Publishing a Policy

Last updated: March 25, 2026

Publishing turns a draft into the official, current version of the policy. Published policies are visible to auditors, tracked by the associated policy tests, and available for export.

Only policy owners can publish. To publish a policy:

  1. Open the Policy detail page.

  2. In the Versions tab, select Edit & Publish on the Draft card to open the editor.

  3. Before publishing, confirm that:

    • You are an owner.

    • All required sections have content.

    • If reviewers are configured: all reviewers have signed off (the reviews complete counter in the header shows full completion).

  4. Select Save & publish in the editor header.

If Save & publish is disabled, hover over it to see a tooltip explaining what needs to be addressed, such as missing content, a missing owner, or pending reviews.

Reviewer signoff

If reviewers are assigned to the policy, the editor header shows a counter such as "0/3 reviews complete" and a Mark as reviewed button. The Save & publish button remains disabled until all reviews are complete.

The Mark as reviewed button is only visible to users who have been assigned as reviewers for that policy. If you are a reviewer:

  1. Open the draft in the editor.

  2. Read through the policy content.

  3. Select Mark as reviewed in the header.

Publishing a Policy.png

After all reviewers have signed off, Save & publish becomes active.

Note: If anyone edits the policy after reviewers have signed off, all approvals are cleared and reviewers must sign off again before publishing. This ensures the final published text is always the version that was reviewed.

Once published:

  • The draft becomes the new Latest version on the Versions tab.

  • The policy status updates to Published.

  • The policy is available for export and is tracked by its associated policy tests.