In the years since Grenfell, the regulatory landscape for residential buildings has shifted from reactive compliance to proactive risk management. The Building Safety Act sits at the centre of that shift, introducing a structured framework that demands demonstrable control over safety risks and clear evidence that those risks are being managed properly.
For organisations involved in higher-risk residential buildings, Building Safety Act compliance is not confined to a single stage of a project. It extends from concept design through construction and into occupation, requiring coordinated governance, transparent decision-making and robust information management. At the heart of this legislation is the concept of the “golden thread” – a living record of accurate, up-to-date information that underpins safety throughout a building’s lifecycle.
Summary
- Why the Building Safety Act Exists
- Scope and Definitions
- Duty Holders
- Whole-lifecycle Safety Compliance
- Gateways and Building Control
- Information Management and Record Keeping
- Safety Management: Risk Assessments, Certification and Reporting
- Community Engagement and Transparency
- Remediation and Funding
- BSA Enforcement and Penalties
- BSA Compliance in Practice
- Governance and Documentation
From Grenfell to a New Safety Regime
The Building Safety Act is rooted in a fundamental reassessment of how building safety risks are managed in England. The Grenfell Tower fire in June 2017 exposed not only catastrophic failings in fire safety, but also systemic weaknesses in oversight, accountability and information management across the construction and housing sectors.
Subsequent investigations, including Dame Judith Hackitt’s Independent Review of Building Regulations and Fire Safety, identified a culture that too often prioritised cost and speed over safety. The review described a regulatory system that was fragmented, overly complex and insufficiently robust, with unclear lines of responsibility and inadequate mechanisms for enforcement.
The Building Safety Act 2022 was introduced to address those structural shortcomings. Rather than relying solely on compliance at discrete approval stages, the Act establishes a continuous safety regime focused on risk identification, mitigation and evidence-based assurance. It strengthens regulatory powers, introduces a dedicated Building Safety Regulator, and imposes clear legal duties on defined role holders.
Crucially, the legislation reflects a shift in mindset. Compliance is no longer about demonstrating that minimum standards were met at a particular point in time. It is about proving that safety risks are understood, managed and documented throughout the building’s lifecycle. That emphasis on accountability and traceability underpins the concept of the golden thread and defines the new approach to Building Safety Act compliance.
Scope and Definitions: Higher-Risk Buildings and Other In-Scope Properties
Understanding when the Building Safety Act applies is the first step towards effective Building Safety Act compliance. While elements of the legislation have broader application, the most stringent requirements focus on a defined category of “higher-risk buildings” (HRBs).
What Is a Higher-Risk Building?
For the purposes of the new rules in England, a higher-risk building is generally one that is:
- at least 18 metres in height
OR - has at least seven storeys
AND - contains at least two residential units
This typically captures high-rise blocks of flats and certain mixed-use buildings with a substantial residential component. Care homes and hospitals meeting the height threshold are also within scope during the design and construction phase, although the occupation phase is primarily focused on residential buildings.
Construction vs Occupation: Why the Distinction Matters
It is important to distinguish between the construction phase and the occupation phase s. During design and construction, the higher-risk definition applies to buildings that meet the height and use criteria at the point of application. Once a building is occupied, additional registration and safety case requirements apply to those that fall within the occupation phase.
Beyond Higher-Risk Buildings: Wider Regulatory Impact
However, Building Safety Act 2022 compliance is not limited solely to higher-risk buildings. The Act amends existing building control processes, extends limitation periods under the Defective Premises Act, and strengthens enforcement powers more generally. As a result, developers, designers and contractors working on a wide range of projects must understand how the new system interfaces with broader building regulations obligations.
Clarity on scope is essential. Misunderstanding whether a building is in scope can lead to procedural missteps at Gateway stages, failures in registration, or inadequate preparation of safety case documentation. As part of best practices for Building Safety Act compliance, organisations should undertake an early-stage assessment of whether a project is likely to fall within the higher-risk category and document the rationale for that conclusion.
Who’s Responsible: Dutyholders, Accountable Persons and the Building Safety Regulator
Clear allocation of responsibility sits at the core of Building Safety Act compliance. The Act does not merely introduce new procedures; it establishes defined legal roles with enforceable duties. Understanding who carries responsibility – and at what stage – is essential to avoiding gaps in governance.
