Let anyone at your venue report a hazard from the sign-up page — with photos and a voice message — and triage every report in one queue.
Every sign-up page (the page a QR poster opens) can carry a second capability: Report an issue. Anyone who scans the poster — signed up or not — can describe a hazard, damage or behaviour that concerns them, and it lands in a Security Operations queue rather than in somebody's inbox. The reporter walks away with a reference like IR-7KQ4XN, chosen so it reads cleanly over a radio.
security_ops.view; triaging needs security_ops.manage. Report forms are built by anyone holding security_ops.manage or messaging.manage.A report form is a reusable question set, attached to a sign-up link. Build one from the recipient-list screen, with a live preview of the real public page beside it. Every form has exactly one free-text "what happened" question; you can add a category chooser, a location question (with an optional one-tap GPS button), multiple choice, numbers and extra text questions — up to sixteen. Choose whether the reporter's name and contact details are never asked for, optional, or required.
Deleting a form never breaks a printed poster: the page quietly goes back to offering sign-up only. And every answer is stored with the question it was actually asked, so editing a form never rewrites past reports.
A form's Attachments panel adds two things to the public page. Photos — choose how many a reporter may attach, up to four. Voice messages — pick the room recordings should land in, and the page gains a recorder: sometimes it is easier to say it than to type it. A recording can stand in for the written account entirely — a report needs the typed "what happened" answer or a voice message, never necessarily both, and a voice-only report shows the recording's summary in the queue. Attachments are only sent when the reporter taps Send report, and the page says so in as many words.
Open Security Operations → Issue Reports. Reports arrive newest first, and the sidebar badges the open count. A report moves through new → acknowledged → in progress → resolved (or dismissed), can be assigned to a person, and carries a running history of every change. Priority is set here, by you — never by the reporter, because a public form where anyone can assert urgent would sort the queue by confidence rather than risk.
Every new report notifies whoever holds security_ops.manage (tenant admins as the fallback), with a link straight to the report.