Organization policies
Organization section where you can set control mechanisms and enable policies that affect the entire organization structure, all projects, development team and their activities.

The policies are grouped in four sections:
- Project data residency
- Project subscription plans
- Information security, and
- GDPR
Project Data Residency
Enable policy for allowed project data residency
Data residency is when an organization specifies that its project data must be stored in a specific geographical location, as a mandatory requirement due to legal, regulatory, compliance, tax, or policy reasons.
Enable this organization policy to set available regions. These regions will show up as the only allowed locations to provision developed projects within the organization.

Project Subscription Plans
Enable policy for allowed project subscription plans
Every organization regardless of its size has different technical and business requirements for each project. This policy sets the frame for allowed subscription plans for all the projects that will be provisioned within the Organization. This way, you can control and forecast costs, and assign appropriate project capacities as different plans offer a different set of features.

Enable admin confirmation for subscription
Put in place strict SoD* internal control mechanism by setting mandatory request for Admin approval when adding subscription plan to a project (in the process of project provisioning).
*Segregation of Duties is the concept of having more than one person required to complete a task and represents a key concept intended to prevent error or in certain cases - fraud.

Information Security
Enable 2FA for portal users
Increase the level of information security and add an extra layer to prevent unauthorized access and login to the Platform by enabling Two Factor Authentication (2FA). Transformify enables email channel as the second factor for user verification.
SMS text messages, Push notifications, and Google/Microsoft Authenticators...coming soon.

Enable access restriction for portal users
Create an organization security policy to allow or deny user access to the Platform. Set IP access restriction rules by type (IPv4, IPv6) or entire IP Address Block.

Enable approved domains for user invites in the portal
Enable policy to limit sending user invites only to approved domains. Users that have email accounts outside approved domains, can not be invited to join within the organization.

Enable requirement for the number of Organization Admins
Set policy for the mandatory number of Organization Admins. Enterprises and companies very often have in place this kind of policy to provide their business continuity and availability.

Enable requirement for minimum Project Admins
Set policy for the minimum number of Project Admins. Enterprises and companies very often have in place this kind of policy to provide their business continuity and availability.

GDPR
Set activity log retention period (default setting: 90 days)
Enable policy to configure and change the default setting of 90 days retention period when logs are backed up and remain available for your audit purposes. When this retention period ends, the data is automatically erased.

Enable custom Terms And Conditions
In addition to Transformify Platform Terms and Conditions (which cannot be edited or deleted), you can add custom text and set version status (draft, active and inactive). This option is available as your organization or legal entity may have its own policies that all invited users must comply with.
This text is displayed when a certain User receives the invitation to join your Organization and explicitly must accept all Terms and Conditions as a mandatory prerequisite to sign up into Transformify Platform.

Enable custom Privacy Policy
In addition to Transformify Platform Privacy Policy (which cannot be edited or deleted), you can add custom text and set version status (draft, active and inactive). This option is available as your organization or legal entity may have its own policies that all invited users must comply with.
This text is displayed when a certain User receives the invitation to join your Organization and explicitly must accept all Privacy Policies as a mandatory prerequisite to sign up into Transformify Platform.