Dutyholders During Design and Construction
During the design and construction phase, the Act aligns with and strengthens the existing dutyholder framework under the Building Regulations. Key roles include the Client, Principal Designer, Principal Contractor and other designers and contractors.
These dutyholders must plan, manage and monitor their work to ensure compliance with building regulations. They are required to demonstrate competence, coordinate effectively, and ensure that safety risks are identified and addressed before works proceed. For higher-risk buildings, these responsibilities are scrutinised through the Gateway approval process, with the Building Safety Regulator acting as the building control authority.
For organisations seeking best practices for Building Safety Act compliance, early clarity on contractual allocation of these roles is critical. Appointment documents should expressly reflect statutory responsibilities and avoid ambiguity as to who is accountable for regulatory submissions, design coordination and information management.
The Accountable Person and Principal Accountable Person
Once a higher-risk building is occupied, responsibility shifts to the “Accountable Person” (AP). This will usually be the entity that owns or has a legal obligation to repair the common parts of the building. Where there is more than one AP, a Principal Accountable Person (PAP) must be identified.
The AP’s duties include registering the building with the Building Safety Regulator, assessing and managing building safety risks (particularly fire and structural risks), and preparing and maintaining a safety case report. These obligations are ongoing and proactive. They require evidence that risks are being continuously identified, mitigated and reviewed.
Failure to meet these duties can result in enforcement action, including compliance notices, restrictions on occupation and, in serious cases, criminal liability. For Building Safety Act 2022 compliance, governance structures must therefore extend beyond construction completion and into long-term operational management.
The Role of the Building Safety Regulator
The Building Safety Regulator (BSR), established within the Health and Safety Executive, oversees the new system. It acts as the building control authority for higher-risk buildings, maintains the register of such buildings, and has wide enforcement powers.
The BSR’s role reflects a broader shift from reactive inspection to active regulatory oversight. It can intervene at Gateway stages, request information, issue compliance notices and pursue prosecution where necessary. It also plays a role in promoting competence across the industry.
If you are considering when the Building Safety Act applies and how to structure compliance frameworks, early engagement with regulatory expectations is advisable. Demonstrating openness, accurate record-keeping and structured governance will form part of a defensible approach to Building Safety Act compliance.
Whole-Lifecycle Safety: Design, Construction, Handover and Occupation
A defining feature of Building Safety Act compliance is its whole-lifecycle approach. The process is not limited to securing approvals at key milestones; it requires demonstrable control over safety risks from initial concept through to long-term occupation.
This lifecycle focus is central to any practical Building Safety Act overview. It reflects a deliberate move away from fragmented compliance towards continuous accountability.
Design Stage: Embedding Safety from the Outset
At the design stage, safety must be considered as an integrated element of the project brief rather than a compliance check at the end of the process. Designers are required to identify, eliminate or reduce foreseeable risks and ensure that their proposals are capable of satisfying building regulations.
For higher-risk buildings, Gateway 2 requires detailed design information to be submitted to the Building Safety Regulator before construction begins. This effectively removes the ability to proceed “at risk” pending approval. In practice, this demands earlier coordination, more rigorous documentation and clearer audit trails.
As part of best practices for Building Safety Act compliance, project teams should implement structured design reviews, maintain version control of technical documents and ensure that regulatory assumptions are clearly recorded and justified.
Construction Stage: Managing Change and Maintaining Control
During construction, the emphasis shifts to ensuring that works are delivered in accordance with the approved design and that any changes are properly assessed and documented. Uncontrolled design alterations were a recurring concern in post-Grenfell investigations, particularly where substitutions undermined fire safety performance.
Under the new process, significant changes to higher-risk building projects may require approval from the Building Safety Regulator before implementation. This reinforces the need for disciplined change management procedures and clear communication between contractors, designers and clients.
Effective building safety act 2022 compliance at this stage depends on robust site governance, accurate record-keeping and alignment between contractual processes and statutory requirements.
Handover: From Construction to Accountable Management
Handover is no longer a simple transfer of keys and completion certificates. For higher-risk buildings, the Gateway 3 process requires evidence that the building has been constructed in accordance with approved plans and complies with applicable regulations before it can be legally occupied.
This stage also marks the transition from dutyholders under the construction phase to the Accountable Person under the occupation phase. The quality, completeness and accessibility of information transferred at handover will directly affect the ability of the Accountable Person to prepare a compliant safety case.
