Legal Register Template Singapore — Free Guide and Checklist for ISO 45001 and ISO 14001

Legal Register Template Singapore — Free Guide and Checklist for ISO 45001 and ISO 14001

Every ISO-certified company in Singapore needs a legal register. ISO 45001 and ISO 14001 both require it (Clause 6.1.3 — “Compliance Obligations”), bizSAFE Level 3 auditors expect it, and any meaningful internal audit will ask to see it. Yet most companies start the same way: a colleague’s old spreadsheet, a few headings, and a creeping sense that something is missing. This guide explains what a defensible legal register actually contains, walks through a free template structure you can adopt today, and gives you a checklist to test your existing register against.

What a Legal Register Actually Is

A legal register is a controlled, periodically updated list of every law, regulation, code of practice and other compliance obligation that applies to your operations. For an ISO 45001 or ISO 14001 system, it is the evidence that the organisation has identified its compliance obligations (Clause 6.1.3) and evaluated compliance against them (Clause 9.1.2).

It is not just a list of statute names. A defensible register identifies which clauses or sections apply, how the company complies with them, who owns the obligation, and when the next compliance check is due. It is the backbone of the compliance arm of an ISO management system.

Need a Legal Register for Your ISO Certification?

Stop maintaining spreadsheets. Our Legal Register platform covers 100+ Singapore legislation across 7 ISO standards — auto-updated, audit-ready.

Start Free Trial → See How It Works

What the ISO Standards Actually Require

Both ISO 45001 (occupational health and safety) and ISO 14001 (environmental management) require organisations to:

  • Identify applicable legal and other requirements (Clause 6.1.3)
  • Determine how those requirements apply to the organisation’s specific activities, products and services
  • Take them into account when establishing, implementing, maintaining and continually improving the management system
  • Evaluate compliance with those requirements at planned intervals (Clause 9.1.2)
  • Maintain documented information as evidence of the above

Auditors do not just want to see the list. They want to see how it was built, how it is maintained, when it was last reviewed, and what triggered any changes since the last audit.

Free Legal Register Template — What to Include

A workable legal register has the following columns. You can build this in Excel today, or use a dedicated platform if your obligation count is large.

  1. Reference number — sequential, for traceability
  2. Legislation title — full statute name, e.g. Workplace Safety and Health Act
  3. Issuing authority — Ministry of Manpower, National Environment Agency, Singapore Civil Defence Force, etc.
  4. Date of issue / latest revision — including the year of the version you are using
  5. Specific clauses applicable — not just “the whole Act”
  6. Applicability rationale — why this clause applies to your activities
  7. Compliance evidence — the procedure, record or control that demonstrates compliance
  8. Responsible person — by role, not by name (so it survives staff changes)
  9. Compliance status — compliant, partial, non-compliant, not yet evaluated
  10. Last review date and next review date
  11. Notes — gaps, planned actions, audit findings

For a typical Singapore SME, a legal register will run to 30-80 entries. For a manufacturer or contractor with environmental obligations, the count can comfortably exceed 200.

The Compliance Layers Most Companies Miss

Beyond the obvious WSH Act and ISO standards, a defensible legal register usually needs to cover at least these layers:

  • Primary statutes — Workplace Safety and Health Act, Environmental Public Health Act, Fire Safety Act, Energy Conservation Act
  • Subsidiary regulations — Risk Management, Construction, General Provisions, Confined Spaces, Noise, Scaffolds, Workplaces (Safety and Health) Regulations
  • Approved Codes of Practice — published by the Workplace Safety and Health Council, often referenced as the standard of care
  • Singapore Standards (SS) — for example SS 506 (OHS Management Systems), SS 651 (Permit to Work)
  • Industry-specific requirements — Building Control Act, Sale of Food Act, Public Utilities Act, Transboundary Movement of Hazardous Wastes Act
  • Sectoral guidance — BCA Workplace Safety and Health, NEA pollution control standards
  • Contractual obligations — client safety requirements, parent company global standards, ISO certification body requirements

Auditors increasingly expect to see this stratification. A register that lists only the WSH Act and stops there is rarely defensible.

Legal Register Checklist — Test Your Existing Register

Run your current register through these questions. Any “no” is an audit finding waiting to happen.

  • Does each entry name the specific clauses that apply, not just the Act?
  • Is there an applicability rationale for each clause?
  • Does each entry name the compliance evidence — a procedure, form or record?
  • Is each entry assigned to a role, not a named person?
  • Is there a documented review interval (annual at minimum, often quarterly)?
  • Is there a record of when each entry was last reviewed?
  • Is there a process for capturing legislative changes between reviews — e.g. a subscription to MOM, NEA or SCDF gazette updates?
  • Are non-compliances logged and tied to the corrective action system?
  • Is the register version-controlled, with revision history?
  • Has a competent person (internal or external) verified the register is complete?

If you answered “no” to four or more, your register will struggle in a real audit.

Why Excel Eventually Stops Working

Excel works for a register of 30-80 entries. Beyond that, the maintenance burden grows faster than headcount can absorb. Common Excel failure modes include:

  • Multiple parallel copies in different folders, each subtly out of date
  • No reliable way to see which obligations have been reviewed in the last quarter
  • Loss of revision history when someone overwrites the master file
  • No automatic alert when a statute is amended, gazetted or repealed
  • Difficulty linking obligations to compliance evidence (procedures, forms, records)
  • Manual effort to produce auditor-ready reports during certification or surveillance audits

For companies that have outgrown Excel, a dedicated AI-powered legal register platform can automate the applicability evaluation, monitor gazette updates, link evidence to obligations, and produce audit-ready exports. That is the same standard auditors expect — implemented as a system instead of a spreadsheet.

Next Steps

If you are starting from scratch, build the columns above into a controlled Excel template, populate the primary statutes for your industry, and put a calendar reminder for a quarterly review. If you already have a register, run the checklist against it this week. If you have outgrown the spreadsheet model, the Sage Shield Legal Register platform offers a 14-day free trial with AI-driven applicability evaluation across Singapore and 14 APAC jurisdictions — built specifically for ISO 45001, ISO 14001 and bizSAFE companies.

However you build it, the principle is the same: a legal register is the evidence that compliance is being managed, not the assertion that it is. Build it for the auditor who has not met you yet.



Free
Consultation
Call Now WhatsApp
☍ Legal Register Platform — AI-Powered Compliance for 15 APAC Countries Try Free →