Framework Controls
Manage compliance controls across SOC 2, ISO 27001, HIPAA, PCI DSS, and ISO 42001 with per-product scoping, evidence linking, AI suggestions, and cross-framework mappings.
Evidence Library
Upload, track, and manage compliance evidence with validity periods, collection cycles, framework coverage tracking, AI control suggestions, and expiration-driven task generation.
Recurring Activities
Schedule and track recurring compliance activities with occurrence-based workflows, Kanban and calendar views, AI evidence suggestions, framework control mappings, and auto-filing evidence on completion.
Policies
Draft, review, publish, and track organizational security and compliance policies with rich text editing, review cadences, framework control mappings, employee acknowledgment tracking, and AI-assisted review.
Assessments
Plan, execute, and report on internal audits, external audits, and gap assessments with a full-page workspace, evidence snapshots, findings tracking, DRL management, team collaboration, and AI-assisted evidence review.
Regulatory Register
Track applicable regulations with compliance status tracking, review scheduling, assignee management, summary statistics, and a regulatory updates feed with AI-classified alerts filtered by your organization's industry and jurisdiction profile.
Trust Center
Build a public-facing trust center with a drag-and-drop section editor, 16 section types, gated document access with NDA workflows, auto-approve rules, custom branding and domain, version history, sub-processor disclosures, vulnerability disclosure program, uptime monitors, and inbound questionnaire intake.
Inbound Questionnaires
Manage security questionnaires submitted by customers -- upload, parse, AI-generate responses from your Knowledge Base, review, and deliver completed questionnaires.