Organisations should treat handover as a structured information transfer exercise, ensuring that design intent, product specifications, inspection records and compliance evidence are clearly collated.
Occupation: Ongoing Risk Management
The occupation phase introduces continuous obligations. The Accountable Person must assess building safety risks, implement reasonable steps to prevent a major incident, and maintain a safety case report demonstrating how risks are controlled.
This is where the lifecycle nature of the system becomes most visible. Compliance is no longer event-based; it is operational. Regular review, monitoring and updating of safety information form part of sustained Building Safety Act compliance.
Taken together, these stages demonstrate that the Act is not simply a regulatory overlay. It is a structural reorientation of responsibility, placing safety governance at the centre of the building’s entire lifespan.
Gateways and Building Control: Approvals, Competence and Oversight
One of the most visible structural changes introduced by the Act is the new Gateway system for higher-risk buildings. These staged approval points are central to Building Safety Act compliance, embedding regulatory scrutiny at key milestones rather than relying solely on post-completion certification.
The Gateway process operates alongside reforms to the building control system, reinforcing competence requirements and strengthening oversight.
Gateway 1: Planning Stage Considerations
Gateway 1 sits at the planning stage and focuses on fire safety considerations. Applicants for relevant higher-risk building projects must submit a fire statement demonstrating how fire safety has been integrated into the design from the outset.
Although Gateway 1 does not prevent development consent in the same way as later Gateways, it signals an early expectation that safety is embedded within the planning narrative. For developers considering when the Building Safety Act applies, it is important to note that Gateway 1 is triggered at the planning application stage for relevant schemes.
Gateway 2: Pre-Construction Approval
Gateway 2 represents a fundamental shift in regulatory control. Before construction can commence on a higher-risk building, the client must obtain building control approval from the Building Safety Regulator. Detailed design information must be submitted, demonstrating compliance with building regulations.
This replaces the former system in which work could often begin before full design information had been finalised or approved. Under the new rules, construction cannot lawfully proceed without Gateway 2 approval.
In practical terms, Building Safety Act 2022 compliance at this stage requires:
- A fully coordinated design package
- Clear evidence of regulatory compliance
- Demonstration of competence within the project team
- Robust change control procedures
Failure to secure approval can result in delay, additional cost and regulatory intervention.
Gateway 3: Completion and Occupation
Gateway 3 occurs at completion. Before a higher-risk building can be occupied, the client must apply to the Building Safety Regulator for a completion certificate. The Regulator must be satisfied that the building has been constructed in accordance with the approved plans and complies with building regulations. Without this certificate, occupation is prohibited.
Gateway 3 reinforces the need for accurate as-built documentation, inspection records and confirmation that any design changes were properly approved. It also creates a formal checkpoint before responsibility transitions fully into the occupation phase.
Building Control Reform and Competence
The Act also reforms the building control landscape more broadly. For higher-risk buildings, the Building Safety Regulator acts as the building control authority. Private approved inspectors are no longer permitted to oversee these projects.
In parallel, the Act introduces strengthened competence requirements for both building control professionals and dutyholders. Demonstrable skills, knowledge, experience and behaviours are expected across the project team.
For organisations seeking best practices for Building Safety Act compliance, preparation should include:
- Early identification of whether a project will be subject to Gateway controls
- Alignment of project programming with approval timelines
- Clear documentation of competence within the team
- Integration of statutory change-control processes into contractual mechanisms
The Gateway framework reflects the broader philosophy of the Act: proactive oversight, defined accountability and traceable compliance.
The Golden Thread: Information Management and Record-Keeping
At the centre of effective Building Safety Act compliance lies the concept of the “golden thread” of information. More than a slogan, it represents a legal and operational expectation: that accurate, up-to-date and accessible information about a building’s design, construction and ongoing management is created, maintained and capable of being relied upon.
The golden thread is the mechanism through which compliance is evidenced. Without it, organisations may struggle to demonstrate that risks have been properly identified, assessed and controlled.
What Is the Golden Thread?
The golden thread refers to the structured, digital record of information that supports building safety throughout the building’s lifecycle. It should provide a clear audit trail of:
- Design intent and regulatory assumptions
- Key fire and structural safety decisions
- Materials and product specifications
- Changes made during construction
- Inspection and commissioning records
- Ongoing safety management arrangements
The expectation is not merely that documents exist, but that they are accurate, coherent and capable of being updated over time. For higher-risk buildings, this information must be sufficient to support the preparation of a safety case report during occupation.
