Getting Started
Core Features
How-To Guides
Configuration
Troubleshooting
Integrations
Policies are central to managing your organization's rules, guidelines, and compliance requirements. This feature allows you to create, manage, and track various policies, ensuring your organization adheres to internal standards and external regulations like SOC 2, ISO 27001, and GDPR.
You can maintain different versions of each policy, allowing for drafting, review, and publication workflows. The system also offers an AI assistant to help you refine and improve your policy content, making compliance management more efficient.
Before you start, it's helpful to understand a few key terms:
This section covers how to create, view, update, and delete your organizational policies.
To see a list of all policies in your organization:
You can create a new policy from scratch.
Draft.Yearly).You can modify a policy's general information at any time.
If a policy is no longer needed, you can delete it.
Deleting a policy will remove it and all its associated versions from the system. This action cannot be undone. Consider archiving policies instead of deleting them if you need to retain historical records.
You can generate a single PDF document containing all your organization's published policies.
This feature is useful for audits, compliance checks, or providing a comprehensive policy manual to new employees.
Policies evolve over time. Version control allows you to track changes, draft new updates without affecting the live policy, and maintain a history of all revisions.
To see all versions associated with a specific policy:
You can create a new version, often based on an existing one, to make updates without altering the currently active policy.
sourceVersionId to copy content from an earlier version. If not specified, a new empty version might be created or it might copy from the active version.Once a new version is created (or if you're editing an existing draft), you can modify its content.
When a policy version is ready for official release, you can publish it.
You can designate any published version as the current active policy.
If your workflow requires formal approval, you can submit a version for review.
Approver ID (the user who needs to approve this version).Needs Review.You can delete specific versions of a policy, especially if they are drafts or no longer relevant.
You typically cannot delete an active or published policy version directly. You may need to unpublish it or set another version as active first.
The AI assistant can help you draft, refine, and ensure the compliance of your policies. It acts as an expert GRC (Governance, Risk, and Compliance) editor.
The AI will stream its response, acting as a GRC expert. It can:
When the AI suggests changes to the policy content, it will first explain what changes it will make and why. Then, it will provide the COMPLETE updated policy content within a code block labeled policy. You should copy this entire block to replace your current policy content.
policy code block, copy the entire content from that block.Here's a quick reference for the various attributes you can set for your policies and their versions.