Skip to main content
Use a policy only after you can describe the unsafe action and the legitimate actions that must remain allowed.
1

Author the policy

Go to Admin → policy editor. Start with the demo policy, review or edit its source, then select publish version. Publishing creates the immutable version that you can deploy to machines.The Policy editor compose view with a demo policy ready to publish as an immutable version.
2

Deploy it to a machine

Go to Admin → enforcement, expand the target machine, and select edit this machine. Add the published demo policy, pin its version, choose observe, and apply the deployment.The machine deployment editor with a published policy version selected in observe mode before applying the deployment.
3

Verify the policy

Run a new agent session on that machine, then open Observe → policy. Select the machine and confirm that the demo policy appears in the policy mapping and decision timeline. Observe mode records what the policy would do without blocking the action.The Policy page showing decision totals, enforcement activity over time, and local and Cloud-managed policy mappings.