Guides
Governance
Configure approval gates, tool restrictions, and audit logging for enterprise AI governance.
Governance features are available on the Professional and Enterprise plans.
Sempleo provides enterprise governance controls to ensure AI agents operate within your organization's policies.
Approval Gates
Approval gates require human review before an agent can take certain actions:
How It Works
- An agent determines it needs to perform a governed action (e.g., sending an email, creating a Jira ticket)
- The action is paused and a notification is sent to the designated approver(s)
- The approver reviews the proposed action and approves or rejects it
- If approved, the agent completes the action; if rejected, the agent is notified
Configuring Approval Gates
- Go to Settings → Governance
- Enable governance for your workspace
- Define which actions require approval:
- Integration actions (send Slack message, create Jira issue, etc.)
- External API calls
- Knowledge base modifications
- Set approvers (specific users or roles)
Tool Restrictions
Control which tools agents can use:
- Allowlist — Only specified tools are available
- Blocklist — All tools except specified ones are available
- Per-team — Different tool access for different teams
Audit Logging
Every agent action is logged with:
- Timestamp — When the action occurred
- Agent — Which agent performed the action
- User — Who triggered the agent
- Action — What the agent did
- Input/Output — The data involved (redacted for sensitive fields)
- Approval status — Whether approval was required and granted
Viewing Audit Logs
- Go to Settings → Audit Log
- Filter by date range, agent, user, or action type
- Export logs as CSV for compliance reporting
Retention
| Plan | Retention |
|---|---|
| Trial | 7 days |
| Starter | 30 days |
| Professional | 90 days |
| Enterprise | 365 days (configurable) |
Model Governance
On the Enterprise plan, you can:
- BYO LLM — Use your own Azure OpenAI or AWS Bedrock deployment
- Model restrictions — Control which models agents can use
- Data residency — Ensure data stays in your preferred region