# Annotated fictional certificate

Every certificate field, entity, issuer and date is fictional. No certification, accreditation, signature or authoritative lookup result exists for this specimen.

Read the full specimen before completing the scope worksheet. The teaching case deliberately excludes the buyer’s proposed desktop service.

| Specimen field | Fictional value | Annotation |
| --- | --- | --- |
| Named entity | Example Text Services Ltd | Match the legal supplier, not only its brand. |
| Certificate reference | TRAINING-ONLY-27001-23 | Use the real issuer’s authoritative verification route in a real review. |
| Scope | Hosted Example Business Workspace | The certificate scope must match the service actually purchased. |
| Exclusions | Consumer App and standalone Desktop Client | The proposed desktop use is not established as covered. |
| Validity | 1 March 2026 to 28 February 2029, invented | Printed dates are not proof of current status. |
| Issuer/accreditation | Invented issuer; no accreditation claim | Do not infer trust from a logo or a fictional registry lookup. |

## Review steps

- Compare proposed use with scope: Identify the entity, feature, delivery model and exclusions before relying on the certificate.
- Verify issuer and accreditation: Use the relevant accreditation body and certification body, checking the applicable scheme scope.
- Record a real verification result: Retain the checked source, date and actual status; do not describe a missing lookup as automatically invalid.

# FICTIONAL CERTIFICATE SPECIMEN: NOT VALID

No certificate has been issued. Every organisation, reference and date below is invented for this exercise. No signature, accreditation logo or official mark is represented.

## Specimen face

- Claimed standard: ISO/IEC 27001:2022, shown only as a fictional certificate field.
- Certificate reference: TRAINING-ONLY-27001-23.
- Named organisation: Example Text Services Ltd (fictional).
- Management-system scope: operation and support of the Example Business Workspace hosted text service.
- Named site: Example Operations Centre, fictional location.
- Scope exclusions: Example Consumer App and the standalone Example Desktop Client are not included.
- Illustrative issue date: 1 March 2026.
- Illustrative expiry date: 28 February 2029.
- Issuing body: Example Certification Body, invented for this exercise.
- Accreditation claim: none. No accreditation body has assessed this fictional issuer.

## Buyer’s proposed use

The fictional buyer intends to deploy Example Desktop Client. The supplied specimen therefore does not establish that the intended service is within the stated scope. This is a reading conclusion about the exercise, not a finding about a real supplier.

## Annotation key

1. Match the named entity to the contract. A group brand is not enough.
2. Read the service and location scope, including attached schedules.
3. Compare the proposed feature with the explicit exclusions.
4. Verify issuer accreditation for the relevant scheme using an authoritative directory.
5. Verify the actual certificate and current status through the relevant issuer or registry.
6. Keep the lookup record and date; do not invent a successful lookup for this specimen.


## Source and scope

Guide: https://aona.ai/resources/guides/ai-vendor-iso27001-certificate-scope/

Source check: 21 September 2026. General information, not professional approval or a completed control test.

- UKAS: Validating management-system certificates: https://www.ukas.com/accreditation/about/validating-ms-certificates/
- UKAS CertCheck: https://www.ukas.com/certcheck/