In practical terms, the golden thread underpins Building Safety Act 2022 compliance by ensuring that safety critical information is not fragmented across disconnected systems or lost at handover.
Digital, Accessible and Secure
The Act anticipates that the golden thread will be maintained in digital form. Information must be:
- Kept up to date
- Clearly structured
- Accessible to those who need it
- Protected against unauthorised alteration or loss
This requires careful consideration of data governance, document control protocols and system interoperability. It also raises questions around long-term data storage, software migration and responsibility for maintaining records when ownership structures change.
As part of best practices for Building Safety Act compliance, organisations should audit existing information management systems to assess whether they are capable of supporting lifecycle traceability.
From Handover to Occupation
The importance of the golden thread becomes particularly visible at handover. If design and construction records are incomplete, inconsistent or inaccessible, the Accountable Person may be unable to prepare a compliant safety case.
This risk is not theoretical. Inadequate information transfer can delay registration of higher-risk buildings, expose dutyholders to enforcement action and create operational uncertainty.
Clear protocols for information capture, verification and transfer should therefore be embedded within project execution plans from the outset. Building Safety Act compliance is not achieved by assembling documentation retrospectively; it depends on disciplined record-keeping throughout the project.
The Golden Thread as Risk Mitigation
Beyond regulatory compliance, the golden thread also functions as a risk mitigation tool. Accurate, structured information reduces the likelihood of unsafe alterations, inappropriate material substitutions or poorly informed maintenance decisions.
In this sense, the golden thread reflects the broader philosophy of the Act: accountability supported by transparency. Organisations that treat information management as a strategic governance function – rather than an administrative burden – will be better positioned to demonstrate robust Building Safety Act compliance and withstand regulatory scrutiny.
Safety Management in Occupation: Safety Cases, Assessments, Certification and Reporting
Once a higher-risk building is occupied, Building Safety Act compliance becomes an ongoing operational responsibility rather than a project milestone. The focus shifts from design assurance and construction control to active risk management and demonstrable oversight.
At this stage, the Accountable Person – and where applicable, the Principal Accountable Person – must be able to evidence that building safety risks are being properly identified, assessed and controlled.
Registration and Certification
Any HRB that is occupied must be registered with the Building Safety Regulator. It is a criminal offence to allow a qualifying building to be occupied without registration.
Following registration, the Regulator may call in a building for assessment and require the submission of a safety case report. Where satisfied, the Regulator will issue a Building Assessment Certificate. This certificate confirms that the statutory duties appear to be met, but it does not remove the ongoing obligation to manage risk.
Understanding when the Building Safety Act applies at the occupation stage is therefore critical. Failure to register or delays in preparing compliant documentation can trigger enforcement action.
The Safety Case and Safety Case Report
The safety case is not a single document but a structured body of evidence demonstrating how building safety risks – principally fire spread and structural failure – are being managed.
The safety case report summarises this evidence for the Regulator. It should explain:
- What the building safety risks are
- How those risks are being controlled
- Why the control measures are considered effective
- How risks are monitored and reviewed
This requires more than historic compliance certificates. The Accountable Person must demonstrate active management, including inspections, maintenance procedures and systems for responding to identified issues.
Effective Building Safety Act 2022 compliance therefore depends on governance structures capable of sustaining long-term oversight rather than one-off assessments.
Ongoing Risk Assessment and Review
Risk management under the Act is dynamic. The Accountable Person must take reasonable steps to prevent a major incident and reduce the severity of any such incident if it occurs.
This includes reviewing risk assessments where:
- Significant building works are undertaken
- Occupancy patterns change
- New information about materials or systems emerges
- A safety incident occurs
The golden thread of information becomes essential at this stage. Without accurate and current records, meaningful risk review becomes difficult and potentially unreliable.
Mandatory Occurrence Reporting
The Act also introduces mandatory occurrence reporting for certain safety events. Dutyholders and Accountable Persons must notify the Regulator of prescribed incidents that could indicate serious safety risks.
This requirement reinforces the cultural shift embedded within the law change. Concealment or informal resolution of significant safety issues is no longer acceptable. Transparency and timely reporting form part of defensible Building Safety Act compliance.
