ESRS G1: Business Conduct·Disclosure Requirement G1-2
Actions (Business Conduct)
Guía práctica para preparar esta divulgación. Use esta ficha para identificar la información a preparar, verificar afirmaciones y organizar la evidencia de soporte. Para los requisitos exactos, consulte siempre la fuente oficial de European Commission.
Pasaporte publicado
Revisión pendienteNorma
ESRS G1: Business Conduct
Disclosure Requirement G1-2 · 2026-5010-final
Última revisión
—
Material formativo de LRA · No emitido ni avalado por European Commission
Foco de la divulgación
This disclosure asks an organisation to explain the main actions it is taking to prevent, detect, address and improve business conduct issues. In practice, that means describing the measures in place, how they are implemented, and what parts of the organisation they cover, rather than only listing policies or commitments.
The practical focus is on whether those actions are embedded across the business and value chain, or limited to a few flagship sites or functions. Report the scope, the type of action, and where it applies, so a reader can see how consistently the organisation is managing business conduct in day-to-day operations.
Este material formativo de LRA apoya la preparación de la divulgación. Para los requisitos exactos, consulte siempre la fuente oficial de European Commission.
Antes de empezar
Antes de empezar
Una breve lista de comprobación antes de preparar esta divulgación: marque cada punto a medida que lo resuelva.
Preparación
Información clave que preparar
| Campo de preparación | Qué recopilar | Pista de evidencia | Responsable |
|---|---|---|---|
| Actions taken | A plain summary of the steps the organisation has put in place in response to the issue, written as completed actions rather than plans. | Action log, project tracker, management updates, or board papers showing the measures approved and implemented. | Sustainability / responsible business team |
| Prevention measures | The specific controls, policies, or changes introduced to stop the issue happening again, described as preventative steps already in use. | Policy updates, control design documents, risk register entries, or process change records. | Risk / compliance team |
| Monitoring actions | The checks, reviews, or tracking activities used to watch for the issue and spot recurrence, including how often they run. | Monitoring schedules, dashboard outputs, review minutes, or assurance reports. | Internal audit / risk team |
| ESG criteria used | Whether environmental, social, and governance factors were part of the selection approach, captured as a simple yes/no based on the actual process used. | Investment policy, selection memo, screening checklist, or committee paper showing the factors applied. | Investment / procurement team |
| Selection method | A short description of how the organisation chose the relevant items, including the decision rule or screening approach used in practice. | Methodology note, selection criteria document, scoring model, or approval paper. | Investment / procurement team |
| Training provided | Whether training was actually delivered for the relevant topic, recorded as yes/no for the reporting period. | Training register, attendance records, LMS completion report, or trainer sign-off. | Learning and development |
| Training coverage | The share of the intended audience that completed the training, calculated from the correct population and period. | Training completion report, headcount list for the target group, and the calculation file used for the percentage. | Learning and development |
| Training hours | The amount of training time delivered, stated in a way that makes clear whether it is total hours, average hours, or another measure used internally. | Course timetable, LMS records, attendance sheets, or training summary report. | Learning and development |
| Supplier engagement | The programmes or activities used to work with suppliers on the topic, described in practical terms rather than as a policy statement. | Supplier programme plan, outreach records, workshop materials, or supplier communications. | Procurement / supplier management |
| Suppliers in scope | Which suppliers were included in the engagement or review, with the basis for inclusion and the relevant count or grouping. | Supplier list, segmentation file, contract register, or programme scope note. | Procurement / supplier management |
| Engagement results | The outcomes from supplier engagement, including what changed, what was agreed, or what follow-up was triggered. | Meeting notes, action trackers, supplier responses, or programme evaluation summary. | Procurement / supplier management |
| Defined procedures | The formal steps the organisation has set out for handling the matter, including who does what and when. | Procedure document, workflow map, control manual, or policy annex. | Operations / compliance team |
| Tracking systems | The systems or tools used to record, follow, and review the matter, including the main source of record. | System screenshots, system description, data dictionary, or process map showing the tracking tool. | IT / data owner |
