Policy Acknowledgement Centre
The Policy Acknowledgement Centre is a free tool that lets you publish a policy, track who has read it, and export the evidence when an auditor asks. It deploys into your own Microsoft 365 in about an hour and keeps one current version of each policy, with a date on it.
- Deploys in about an hour
- Runs in your own tenant
The job it does
Publish a policy, track who has read it, and export the evidence at audit time.
What this does for your AI
Current policy, one version, with a date on it.
Where it leads
Where you want the full picture rather than one slice of it, this is the Custom Operational Apps engagement.
Deploys in about an hour into your own Microsoft 365 tenant, on the licences you already hold. Nothing leaves your environment and there is nothing to buy.
How to read what it finds: Proving a policy was read →
Common questions
01. What does it write to our tenant?
One record per person per policy version: who, which version, and when. The policy documents themselves stay where you publish them and are never modified by it.
02. What counts as having read a policy?
Opening the current version and confirming it. Publish a new version and the confirmation is asked for again, while earlier records stay against the version they were given for.
03. Can we export the evidence for an auditor?
Yes. The record is a SharePoint list, so it exports to Excel or CSV filtered to one policy, one version or one date range — which is the form an auditor asks for it in.
04. What permissions does the Policy Acknowledgement Centre need?
Site owner once, to install it. After that staff need read on the policy library and contribute on the acknowledgement list, both of which the install sets up.
05. Is the Policy Acknowledgement Centre a trial for something paid?
No, and there is no paid version of the centre. Where acknowledgement is one control inside a wider compliance process, that is a Custom Operational Apps engagement.