Resident Engagement and Transparency: Raising Concerns and Complaints Routes
A key feature of the new law is the recognition that residents are not passive occupants but stakeholders in building safety. Building Safety Act compliance therefore extends beyond technical risk management to include structured engagement, transparency and accessible reporting mechanisms.
The Act imposes specific duties on the Accountable Person to promote resident involvement and ensure that safety information is shared in a clear and meaningful way.
Resident Engagement Strategy
For occupied higher-risk buildings, the Principal Accountable Person must prepare and maintain a resident engagement strategy. This document must explain how residents will be informed about building safety matters and how they can participate in discussions relating to risk management.
The strategy should address:
- The type of safety information that will be shared
- The format and frequency of communication
- How residents can raise concerns
- How feedback will be considered and responded to
This requirement reflects the wider policy objective of transparency. Residents must understand the nature of building safety risks and the measures in place to control them.
From a governance perspective, best practices for Building Safety Act compliance include ensuring that engagement strategies are not generic templates but tailored to the building’s characteristics and resident profile.
Access to Information
Residents of higher-risk buildings have rights to request certain safety-related information. The Accountable Person must provide relevant documents unless limited exceptions apply.
This places additional emphasis on the quality and organisation of the golden thread. Information must not only exist; it must be retrievable, intelligible and capable of being shared appropriately.
Failure to provide required information, or to do so in a timely manner, may undermine regulatory confidence and expose the organisation to enforcement risk.
Complaints and Escalation Routes
The Act also requires clear internal complaints procedures relating to building safety. Where concerns are not satisfactorily resolved, residents may escalate issues to the Building Safety Regulator.
This introduces a direct line of visibility between residents and the Regulator. Organisations must therefore treat complaints handling as part of their formal compliance framework rather than an informal customer service matter.
Documented procedures, response timelines and records of action taken should be maintained. These records may become relevant in the context of inspections or regulatory review.
Cultural Shift: From Information Control to Transparency
The emphasis on resident engagement marks a broader cultural shift. Historically, building safety information was often controlled tightly by owners or managing agents. Under the new regulations, transparency is embedded as a compliance obligation.
For organisations seeking to strengthen their Building Safety Act compliance stance, this means integrating communication, governance and information management. Technical competence alone is insufficient; accountability must also be visible.
Remediation and Funding: Leaseholder Protections, Liability and Cost Recovery
Alongside its forward-looking safety system, the Act introduces significant provisions addressing historical building safety defects. For many organisations, Building Safety Act compliance now includes navigating remediation obligations, funding constraints and enhanced liability exposure.
These provisions were designed to prevent leaseholders from bearing the financial burden of systemic safety failures and to expand the avenues through which costs can be recovered from those responsible.
Leaseholder Protections
One of the most publicised aspects of the Act is the introduction of statutory leaseholder protections in relation to certain building safety defects in higher-risk and qualifying buildings.
In broad terms, qualifying leaseholders in relevant residential buildings are protected from bearing the cost of remedying specific historical defects, particularly those relating to fire safety. The extent of protection depends on factors such as the value of the lease, the ownership structure of the building, and whether the landlord or an associated entity was responsible for the defect.
Landlords must provide formal certification confirming whether leaseholder protections apply. Failure to do so may restrict the ability to recover service charge contributions.
For those asking when the Building Safety Act applies in a remediation context, the answer is often more complex than in the forward-looking construction phase. Historic works may now be assessed against extended limitation periods and new statutory mechanisms.
Extended Limitation Periods and Liability
The Act significantly extends limitation periods under the Defective Premises Act 1972 and related legislation. Claims that were previously time-barred may now be revived.
For new dwellings, the limitation period has been extended to 15 years prospectively. For certain existing buildings, retrospective extension to 30 years may apply. This materially increases litigation risk for developers, contractors and designers involved in historic projects.
In addition, the courts have new powers to make Building Liability Orders, enabling claims to be pursued against associated corporate entities in certain circumstances. This reduces the effectiveness of corporate structuring as a shield against liability.
Building Safety Act 2022 compliance therefore requires careful review of historic portfolios, insurance arrangements and corporate governance structures.
Funding Mechanisms and Cost Recovery
The Act operates alongside government funding schemes aimed at supporting remediation of unsafe cladding and related defects. However, access to funding is subject to eligibility criteria and conditions.
