POLICY AND DOCUMENTS

Policy that shows up where the work happens.

Every organisation has a policy library. Almost nobody opens it. PAL puts policy inside the process, attached to the exact step it governs, so following the rules stops being a separate job.

The shelf problem

Policies live in one place and work happens in another. The intranet, the shared drive, the folder called “Final_v7”. The document is technically available and practically invisible, and the gap between the two is where compliance quietly fails.

Nobody sets out to breach a policy. They just never see it at the moment it matters.

Shared Drive (S:)
Corporate
Policies
2019 Archive
2021
Old — do not use
Policy_FINAL_v3(2).pdf
Policy_FINAL_v3 - Copy.pdf
WHS_Procedure_DRAFT_JB.docx
Superseded
TASKSite Safety Induction
Brief the contractor before site entry
POLICYWHS Policy 4.2 — Contractor Entry
No contractor may enter an operational area without a recorded induction covering site hazards, exclusion zones and the emergency muster point.
Version 6 · current · owned by Safety

* the screenshot represents a simplified UI expression of PAL

Attached to the step, not filed near it

In PAL, every step in a process can carry the documents that govern it: the policy extract, the current form, the template, the checklist, the instruction. When the step becomes a task, the documents arrive with it.

The person doing the work does not go looking for the rule. The rule is already there, the current version, at the moment of use. That is the difference between a policy library and a policy that operates.

PROCESS MAPContractor Site Access
SITE SUPERVISOR
Check contractor licence is current
Record entry in the site register
Brief the contractor before site entry
3 documents attached
Attached to this stepalways current
POLICYWHS Policy 4.2 — Contractor Entry
No contractor may enter an operational area without a recorded induction covering site hazards, exclusion zones and the emergency muster point.
Version 6 · approved 12 Mar 2026 · owned by Safety
FORMContractor Induction Record
Version 6 · required to complete this step
TEMPLATEToolbox Talk — Site Hazards
Version 3 · optional reference

* the screenshot represents a simplified UI expression of PAL

One source, always current

Documents in PAL are managed in one place, with version history, approval status, responsible owners and review cycles. Update a document once and every step it is attached to carries the new version. No stale copies circulating, no hunting for the latest, no wondering whether the form changed.

And ownership is real: each area of the organisation controls its own documents, deciding who can view them and who maintains them. The HR team owns HR policy. The safety team owns safety procedure. Governance stays with the people accountable for it.

PAL
3
Dashboard
Process Mapping
Activity Management12
Documents3
User Management
System Settings
Profile
JWJames WalkerAdministrator
Documents
Add
Search documents
IT Security Policy
Updated 3d ago (v.23)Version history
Request approval
Awaiting Approval1
Favourites
Policies
Code of Conduct Policy
Data Privacy and Protection
Remote Work and Telecommuting
Equal Employment Opportunity
Workplace Health and Safety
IT Security Policy
Employee Leave and Absence
Vendor Selection and Evaluation
Training Materials
Templates
Archived
IT Security PolicyCompany Name: Acme Corp Document ID: ITSP-001 Effective Date: November 1, 2024 Last Review Date: November 1, 2024 Next Review Date: November 1, 2025 Owner: IT Department Approved by: John Kim, Chief Information Officer (CIO)
PurposeThe purpose of this IT Security Policy is to safeguard Acme Corp’s information assets by establishing security measures and guidelines for all employees, contractors, and third-party affiliates. This policy ensures compliance with data protection regulations and mitigates the risk of unauthorized access, breaches, and data loss.
ScopeThis policy applies to all employees, contractors, and external partners who access or manage Acme Corp’s IT systems, data, and network resources. It covers all company devices, data stored or transmitted via company networks, and digital assets managed by Acme Corp.
ResponsibilitiesIT Department: Responsible for implementing and managing security measures, monitoring network activity, and conducting regular audits. Employees: Must comply with all security practices outlined in this policy, reporting any security incidents immediately. Management: Must support IT security practices and ensure teams adhere to security requirements.
Key Policies and ProceduresAccess Control: User Accounts: All users must have unique usernames and passwords. Shared accounts are strictly prohibited. Role-Based Access: Access to systems is based on role and department needs. Roles are assigned within the Human Resources Onboarding Process. Multi-Factor Authentication (MFA): Mandatory for all remote access to Acme Corp systems, including VPN and cloud-based services. Data Protection: Data Encryption: Sensitive data must be encrypted both in transit and at rest, using approved encryption standards. Data Classification: Data is classified by sensitivity—Confidential, Internal Use, and Public—and treated accordingly. Confidential data handling is managed under Compliance and Policy Updates. Data Storage: Storage of sensitive data on personal devices is prohibited. Company data must reside on Acme Corp’s approved platforms and servers.
Ask PAL

* the screenshot represents a simplified UI expression of PAL

Compliance you can point to

Because policy is attached to execution, PAL can show the line between the two: this standard, governing this step, followed in this task, completed by this person, on this date. Not a claim about compliance. A record of it.

For audits, reviews and the questions that arrive a year later, the answer is not a reconstruction. PAL keeps the record as the work happens.

POLICY
WHS Policy 4.2
Clause 4.2.1 · version 6
GOVERNS THIS STEP
Brief the contractor before site entry
Contractor Site Access
COMPLETED
Induction recorded
Run #2291 · evidence attached
K. Osei · 14 Mar 2026, 07:42

* the screenshot represents a simplified UI expression of PAL

See your policy go to work

Bring one policy and one process it governs. We will attach it, launch the process, and show you the moment they meet.