| Investigation process | How suspected issues are reviewed, escalated, and closed out, including the steps used to investigate each case. | Case management procedure, investigation workflow, escalation matrix, or investigation log. | Compliance / investigations team |
| Training coverage | The percentage of the intended audience that received the required training for this topic, using the correct target group and reporting period. | Training completion report, target-role list, and calculation workbook. | Learning and development |
| Target roles | The job roles or functions that the training is meant for, stated as the actual audience rather than a generic staff group. | Training plan, role matrix, policy requirement, or LMS audience settings. | Learning and development |
| Breaches found | The instances where the rule or procedure was not followed, including the number or description of the breaches identified. | Incident log, compliance register, investigation records, or audit findings. | Compliance / internal audit |
| Corrective actions | The steps taken after a breach or issue was found, including remediation, follow-up, and any process change. | Corrective action tracker, incident closure notes, management response, or remediation plan. | Compliance / operations team |
| Disciplinary outcomes | Any formal people-management measures applied after a breach, described in a way that reflects the actual outcome taken. | HR case records, disciplinary log, investigation outcome letter, or employee relations file. | HR / employee relations |
Cómo prepararlo
Solicitar los datos
Request the business conduct actions log and supporting evidence
Traduzca la divulgación a una pregunta de negocio interna y adáptela después al lenguaje propio de su organización.
What actions, controls and follow-up activity has the organisation put in place to prevent, monitor and address business conduct issues, and what supporting records show how these were applied in practice?
Use the organisation’s own names for policies, controls, training, monitoring, investigations and disciplinary steps first, then map them to the disclosure. Keep the request in business language that the owner already uses internally, and check the source material before sign-off.
Solicitud débil
Please provide the ESRS G1-2 actions, prevention measures, monitoring actions, ESG criteria used, training coverage, engagement programmes, procedures, monitoring systems, investigation processes, breaches identified, actions taken and disciplinary measures.
Por qué falla: This is too close to framework wording and bundles many labels without telling the owner what internal records to pull. It does not ask for the organisation’s own terms, source systems, boundary or evidence trail, so the response is likely to be incomplete or hard to map.
Solicitud mejor
Please send the conduct actions log and the supporting records for [period] from your team’s normal systems. Include the steps already in place to prevent issues, the checks or reviews used to spot problems, any training or supplier engagement activity, and any case outcomes or follow-up actions. Use your own internal labels first, then we will map them to the reporting categories.
Plantilla de correo formal
Subject: Request for business conduct actions evidence for [reporting period]\n\nHello [name/team],\n\nWe are preparing the sustainability reporting pack and need your help with the business conduct actions section for [reporting period].\n\nPlease send the information and supporting records for the areas you own, using your normal internal terms where possible and then mapping them to the reporting categories. We are looking for:\n- the actions already put in place\n- the steps used to prevent issues\n- the monitoring or review activity carried out\n- any training, engagement, investigation or follow-up activity linked to conduct matters\n- any breach findings and the actions or disciplinary steps taken\n\nPlease include the context fields below in your response: [period], [boundary], [source system], [internal category names], [action type], [population covered], [measurement basis], [evidence status], [owner and approver], [supporting artefacts].\n\nIf you have multiple records, a simple table is fine. Please attach the underlying evidence where available. If anything is unclear, we can work through the mapping together.\n\nPlease reply by [date]. This is a training template only; adapt it to your organisation and check the source material before sign-off.\n\nMany thanks,\n[preparer name]
Versión corta para Teams / Slack
Hi [name/team] — could you share the business conduct actions evidence for [period]?\n\nPlease use your usual internal terms and include: actions in place, prevention steps, monitoring/review activity, training or engagement, investigation follow-up, and any breach outcomes or disciplinary steps.\n\nA table plus supporting files is fine. Please add [boundary], [source system], [owner], [status] and [evidence links]. We’ll map it to the reporting categories afterwards. Thanks.
