Audit & Compliance

NDIS Corrective Action Plan: What to Include and How AuditCore Generates One Automatically

AuditCore Team· NDIS Compliance10 May 20267 min read

A corrective action plan is not a punishment — it is your roadmap back to full compliance. Here is exactly what yours needs to include, and how AuditCore creates it from your audit findings automatically.

After an NDIS audit, any non-conformances result in a corrective action plan (CAP). Your CAP must be submitted to your audit body within the timeframe they specify — usually 20 business days — and it must demonstrate a genuine plan to fix the finding, not just acknowledge it. AuditCore's Internal Audit AI generates a draft CAP automatically from your internal audit findings, giving you a head start before your external audit even begins.

What a Compliant CAP Must Include

Every corrective action in your CAP must address four things. Auditors reject vague plans that say "we will improve our processes." They need to see specifics.

ElementWhat Auditors ExpectExample
Finding referenceThe exact non-conformance as worded in the audit reportNC-2025-003: Support plans not linked to participant NDIS goals
Root causeWhy this happened — not just what happenedTemplates used did not prompt workers to reference NDIS plan numbers
Corrective actionSpecific steps to fix the findingUpdated template in AuditCore with mandatory NDIS goal fields; all existing plans reviewed by [date]
Responsible personNamed individual accountable for the actionSarah Mitchell, Operations Manager
Target dateRealistic completion date30 June 2025
Evidence of completionWhat you will show to demonstrate it is fixedScreenshot of updated template; sample of 5 reviewed plans

AuditCore's CI Register automatically generates corrective action items from audit findings, incidents, and complaints — and tracks each one through to resolution with owner assignment and due dates.

See the CI Register

Common CAP Mistakes That Get Rejected

  • Vague actions like "staff will be trained" without specifying what training, who delivers it, and when
  • No root cause analysis — just describing what happened rather than why
  • Responsible person listed as a job title rather than a named individual
  • Target dates that are unrealistically far in the future
  • No evidence plan — auditors need to verify completion at your follow-up audit
  • Addressing the symptom rather than the system failure that caused it

How AuditCore Generates Your CAP

When AuditCore's Internal Audit AI identifies a non-conformance, it automatically creates a finding card in your CI Register. Each card includes the finding, the relevant NDIS Practice Standard indicator, a suggested corrective action, and a recommended evidence type. You add the responsible person and target date — AuditCore tracks completion and sends reminders as the deadline approaches.

Using Your Internal Audit CAP to Prevent External Non-Conformances

The best CAP is one you never have to submit to an auditor. AuditCore's approach is to run the internal audit, generate the CAP, fix the findings, and run the audit again before your external auditor arrives. Providers who complete this cycle typically have no non-conformances in their external audit, or only minor findings that are easily resolved.

AuditCore's Internal Audit AI identifies the gaps that require corrective action — so your improvement plan addresses exactly what the NDIS Commission is looking for.

See Internal Audit AI

Timeframes and Follow-Up Audits

  • Minor non-conformances: usually 20 business days to submit your CAP
  • Major non-conformances: may require immediate action and a shorter CAP timeframe
  • Follow-up audit: typically within 3–6 months to verify the CAP is complete
  • Unresolved CAPs: can result in conditions on your registration or suspension
  • AuditCore tracks all CAP deadlines and escalates overdue actions to management

Ready to simplify NDIS compliance?

AuditCore automates incident management, internal audits, and compliance tracking for Australian NDIS providers.

Book a Free Demo →