (authenticity), and the evidence auditors look for on the day.

10 min readRead guide

One-Up, One-Down Traceability: What EU Law Actually Requires

Article 18 of EU food safety regulations explained with a worked cheese example, what the law demands, what retailers demand on top, and where internal traceability fits.

9 min readRead guide

How to Prepare for an FSAI Inspection

What Irish food inspections actually look at, the documents, the questions, the walk-through, and a two-week preparation plan.

10 min readRead guide

The HACCP Records Auditors Actually Check

CCP monitoring, deviations, verification, validation, which HACCP records get pulled in audits, and the gaps that generate findings.

9 min readRead guide

BRCGS vs SALSA: Which Certification Does Your Buyer Require?

The two UK/Irish supplier certifications compared, cost, audit depth, who requires which, and how to step from SALSA up to BRCGS without redoing your records.

9 min readRead guide
Free 5-part email course
Get audit-ready in five short emails.
The 18-point checklist PDF, the 30-second traceability test, what BRCGS auditors actually flag, and how Cashel Blue got audit-ready, one email every few days. No spam, one-click unsubscribe.
GDPR-friendly: we store your email for this course only. Unsubscribe link in every email.

Prefer to see it working instead of reading about it?

Everything in these guides, the 30-second trace, the mass balance, the customer-code mapping, is live in the Keystone sandbox.

Book a discovery call
Compliance & trust

How we keep your
data and your audits safe.

Enterprise-grade controls as standard, encryption, MFA for every user, tenant isolation and immutable audit trails, on EU cloud or your own servers. Privacy queries go to privacy@cloudvoro.com. Sub-processor list at /legal/sub-processors. Full security posture at /site/security.

Live
Hosted in EU / Ireland, or on-premise
Customer data resides on AWS Ireland (eu-west-1) and never leaves the EU. Local on-premise deployment available where policy requires it.
Live
GDPR · Privacy Contact named
Internal Data Protection Lead handles subject access requests. Owner is ADPO Ireland member.
Live
MFA for every user
TOTP multi-factor authentication across all roles, with rate limiting, brute-force lockout and reCAPTCHA bot protection on public forms.
Live
ISO 27001 · aligned controls
Security controls mapped to the ISO/IEC 27001:2022 Annex A framework, access management, encryption, logging, incident response.
Live
NIS2 · supporting evidence
Tenant isolation, MFA and immutable audit trails give customers in NIS2 scope direct supporting evidence for their obligations.
Live
Encryption · at rest & in transit
TLS 1.3 in transit, industry-standard symmetric ciphers at rest, KMS-managed keys.