Findings, Approvals, Chat & Config Log
Beyond the Overview and Settings pages, the Platform & Security Officer section has four additional pages for reviewing AIPSO's activity and interacting with it directly: Findings, Approvals, Config Log, and Chat.
Findings
Navigate to /governance/aipso/findings to see the AIPSO security-sweep findings ledger. Each finding shows its severity (Critical, Warn, Info), status (New, Acknowledged, Resolved, Muted), and when it was last updated. Use the severity and status filters at the top of the page to narrow the list.
Managers (users with the aipso:manage permission) can act on a finding directly from the list:
- Acknowledge - marks the finding as seen and under review
- Resolve - marks the finding as addressed
- Mute - suppresses the finding without resolving it
Every action is audit-logged server-side. Users who only have aipso:view can see the findings table but not the action buttons.
Approvals
Navigate to /governance/aipso/approvals to see AIPSO's pending and historical approval and verification escalations. This page is read-only - it does not introduce a new way to approve or deny a request. Each pending item links out to the existing approval decision portal so a manager with a live decision link can approve or deny it there.
Config Log
Navigate to /governance/aipso/config-log for a read-only audit trail of configuration changes AIPSO has made. You can filter by actor, entity type, entity id, and a starting date/time. Rows are stored already redacted - if a change touched a secret (for example, a rotated credential), the log shows only that the secret changed, never its value. Click a row to expand its full detail.
Chat
Navigate to /governance/aipso/chat to have a full-page conversation with your tenant's AIPSO. This surface is manager-only (aipso:manage) - a user with only aipso:view cannot start a conversation here.
Instructions given in this chat are still subject to the same approval rules as any other AIPSO action: a high-risk or floor-level action you ask AIPSO to take in chat still waits for approval per your autonomy dial. Chat cannot be used to bypass approval requirements.
Permissions
aipso:view- lets a user see the Findings, Approvals, and Config Log pages in read-only mode.aipso:manage- required to acknowledge, resolve, or mute findings, and to use the Chat page.
Related Topics
- AIPSO Overview - Introduction to the Platform & Security Officer
- Managing AIPSO - Status, autonomy dial, and manager roster