Skip to main content

Policy Tasks and the Policy Audit Trail

Work through open policy tasks, review scan feedback, and see every change made to your AI Policies.

Written by Austin Carroll

The Policy tasks & audit trail page is where admins keep their AI Policies healthy. The top of the page lists open work Warrant has raised about your policies. Below it, you can see how your team has rated scan findings and a full record of every policy change.

Where to find it

  1. In the left sidebar, click Settings.

  2. Under Compliance, click Policy tasks & audit trail.

You can also search Settings for "tasks", "audit" or "history". Older links to the audit trail page now open this page.

What is a policy task?

A policy task is a suggestion that one of your policies needs a look. Warrant creates tasks automatically, so you don't need to set anything up. The Action Items list shows each open task with when it was raised, a short description, and the policy it relates to. The Pending count shows how many are open.

You'll see these kinds of tasks:

  • A policy is frequently marked not relevant. When reviewers repeatedly mark findings from the same policy as not relevant, Warrant suggests you review that policy. It may be too broad for your content, or not apply to your business at all.

  • A regulation you customized has been updated. If you have customized one of Warrant's built-in regulations and the original is later updated, Warrant asks you to check that your version is still aligned.

Super admins also get a notification when a new task is created. Clicking it opens this page.

Work a task

  1. Find the task in the Action Items list. Click the Date column header to switch between newest and oldest first.

  2. Click the button on the right of the task:

    • Review Changes opens the updated policy on the AI Policies page so you can compare it with your customized version.

    • Review Feedback scrolls down to the feedback and audit trail on the same page, so you can see what reviewers said about the policy.

  3. Make any changes you need. For example, edit the policy, lower its risk level, or disable it on the AI Policies page.

  4. Back on this page, hover over the task and click the check mark (Dismiss) to clear it from the list.

When there's nothing left to do you'll see All caught up!

Scan feedback summary

When reviewers give thumbs up or thumbs down on scan findings, the Scan feedback summary shows the totals for each policy, with Relevant and Not Relevant counts. Expand a policy to see the individual findings and votes. Votes are counted per policy, for your company only. Repeated "not relevant" votes on a policy make Warrant apply it more strictly, and can lead to its new findings being dismissed automatically.

  • Search by policy, or filter by regulator or by Mostly Relevant / Mostly Not Relevant.

  • If Warrant is applying some policies more strictly because of your feedback, a banner lists them. Click a policy name to open it.

  • Click Download Report to export the summary as a CSV file.

What the policy audit trail records

The Policy audit trail is a chronological log of policy changes, newest first. Each entry shows who made the change, what they did, the policy it applied to, any note they left, and the date. Entries include:

  • Policies added, edited, deleted, or customized

  • Policies enabled or disabled, one at a time or in bulk

  • Risk level changes, including the old and new level

  • Policies restored to their default

  • Relevancy feedback on scan findings

Changes made automatically by Warrant show System as the user.

Filter and export the audit trail

  1. Narrow the list with the filters above it: All users, All policies, All Actions (Enabled, Disabled, Added, Edited, Deleted, Customized, Restored, Risk Level or Feedback), and a From / To date range.

  2. Click Clear to reset the filters.

  3. Click Download CSV to export the entries you're viewing. The file includes the date, user, action, policy and note for each entry.

The export follows your filters, so set them first if you only need a specific period or policy for an audit. The page shows the most recent 200 policy changes.

Who can use it

This page is available to admins, including people with a capability-based admin role such as Compliance Admin. Giving thumbs up or down on scan findings needs the Relevancy Feedback permission.

Did this answer your question?