Where public funding is unavailable or insufficient, building owners may seek to recover costs from developers, contractors, product manufacturers or other responsible parties. This often involves complex factual and legal analysis.
From a risk management perspective, organisations should:
- Audit legacy developments for potential exposure
- Review contractual documentation and warranties
- Assess insurance coverage
- Document decision-making around remediation strategy
Best practices for Building Safety Act compliance include proactive engagement with legal and technical advisers to evaluate potential liability before disputes arise.
Enforcement and Consequences: Inspections, Penalties and Criminal Risk
The credibility of the new system depends on meaningful enforcement. The Act equips the Building Safety Regulator and other authorities with enhanced investigative and enforcement powers, reinforcing that Building Safety Act compliance is a statutory requirement with tangible consequences.
For organisations operating higher-risk buildings, regulatory oversight is no longer passive. It is structured, interventionist and supported by criminal sanctions.
Investigatory Powers and Inspections
The Building Safety Regulator has wide powers to request information, conduct inspections and assess whether statutory duties are being fulfilled. This applies both at the design and construction stage and during occupation.
For occupied higher-risk buildings, the Regulator may call in a building for formal assessment and require submission of a safety case report. Failure to provide requested information, or providing incomplete or misleading material, may itself constitute an offence.
Routine compliance should therefore be treated as inspection-ready. Information governance, decision-making records and documented risk assessments may be scrutinised at any time.
Compliance Notices and Remedial Action
Where the Regulator identifies non-compliance, it may issue compliance notices requiring specified steps to be taken within a defined timeframe. In more serious cases, it may issue stop notices preventing further work until deficiencies are remedied.
In the occupation context, failure to register a higher-risk building or to maintain adequate safety management arrangements can result in enforcement action, including restrictions on occupation.
These powers reinforce the importance of understanding when the Building Safety Act applies and ensuring that internal systems are aligned with statutory expectations.
Criminal Liability
The Act introduces criminal offences for certain breaches. These include:
- Failure to register an occupied higher-risk building
- Failure to comply with compliance notices
- Knowingly or recklessly providing false or misleading information
- Breach of specific duties imposed on Accountable Persons
Importantly, offences may be committed not only by corporate entities but also, in certain circumstances, by individual officers where consent, connivance or neglect can be demonstrated.
This elevates Building Safety Act 2022 compliance from an operational issue to a board-level governance concern. Directors and senior managers must be able to evidence oversight, appropriate delegation and structured monitoring.
Reputational and Commercial Risk
Beyond statutory penalties, enforcement action carries significant reputational and commercial consequences. Regulatory intervention can affect funding arrangements, insurance premiums, asset value and stakeholder confidence.
In a market increasingly focused on safety assurance and transparency, demonstrable compliance is likely to form part of due diligence in transactions, refinancing and portfolio management.
For organisations seeking best practices for Building Safety Act compliance, the objective should not simply be to avoid sanction. It should be to establish defensible, well-documented governance structures capable of withstanding scrutiny from regulators, residents and commercial counterparties alike.
Compliance in Practice: A Readiness Checklist for Owners, Developers and Project Teams
Understanding the statutory framework is only part of Building Safety Act compliance. The more difficult task is translating legislative requirements into operational systems that withstand scrutiny at Gateway stages, during occupation and, if necessary, in enforcement proceedings.
While every organisation’s structure will differ, the following readiness themes provide a practical framework for assessing compliance maturity.
1. Scope Assessment and Building Identification
Misclassification of buildings is one of the most common early compliance risks. A defensible scope assessment should be retained and periodically reviewed.
- Have you undertaken a documented review of your portfolio to determine when the Building Safety Act applies?
- Have higher-risk buildings been clearly identified and, where required, registered?
- Is there a clear audit trail explaining how scope determinations were reached?
2. Clear Allocation of Responsibility
Building Safety Act 2022 compliance depends on clarity. Ambiguity in responsibility can undermine both operational control and regulatory confidence.
- Are dutyholder roles during design and construction expressly identified in appointments and contracts?
- For occupied higher-risk buildings, has the Accountable Person and, where necessary, the Principal Accountable Person been formally designated?
- Is there documented evidence of competence within those roles?
3. Gateway and Change Control Management
Projects should not treat Gateway submissions as administrative hurdles. They require coordinated design, evidence of compliance and disciplined documentation.
- Are Gateway approval requirements embedded within project programmes?