Ejemplos sectoriales
Manufacturing
Contexto. A group with a central ethics team and plant-level compliance leads wants evidence on conduct controls across factories and procurement.
Solicitud adaptada. Please share the conduct controls pack for [period], including the ethics actions already rolled out, site-level prevention checks, monitoring routines, investigation workflow, training for managers and buyers, and any breach follow-up. Use your site and function names, then we will map them to the reporting categories.
Ejemplo de respuesta. Returned table shows 12 actions in place across 8 sites, 6 prevention measures, 4 monitoring routines, 3 investigation cases, 92% training coverage for targeted roles, and 2 disciplinary outcomes with linked case references and policy extracts.
Financial services
Contexto. A regulated business needs evidence from compliance, risk and HR on conduct training, monitoring and case handling.
Solicitud adaptada. Please provide the conduct programme evidence for [period], including the controls in place, monitoring and review activity, staff training for targeted roles, any engagement with third parties, and the outcomes of any investigations or disciplinary cases. Please use your internal control names and case categories.
Ejemplo de respuesta. Returned pack includes a control register, quarterly monitoring dashboard, training tracker for 1,240 targeted staff, supplier engagement notes for 18 counterparties, and a case log showing 5 breaches identified, 5 actions taken and 2 disciplinary outcomes, each with evidence references.
Redacte su divulgación
Notas que convierten los datos en una divulgación
Plantillas formativas de LRA: adáptelas a su organización y consulte la fuente oficial antes de la aprobación.
Nota metodológica
State how the organisation defined the relevant scope, what it counted as an action, training, engagement, procedure, monitoring step, or investigation step, and how it determined the basis for any percentages or selections reported.
Nota de contexto
Explain what the figures show about how the organisation manages the issue in practice, including the extent of implementation, the reach of training, the scale of supplier engagement, and whether the control framework is in place.
Declaración sobre las variaciones
If any figures changed materially, note whether that was driven by a wider rollout of controls, a change in the number of people or suppliers covered, a revised selection approach, or a shift in the amount of activity recorded.
Entrada del índice de contenidos
G1-2 Actions (Business Conduct) — [location / page] / [notes]Centro de descargas
Herramientas y formularios de preparación
Herramientas profesionales de preparación para G1-2 — gratuitas con la membresía de LRA Community. Regístrese una vez (es gratis) y se desbloquean todas las descargas, junto con la Biblioteca de divulgaciones, las plantillas y el asistente de IA de LRA.
Preparación para el aseguramiento
Para cada afirmación, compruebe la evidencia
| Afirmación | Riesgos | Evidencia que comprobar |
|---|---|---|
| We linked the supplier-related actions in this section to the supplier-code material already explained elsewhere in the report, so readers can trace the connection without duplication. | The cross-reference may be incomplete, point to the wrong place, or imply coverage that is not actually supported by the other disclosure. | The final report cross-reference map; the linked supplier-code disclosure; drafting notes showing why the link was made; reviewer sign-off confirming the referenced material matches the claim. |
| We set out the steps we took after any breach or suspected breach of our anti-bribery or anti-corruption rules, using incident records and follow-up actions rather than general policy language. | The narrative may describe policy intent but not actual response actions, or it may overstate how consistently incidents were handled. | Case files for breaches or allegations; investigation logs; remediation plans; disciplinary or corrective-action records; approval notes showing the published wording matches the underlying evidence. |
| We described the anti-bribery and anti-corruption learning given to the roles we judged most exposed, including senior oversight groups and operational managers, and we based the wording on attendance and training records. | The report may overstate who was trained, omit the highest-risk roles, or rely on a training plan rather than completed delivery. | Training matrix by role; attendance logs; course content; completion reports; role-risk assessment used to decide the audience; sign-off that the published description matches the records. |
