The timeline is an evidence-organising aid. It does not determine cause, blame or legal reporting requirements.
Worked example
In the fictional example, a system log records an alarm at 10:04 and a later account mentions a door condition. Each entry retains its own source and reliability question. The timeline does not infer a causal relationship simply because events appear close together.
Use the resource
Protect original records and their access controls. Use appropriate authorised investigation procedures for real incidents, including any urgent response or reporting. Do not upload witness statements, medical details or identifying records through a public enquiry.
Worked record
| Time/sequence | Fact or account | Source/reference | Verified status | Open question | Follow-up owner |
|---|---|---|---|---|---|
| 10:04 (illustrative) | Alarm recorded | Example system log | Log entry identified | What does this timestamp represent? | Assign investigator |
| Later account (illustrative) | Door described as open | Example interview reference | Account not independently confirmed | When was the condition observed? | Assign investigator |
How to use it
- Preserve source and timestamp context.
- Label accounts and assumptions.
- Record questions without inventing answers.
- Assign evidence follow-up through the authorised process.
Your working record
Enter your information, then download a copy to keep it. Entries stay in this tab and are not saved automatically.
Blank record
Download a blank copy for offline reference or printing. Complete the editable record above to save your entries.
Download blank recordRelated guidance and resources
Source context
- Current Diba training catalogue
Catalogue identities, duration, audience and listed prices only.
Source context checked 6 October 2026. Examples are illustrative.