- Do internal change-control procedures align with statutory change requirements for higher-risk buildings?
- Is regulatory engagement documented and traceable?
4. The Golden Thread and Information Governance
Effective information management is central to best practices for Building Safety Act compliance. Systems should be capable of supporting safety case preparation and resident information requests without retrospective reconstruction.
- Is safety-critical information maintained digitally, securely and in a structured format?
- Can key design decisions, material specifications and construction changes be traced?
- Are handover procedures aligned with occupation-stage obligations?
5. Occupation-Stage Safety Management
Compliance during occupation is ongoing. It requires governance structures that extend beyond facilities management and into formal risk oversight.
- Has a safety case framework been established for each higher-risk building?
- Are risk assessments reviewed regularly and triggered by defined events?
- Are mandatory occurrence reporting procedures documented and understood?
6. Resident Engagement and Complaint Handling
Engagement obligations are statutory. They must be treated as part of the compliance framework rather than informal customer communication.
- Is there a compliant resident engagement strategy in place?
- Are procedures for raising and escalating concerns clearly communicated?
- Are responses and outcomes recorded?
7. Legacy Risk and Remediation Review
Portfolio-wide review is often necessary to understand retrospective exposure under the Act.
- Have historic developments been reviewed in light of extended limitation periods?
- Is potential exposure under the Defective Premises Act or related claims assessed?
- Are remediation decisions documented and supported by technical advice?
Getting Support Right: Governance, Documentation and Regulator Engagement
For many organisations, the challenge of Building Safety Act compliance is not conceptual but structural. The statutory duties are clear; the difficulty lies in embedding them within governance frameworks, documentation systems and decision-making processes that operate consistently over time.
Sustainable compliance requires more than isolated policy updates. It demands integrated oversight across legal, technical and operational functions.
Governance at Board and Senior Management Level
The enforcement framework makes clear that building safety is a leadership issue. Senior management should:
- Receive regular reporting on higher-risk building status
- Oversee scope assessments and registration compliance
- Review safety case preparedness and risk trends
- Monitor remediation exposure and litigation risk
Formal governance structures – including documented reporting lines and delegated authority matrices – help demonstrate that compliance is not incidental but strategically managed.
In the context of Building Safety Act 2022 compliance, board-level visibility is increasingly important given the potential for criminal liability in cases of consent, connivance or neglect.
Structured Documentation and Audit Trails
Regulatory scrutiny will often focus not only on what decisions were taken, but how and why they were taken. Organisations should therefore ensure that:
- Key safety decisions are recorded with supporting rationale
- Change approvals are traceable
- Competence assessments are documented
- Resident engagement activities are logged
The golden thread should operate as a structured evidence base, capable of supporting safety case submissions, responding to resident information requests and demonstrating compliance during inspection. Where documentation is fragmented or retrospective, regulatory confidence may be undermined.
Proactive Regulator Engagement
The Building Safety Regulator has been established not merely as an enforcement body but as a supervisory authority shaping standards across the sector. Early, transparent engagement can mitigate risk.
Organisations should consider:
- Seeking clarity on novel or complex issues before Gateway submission
- Responding promptly and comprehensively to information requests
- Treating regulatory interaction as part of governance rather than dispute
A cooperative stance does not remove legal risk, but it may influence regulatory approach and outcome.
Building Safety Act Legal Advice
The Building Safety Act introduces a fundamentally different model of accountability for higher-risk residential buildings. It requires clarity of responsibility, structured oversight at Gateway stages and sustained safety management during occupation.
At the centre of this law change is the golden thread: accurate, accessible and continuously maintained information that enables risks to be understood and controlled. Without it, meaningful compliance is difficult to evidence.
For owners, developers and project teams, the “golden thread” is both a technical tool and a governance principle. It reflects the core message of the Act: safety must be demonstrable, traceable and actively managed throughout a building’s lifecycle.
For organisations navigating Building Safety Act compliance, the focus must extend beyond procedural approval. It requires integrated governance, disciplined documentation and proactive engagement with the Building Safety Regulator and residents alike.
If you are reviewing your compliance framework, preparing for Gateway approval, or assessing occupation-stage obligations, specialist legal advice can help clarify responsibilities and reduce regulatory risk. Witan’s team of construction law experts can support you in developing a structured, defensible approach to Building Safety Act compliance.