| We summarised the main business-conduct actions we have started or plan to start, and we included when each step is due, where it applies, and what result we expect from it. | The disclosure may be too vague on timing, coverage, or expected effect, or it may mix completed work with future plans without making that clear. | Action plan or roadmap; milestone tracker; scope notes; expected-outcome statements; management review papers showing the published summary reflects the underlying plan. |
| We explained how we worked with suppliers to lift their sustainability performance, and we supported that wording with supplier engagement records rather than broad statements about partnership. | The report may claim improvement work without evidence of actual supplier engagement, or it may describe commercial contact that did not address sustainability performance. | Supplier meeting notes; improvement plans; correspondence; scorecards or follow-up trackers; internal approvals confirming the published wording is limited to evidenced engagement. |
| We described the controls and follow-up steps we use when corruption or bribery concerns arise, covering prevention, spotting issues, investigation, and response, and we checked that the wording matches our actual process. | The disclosure may omit one stage of the process, describe a process that is not operating in practice, or overstate the maturity of controls. | Policy and procedure documents; incident-handling workflow; investigation templates; escalation logs; audit or testing results; management confirmation that the published description reflects current practice. |
Paquete de evidencia que preparar
Carencias habituales en los informes
Carencias habituales
Errores que evitar al recopilar los datos
Dónde suele hacer falta juicio profesional
Ejemplos
Ejemplos ilustrativos
Sintéticos, redactados por LRA: no proceden del informe de ninguna empresa ni del texto de ninguna norma.
We are using this synthetic example to show how our group could describe its approach to business conduct oversight. - We have put in place a supplier code, a gifts-and-hospitality rule, and a third-party due-diligence check; we also run periodic reviews to spot issues early and track whether the controls are working. - For supplier screening, we do use environmental, social and governance factors, applying a risk-based scoring method that gives extra weight to higher-spend and higher-risk categories; we also provide anti-bribery and conduct training to 1,260 of 1,500 relevant staff (84%), totalling 2,520 hours. - Our supplier outreach covered 180 of 240 active suppliers (75%); the programme led to 34 corrective plans, 12 supplier exits, and no confirmed cases of repeat non-compliance at year end. - We have defined escalation steps, a case-tracking system, and a formal review route for allegations, with monthly monitoring by compliance and internal audit.
Synthetic illustration only; figures and processes are invented for training purposes and are internally consistent.
This is a synthetic example showing how our group could explain its business conduct controls in plain language. - We introduced a tenant-and-vendor integrity policy, a conflicts register, and spot checks on higher-risk relationships; these are supported by routine monitoring so we can see whether the controls are being followed. - We do use environmental, social and governance factors when choosing service partners, using a weighted review that favours suppliers with stronger labour, safety, and ethics records; we trained 420 of 500 relevant colleagues (84%), for 1,050 hours in total. - Our engagement work reached 96 of 120 suppliers (80%) and produced 19 remediation plans, 7 contract renewals with conditions, and 4 supplier removals after unresolved issues. - We have set out reporting steps, a monitoring platform, and an investigation workflow for concerns, with quarterly oversight by compliance and risk teams.
Synthetic illustration only; figures and processes are invented for training purposes and are internally consistent.
Informes de empresas
Cómo informan las empresas sobre G1-2 en la práctica
Ejemplos de práctica de reporte completa y parcial. Son análisis basados en evidencia, no plantillas exactas para copiar.
Pregunte al asistente de IA de Study Studio sobre esta divulgación
Obtenga respuestas prácticas para su contexto de reporte. Las dos primeras respuestas son gratuitas: únase gratis a LRA Community para continuar sin límite.
Compruebe su comprensión
Escenarios para trabajar
A preparer is drafting the year-end note on business conduct actions. The company has rolled out a new anti-bribery process, a supplier engagement programme, and a whistleblowing review workflow, but the draft only says 'we improved controls' without naming what was done.
A company used a mix of ethics, sustainability and supplier-risk factors to choose which staff and suppliers received extra conduct training. The draft report says the selection was based on 'relevant criteria' but does not explain how the group was chosen.
