Know what you have
See the documents, versions and owners that make up your governance library.
Policy Vault · Governance that stays current
Know what is approved, where coverage is missing and who needs to act. Policy Vault connects your governance inventory to review, publication and attestation, so the policy stays connected to the people responsible for it.
Built for your institution. Shaped around your data.
Which procurement document still needs an owner?
See the documents, versions and owners that make up your governance library.
Connect obligations to the documents that address them and the gaps that need attention.
Keep approval, publication, attestation and the next review in one accountable lifecycle.
SEE IT IN ACTION
Follow the work from an organised inventory to a commitment people have acknowledged.
Find ownership and version gaps before they become unanswered governance questions.
Interactive example with fictional data. The product’s configuration and interface may differ.
The third-party review procedure has no assigned owner. The supplier onboarding policy already has an accountable owner and a current approved version. Assign the procedure owner before starting its next review.
An organised library makes the next responsibility obvious.
Third-party review procedure · Owner missing
Fictional record for this example.Supplier onboarding policy · Procurement owner assigned
Fictional record for this example.Supplier onboarding policy · Approved version 2
Fictional record for this example.Connect an internal requirement to the document evidence and the action needed to complete it.
Interactive example with fictional data. The product’s configuration and interface may differ.
The policy requires an annual supplier review, but the procedure does not define its schedule or accountable owner. That gap needs a procedure update and review before the documentation can be considered complete.
A coverage finding points to a specific change.
Annual supplier review required
Fictional record for this example.Schedule and accountable owner not defined
Fictional record for this example.Procedure update required · Open
Fictional record for this example.See the difference between a published policy and a completed acknowledgement process.
Interactive example with fictional data. The product’s configuration and interface may differ.
Version 3 is approved and published. Manager acknowledgements are still pending, and the policy owner’s follow-up action remains open. Complete that attestation step before closing the review cycle.
Publication is visible. So is the work that follows.
Access policy version 3 · Approved and published
Fictional record for this example.Managers · Acknowledgement pending
Fictional record for this example.Policy owner follow-up · Open
Fictional record for this example.THE CAPABILITIES BEHIND IT
See the documents you hold, the obligations they address and the work needed to close a gap. Keep the approved commitment, its owner and its lifecycle in one place.
Policy owners, compliance teams, governance functions and accountable business leaders.
Organise policies, standards and procedures by document type, owner, status and review cycle. Establish a clear view of what exists before deciding what needs revision or creation.
Connect governance documents to the obligations and institutional areas they support. Inspect the document map to understand relationships, overlapping material and commitments that need a clear owner.
Assess where the inventory leaves a requirement or governance area without adequate documentation. Record gap findings with the context an owner needs to develop a response.
Use coverage and readiness views to focus review and remediation. Keep the scope, criteria and outstanding findings visible so a summary can be traced to the underlying assessment.
Move from draft to review, approval and publication with explicit responsibilities. Distinguish proposed wording from the approved version and retain the decisions behind a change.
Make approved commitments available through the defined publishing process. Include attestation responsibilities and follow-up in the lifecycle, with review triggers that keep the library current.
Collect the governance documents in scope. Confirm their type, current status, owners and relationships to the institution’s processes.
Review relevant obligations and connect them to the document map. Identify missing coverage and material that needs further assessment.
Assign a policy owner to address a gap or change. Develop the proposed document with the relevant requirements and supporting context.
Resolve reviewer comments and obtain the required approval. Preserve the distinction between proposed changes and the accepted commitment.
Release the approved version through the agreed process and assign the relevant attestation responsibilities.
Follow outstanding actions, review dates and changes that affect the document. Keep the inventory and coverage picture aligned with the current policy set.
YOUR DATA. YOUR DECISIONS.
Use your document hierarchy, approval authority and review cycles as the foundation. Keep the process understandable to owners and readers alike.
Explore the Aliph approachOrganise the library around your policies, standards and procedures, preserving the versions and relationships that matter.
Define who drafts, reviews, approves and attests, including reassignment and the handling of rejected changes.
Review coverage against the requirements your specialists determine apply, with findings that explain the work still needed.
Bring the inventory and representative documents, including drafts and superseded versions. Define document types, ownership and the institutional areas in scope.
Confirm applicable obligations through specialist review. Define coverage criteria, gap categories, approval responsibilities and the rules for publication and attestation.
Prepare the migration and access model, then test a complete policy lifecycle. Establish how findings, actions and related GRC records remain connected as documents change.
What to evaluate. Check inventory completeness, document classification and the reasoning behind coverage findings. Test the full draft-to-attestation lifecycle, including rejected changes, reassignment and a policy update triggered by a new requirement.
A LITTLE MORE CONTEXT
A repository stores files. Policy Vault connects the governance inventory to classification, ownership, obligation mapping, gaps, coverage and the policy lifecycle. The document sits within a process that records what needs attention and who approves the commitment.
They organise the assessment of documents against the requirements and governance scope selected by the institution. The result is meaningful when the criteria, mappings and outstanding findings have been reviewed and can be inspected.
No. A view or label identifies the scope of work; it is not a certification. Specialists determine applicability and assess whether documents, controls and evidence support the institution’s compliance position.
The lifecycle continues through publication, relevant attestations and future review. Owners maintain the approved version and respond to changes, findings or review triggers that require the commitment to be revisited.
Policy Vault supplies the record of institutional commitments. Aliph Risk & Compliance connects those commitments to risks, controls and evidence; Agentic Studio supports draft reporting; AliphChat provides a conversational route into approved information.
YOUR NEXT CHAPTER
We’ll work through its ownership, coverage and approval path, then show how the complete review cycle can fit together.