Skip to main content

Policies

Track every internal policy's version history, effective dates, review cycles, and which entities have adopted it — one register instead of a shared drive full of PDFs.

Prove which policy version applied, where, and when

Which Version Is Actually in Force

An employee asks HR which travel policy applies to their region. Legal needs to know whether the code of conduct in force last year is the one that governed a since-closed investigation. An auditor wants proof that every subsidiary formally adopted the anti-corruption policy, not just the parent company.

Most organizations answer these questions by searching a shared drive for the newest-looking file. That works until two people find different “newest” versions, or until a policy was quietly restated and nobody updated the copy in the employee handbook. Lextree gives internal policies the same treatment as any other compliance record: one register, one current version, a documented history of every amendment, and a record of exactly who adopted it.

The Policy Register

Each policy lives as one record — code of conduct, a compliance policy, an HR policy, an IT security policy — tracked by its title rather than by whichever file name happened to stick. The record carries a category, an effective date, a next-review date, and a retired date once the policy is superseded. Notes capture the reasoning behind changes so a reviewer two years later understands why a clause was added or dropped, not just that it was.

Acknowledgment tracking works the same way: the policy records whether acknowledgment is required and where the evidence lives — an LMS or an HR system — as a pointer rather than a duplicate copy. Lextree keeps the policy record; your existing acknowledgment system stays the system of record for who actually signed.

Still tracking policy versions in a shared drive? Grab our free company policy register template and bring it into Lextree when you’re ready to stop guessing which file is the current one.

Every Version, on the Record

Policies change. A restatement rewrites the whole document; an amendment adjusts a section; a translation makes the same policy usable in another office. Each of these is a document under the policy, recorded by document type and effective date, with the original policy itself always the first row in that register. Annexes and correspondence attach as files to the specific document they support, so a five-year-old amendment doesn’t get buried inside the current restatement.

Because every version is a dated record rather than an overwritten file, answering “what did this policy say on March 3, 2024” is a lookup, not an investigation.

Who Has Adopted It

A policy written by the parent company doesn’t automatically apply everywhere the same way. Some policies are genuinely group-wide; others need explicit adoption by specific subsidiaries, or apply with local variations. Lextree records adoption as its own register — one row per organization that has adopted the policy, with the date it did. An empty register reads as group-wide by default; specific rows show exactly where scope narrows or an approval was required locally. The board or committee minutes approving that adoption stay where they belong, in that entity’s minute book — the policy record keeps the pointer to when adoption happened, not a duplicate of the approval paperwork.

Reviews That Happen on Schedule

Every policy carries a next-review date, and Lextree fires a reminder ahead of it — not because the platform knows your review cadence, but because you set it once and it holds. That review date is a governance choice, not a computed deadline: an annual code-of-conduct review looks different from a quarterly review of a fast-changing IT security policy, and the platform accommodates both. When a review results in changes, the restatement becomes the next document in the register and the effective date moves forward, leaving the prior version intact for anyone who needs to see what changed.

Policies in Context

A policy doesn’t exist in isolation. Governance covers the board and committee action that approved a policy in the first place; the policy module tracks what was approved and who adopted it afterward. Employment holds the individual acknowledgments and role-specific requirements a policy might trigger — the policy record itself stays about the document, not the roster who signed it. Entity-specific adoption ties back to Legal Entities, and a policy referenced as a defined term inside a vendor or partner agreement connects to Contracts.

When someone asks which version of a policy governed a decision, or whether a subsidiary was actually covered, the answer is a record — not a guess based on file modification dates.

Trusted by

An established platform, not a new bet

15 years
In market
118 jurisdictions
Where customers operate

Built secure

The record auditors trust. Protected the way they expect.

Lextree is built for the people who lose sleep over compliance, so security isn’t optional.

  • Encrypted in transit and at rest

    Every byte that moves through Lextree travels over TLS 1.2 or higher, and the managed infrastructure it runs on encrypts stored data with AES-256.

  • Hosted in audited, SOC 2 facilities

    Lextree runs on infrastructure certified to SOC 2 Type II, hosted in ISO 27001 data centers.

  • Role-based access, scoped to your data

    Users see only what their role allows, and Lextree subscribers never see each other's data.

  • An automatic trail of every change

    Every create, update, and delete is logged automatically — in the same database transaction — with the user who made it, a timestamp, and the fields that changed.

  • Daily backups, point-in-time recovery

    Your data is backed up on managed infrastructure, with point-in-time recovery to roll back to a moment before a mistake.

  • Passwordless sign-in, SSO, and MFA

    Sign in without passwords — Lextree never stores one to be stolen — with multi-factor authentication available and SAML or OIDC single sign-on on Enterprise plans.

Read the full security overview →
Common questions

Frequently asked questions

What kinds of policies does Lextree track?
Any internal policy your organization authors and maintains — code of conduct, compliance policies, HR policies, IT security policies, or any similar document with a title, a version history, and an effective date.
How does Lextree handle policy versions and amendments?
Each policy keeps a document register: the original policy is always the first row, and every amendment, restatement, or translation is added as its own dated entry. The policy’s effective date always traces back to the original policy row, so the current version and its full history are both visible without guessing which file is newest.
Can we track which entities have adopted a given policy?
Yes. Adoption is its own register under the policy — one row per group entity that has adopted it, with the adoption date. An empty register reads as group-wide by default; add rows only where adoption or scope is entity-specific.
Does Lextree store proof that employees acknowledged a policy?
Lextree tracks whether acknowledgment is required and where the acknowledgment evidence lives — typically an LMS or HR system — as a reference on the policy record. The sign-off log itself stays in the system that actually collects it; Lextree doesn’t duplicate it.
Can we set a review cycle so policies don't go stale?
Yes. Every policy carries a next-review date you set, with an advance reminder before it arrives. The cadence is your call — an annual review for a code of conduct looks different from a quarterly review of an IT security policy — and Lextree just makes sure the date doesn’t get missed.
How is a policy different from a contract obligation?
A policy is a document your own organization authors and imposes on itself or its entities. An obligation created by an agreement with an outside party — a vendor contract, a lease, a loan covenant — belongs in Contracts. When a policy is referenced as a defined term inside an agreement, the two records connect, but the policy itself always lives here.
Pricing

Every plan includes all 21 modules

Tiers add user limits, granular permissions, and enterprise controls. Modules stay constant.

  • Pro

    $75/ mo

    Includes 5 seats, then $15 / seat

    For teams moving off spreadsheets and scattered files.

    Start free trial →
  • Business

    $550/ mo

    Includes 5 seats, then $10 / seat

    For businesses that need collaboration, workflows, and reporting.

    Start free trial →
  • Enterprise

    $950/ mo

    Includes 5 seats, then $5 / seat

    For organizations with security, governance, and scale needs.

    Start free trial →

Stop managing compliance from memory.

Search