Compliance
Compliance is the workspace's operational governance surface, covering four areas: Risk Register (documented risks and their mitigations), Incidents (a log of operational incidents and their resolution), Releases (a record of deployments and changes), and Release Builder (a guided workflow for preparing and publishing a release). It gives administrators a structured way to track what could go wrong, what has gone wrong, and what has changed.
Use Compliance when you need to document a new risk the workspace faces, log an incident that affected service, record a deployment, or prepare a formal release for review. It is the right surface for workspaces with formal compliance requirements — SOC 2, ISO 27001, or similar — and for any team that wants an auditable record of operational decisions and events. The Risk Register and Incident log provide the evidence trail; the Releases surface provides the change record.
Open Compliance from the sidebar. The Risk Register tab lists documented risks in a table. To add a new risk, click Add Risk, describe it, assign a likelihood and impact rating, and document the current mitigation. The Incidents tab lists logged incidents in reverse chronological order. Click an incident to see its full record, including timeline and resolution notes. To log a new incident, click New Incident and fill in the details. The Releases tab lists completed releases with their date, scope, and approver. To prepare a new release, use the Release Builder, accessible from the sidebar sub-menu — it walks you through a structured checklist before publishing the release record.