Whether you're a registered NDIS provider approaching the midpoint of your registration period or simply trying to stay ahead of compliance obligations, having a clear checklist is one of the smartest things you can do. This article walks you through exactly what an NDIS mid term audit involves and how to prepare for it with confidence.
What Is an NDIS Mid Term Audit and Why It Matters
An NDIS mid term audit — sometimes called a mid-term review or surveillance audit — is a compliance check that typically occurs roughly halfway through a registered provider's three-year certification cycle. It sits between your initial certification audit and your renewal audit, and its purpose is straightforward: to verify that your organisation is still operating in line with the NDIS Practice Standards and the conditions of your registration.
Unlike the full certification audit, a mid term audit is generally more targeted. Auditors will focus on whether the systems, policies, and procedures you demonstrated at certification are still active, up to date, and genuinely embedded in day-to-day practice. It's not a tick-and-flick exercise — auditors are looking for evidence of continuous improvement, staff compliance, incident management, and participant outcomes.
Why does it matter so much? Because failing to meet mid term requirements can put your registration at risk. The NDIS Quality and Safeguards Commission takes ongoing compliance seriously, and gaps identified during this review can trigger corrective action plans, additional monitoring, or in serious cases, suspension of registration.
For providers who prepared thoroughly for their certification audit — perhaps using a structured document pack to get their policies and procedures in order — the mid term audit is an opportunity to demonstrate that those foundations are holding strong. It rewards organisations that have treated compliance as an ongoing discipline rather than a one-off effort.
Understanding what auditors are looking for at this stage is the first step toward passing with minimal stress.
Key Documents and Records to Prepare Before the Audit
A mid-term audit is not the time to start hunting through folders and shared drives. Auditors will expect your documentation to be organised, current, and readily accessible — so getting your records in order well ahead of the scheduled date is one of the most important things you can do as a registered NDIS provider.
The following categories of documentation are typically reviewed during a mid-term audit:
- Policies and procedures: All operational policies must reflect the current NDIS Practice Standards and be reviewed within the timeframes stated in the documents themselves. Outdated policies are a common finding.
- Participant records: Support plans, consent forms, progress notes, incident reports, and complaint records should be complete, accurate, and stored securely.
- Staff documentation: Employee files must include current NDIS Worker Screening clearances, training records, and signed position descriptions.
- Risk management records: Your risk register should be up to date, with evidence that identified risks have been actioned and reviewed.
- Governance and management documents: Board or management meeting minutes, quality improvement plans, and evidence of leadership oversight all demonstrate that your organisation is actively governed — not just paper-compliant.
- Incident and complaints registers: Auditors look for patterns, not just records. Be prepared to show how incidents and complaints have led to improvements in practice.
One of the biggest mistakes providers make is treating documentation as a one-off task completed before their Certification audit and never revisited. Your records need to show a living system — one that is actively maintained, reviewed, and improved over time.
If your document library is incomplete or your templates are not aligned to the Practice Standards, a ready-made document pack can give you a structured, audit-ready foundation to build from — covering policies, procedures, and operational forms across all key compliance areas.
NDIS Mid Term Audit Checklist: Core Compliance Areas
Understanding exactly what auditors examine during a mid term review is the foundation of effective preparation. Your checklist should be structured around the same core compliance areas the NDIS Quality and Safeguards Commission uses to assess registered providers. Missing even one of these domains can result in findings that delay your re-registration or trigger corrective action requirements.
Use the following core areas as the backbone of your mid term audit checklist:
- Rights and Responsibilities: Evidence that participants are informed of their rights, including complaint and advocacy pathways, and that your practice actively upholds those rights in day-to-day service delivery.
- Governance and Operational Management: Current, signed-off policies and procedures, clearly documented leadership accountability, and evidence of regular governance reviews — this is an area where many providers are caught underprepared.
- Risk Management: A live, actively maintained risk register aligned to the supports you deliver, alongside documented incident and near-miss reporting processes.
- Human Resources: Up-to-date staff files including current NDIS Worker Screening clearances, role-specific training records, and signed employment documentation.
