Skip to content
User Guide

Review → Compliance

The Compliance tab shows recorded fact-policy verdict changes across resources within your compliance access scope. Open Review → Compliance.

Entries use the same presentation as compliance items in resource and location History:

  • Entries are grouped by day, newest first; older entries load as you scroll.
  • Each entry shows the time, resource name, location and number of changed rules.
  • Rules changing at the same time on a resource share one entry, with a chip for each changed rule.
  • Green chips mean Pass, red Fail, dark grey Error, and grey N/A. The entry icon uses the highest-priority changed status: Fail, Error, N/A, then Pass.

View check details

Use the View icon on an entry to open the same check details shown in resource Compliance, evaluated at that event’s timestamp. If the entry includes several changed rules, use the Rule selector to inspect each one. Expand Definition or Result to view the recorded assertions and matching results.

The View action is available in Review and resource/location History with compliance-read access. Matching evidence also requires facts-read access for that resource. Details load when the modal opens; historical evidence remains subject to retention.

Filters and refresh

Filter by resource name, resource type, location including its descendants, rule name, resulting status, or dates. Name filters match case-insensitive literal substrings. Filters apply automatically; use the page’s Refresh action to reload the timeline.

Date bounds use UTC and include the entire selected final day. Either bound can be used alone. Rule and status filters show only matching changed rules; the change count reflects those rules.

Included events

The first retained evaluation, subsequent verdict changes, and states resuming after a gap in recorded evaluations appear in the timeline. Consecutive evaluations that repeat the same verdict do not add entries, even if their explanation changes. View opens the evaluation that began the displayed state; later evidence does not replace it. Error and N/A changes are included; Mixed is an aggregate compliance result, not an individual rule verdict.

The timeline reads stored evaluations independently of each rule’s Notify and Log settings. Available history depends on evaluation retention and deletion.

Permissions

The tab requires app.fact_policies.execute and applies that permission’s location scope, like the existing Compliance views. Previously collected history remains readable when policy evaluation is no longer licensed.