A procurement team ran a supplier conduct programme for 180 suppliers. The draft says 180 suppliers were contacted, but it does not say what changed as a result, and the only training figure available is that 144 staff attended a session out of 160 in scope.
A compliance team has a hotline, a case-tracking tool and a disciplinary process for conduct breaches. During the year, 12 breaches were confirmed, 9 led to retraining, and 3 led to formal sanctions, but the draft only mentions the hotline and omits the follow-up steps.
Referencias del marco
Requisitos aplicables de ESRS y divulgaciones relacionadas
Referencias disponibles del marco y divulgaciones cercanas relevantes para preparar este requisito.
ESRS
G1-2
dentro de ESRS G1: Business Conduct
Relacionado y explorar
Más en ESRS G1 → Ver el catálogo completo → Inicio de la Biblioteca de divulgaciones → Buscar en todas las divulgaciones →
Preguntas frecuentes
Preguntas que responde esta página
Start with the page’s plain-language explainer and the step-by-step preparation section, then work through the listed datapoints. The page is designed to help you turn those inputs into a draft disclosure rather than to act as an official standard.
The page lists the main datapoints to prepare, including actions taken, prevention and monitoring measures, ESG criteria used, training data, supplier engagement, defined procedures, breaches found, corrective actions and disciplinary outcomes. Use that list as your collection checklist before drafting.
Use the page’s preparation guidance and the datapoints that refer to coverage, such as training coverage, suppliers in scope and target roles. The page is meant to help you define what is included in your own reporting set before you draft the narrative and table.
The page is aimed at sustainability and ESG managers, HR or data owners, and assurance reviewers, so ownership should sit with the people who can evidence the datapoints and explain the methodology. The workbook and evidence-pack sections are there to help those owners coordinate the draft and support review.
The page includes an evidence pack with five items to support assurance readiness, alongside six assurance claims to verify. Use those materials to assemble proof for the claims, the data points and the way the disclosure was prepared.
The page has a section on common reporting gaps and mistakes, so it is intended to help you spot missing data, weak scope choices and unsupported claims before finalising the disclosure. It also points you back to the evidence pack and workbook so you can check the draft against your source material.
The Download Centre includes a Prep & Assurance workbook in .xlsx format to help you organise the disclosure inputs and assurance checks. Use it with the page’s datapoint list, assurance claims and evidence-pack guidance to build a more complete draft.
The Download Centre also includes a printable Library Card in .pdf format, which is there as a quick reference while you prepare the disclosure. It sits alongside the workbook and the page guidance so you can keep the key points to hand during drafting and review.
Yes, the page includes synthetic illustrative example disclosures, including a quantitative table where relevant, to show how the information can be turned into a draft. Treat them as examples only and make sure your own figures and wording stay internally consistent.
The page has a draft-output section with visualisation ideas, narrative starters and a content-index line. That makes it easier to convert your collected datapoints into a structured draft rather than starting from a blank page.
Más preguntas con las que puede ayudar esta página
Profundizar · G1-2
Aprenda a preparar esta divulgación de principio a fin
This guide covers one Disclosure Requirement. The ESRS / CSRD Reporting course walks the full European workflow — double materiality, datapoints, evidence and assurance — with exercises on your own data.
Available as Guided Flex, Live Cohort, 1:1 Expert Mentorship or Corporate Programme.
Consiga sus herramientas para G1-2 — gratis
Sus herramientas de preparación son gratuitas para los miembros de LRA Community y los estudiantes. Regístrese una vez (es gratis) y su descarga comenzará de inmediato, además de la Biblioteca de divulgaciones, las plantillas y el asistente de IA de LRA.
Ya está: su descarga está comenzando
Su archivo se está descargando. Su Cabinet de Community — con la Biblioteca de divulgaciones, las plantillas y el asistente de IA de LRA — también está listo.
Abrir su Cabinet →