- Support Provision: Individualised support plans, evidence of goal-setting with participants, and records demonstrating person-centred practice in action.
- Feedback and Complaints: A functioning complaints management process with logged outcomes — auditors want to see the full cycle, not just a policy document.
The good news is that building audit-ready documentation across all of these areas does not have to start from a blank page. The team behind NDIS University has structured their document pack specifically around these compliance domains, so providers can map their evidence directly to what auditors are looking for. For additional guidance on preparing across each area, the NDIS University blog regularly publishes practical advice tailored to registered providers at every stage of their audit cycle.
Common Gaps Found During Mid Term Audits and How to Fix Them
Mid term audits regularly uncover the same recurring weaknesses across NDIS providers. Knowing where others fall short gives you a significant advantage when preparing your own review. Here are the most frequently identified gaps — and practical steps to address them before an auditor does.
- Outdated policies and procedures: Policies written at certification time are often never touched again. Auditors expect documents to reflect your current operations. Schedule a quarterly review cycle and record the date and name of the reviewer on each document.
- Incomplete incident registers: Providers frequently log incidents but fail to document follow-up actions or outcomes. Every entry should include the response taken, timeframe, and whether the issue was resolved or escalated.
- Missing or expired staff credentials: NDIS Workers Screening checks, First Aid certificates, and mandatory training records must be current. Build a compliance calendar that triggers renewal reminders at least 60 days before expiry.
- Weak evidence of participant goal reviews: Support plans on file often lack evidence of regular review conversations with participants. Ensure review meeting notes, dated and signed, are stored alongside each support plan.
- Poorly documented complaints handling: Receiving a complaint is not enough — auditors want to see a clear trail showing acknowledgement, investigation, resolution, and participant feedback. Use a standardised complaints register with mandatory fields.
- Gaps in subcontractor oversight: If you engage support workers through subcontractors, you remain responsible for their compliance. Maintain copies of their screening checks, insurance certificates, and service agreements.
The common thread across all these gaps is documentation discipline. Having strong processes means very little if there is no paper trail to prove it. Ready-made, structured templates — like those available through NDIS University — make it far easier to maintain consistent, auditor-ready records without rebuilding your systems from the ground up every time a gap appears.
Tips for Maintaining Continuous Compliance Between Audits
Passing your NDIS mid-term audit is a significant milestone, but the real work lies in sustaining compliance every day between formal reviews. Continuous compliance protects your participants, strengthens your organisation's reputation, and makes your next audit far less stressful.
- Schedule regular internal reviews: Don't wait for an auditor to flag issues. Set quarterly dates to review your policies, procedures, and incident registers against the NDIS Practice Standards.
- Keep documents version-controlled: Every time a policy is updated, record the revision date and reason. Auditors look for living documents, not static ones that haven't been touched since registration.
- Train staff consistently: Compliance is only as strong as your team's understanding of it. Build ongoing training into your workforce calendar, not just during onboarding.
- Act on incidents promptly: Log, investigate, and close out incidents in real time. A backlog of unresolved incidents is a red flag in any audit context.
- Monitor regulatory updates: The NDIS Commission periodically updates practice standards and guidance. Assign someone in your team to track changes and update your documentation accordingly.
- Use your documents actively: Policies sitting in a folder serve no one. Embed procedures into daily workflows so compliance becomes habitual rather than a last-minute scramble.
Having professionally structured, audit-ready documentation as your foundation makes all of this significantly easier. When your policies and templates are already aligned to NDIS Practice Standards, ongoing compliance becomes a matter of maintaining and updating rather than rebuilding from scratch every cycle.
Preparing thoroughly for your NDIS mid-term audit doesn't have to be overwhelming. By understanding what auditors look for, organising your evidence in advance, addressing common gaps, and building compliance habits into your daily operations, you position your organisation for long-term success as a trusted NDIS provider. With the right documentation framework behind you, you can walk into any audit — mid-term or otherwise — with genuine confidence.
Ready to get audit-ready without the paperwork?
Get the Certification Pack — $649