Skip to content
Discussion options

You must be logged in to vote

Policies are managed by the organizations themselves — the owners of the rules stay the owners.

On staying up to date: when a policy changes, we don't update it in place — we create a new version, the way GitHub treats commits and pull requests. The engine automatically knows which version is current at decision time, and the Decision Dossier states exactly which version each decision was evaluated against. An auditor can always trace a decision back to the precise policy text that produced it.

On who writes them: policies differ by vertical but share a common structure. That's why we ship Policy Packs — starter sets per vertical that an organization can bootstrap from and improve on, rat…

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by ocularminds
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant