Applies to Enterprise. Governance is part of the full configuration set,
guided during Enterprise onboarding. Starter and Growth don’t configure this,
see Configure Overview.
Purpose
Governance defines who can do what, how data is handled, and how oversight works, so evaluations stay controlled, private, and auditable. It’s the final stage of setup, wrapping the Foundation and Operations you’ve configured before everything is signed off and frozen.What Governance covers
Locations & Regions
Used for routing, data residency, and operational context.
Users & Roles
Roles and permissions, who can configure, run, and review.
Compliance Frameworks
Only confirmed or correctly labeled frameworks (see status below).
Data Privacy & Retention
Consent, retention, deletion, and residency controls.
Human Review
No fully autonomous adverse decisions, a person approves.
Audit Trails
Reviewability and traceability of every action and result.
Knowledge Base
Your policies, templates, and approved reference material.
Compliance framework status
Frameworks are shown with accurate, current status, never as unconfirmed claims:This is a summary. For the full certifications table, current evidence pack,
and any region-specific requirements, see Compliance
FAQs or contact your Customer Success representative.
Some of the roles and access, and audit-trail capabilities described on this
page are still being finished and rolled out. Your Customer Success contact
can confirm what’s live for your setup today.
FAQs
Can Exterview make an adverse decision on its own?
Can Exterview make an adverse decision on its own?
No. Human review applies to outcomes; no fully autonomous adverse decision is made.
How is access controlled?
How is access controlled?
Through roles and permissions scoped to your organization, configuration,
running, and review are separate permissions.
Where is our data stored?
Where is our data stored?
Data residency is set by your locations and regions during setup. Retention
and deletion follow your configured policy.
What goes in the Knowledge Base?
What goes in the Knowledge Base?
Your approved policies, templates, and reference material, used to keep evaluations grounded in your own guidance.
Related
Trust & Compliance
The full security, privacy, and responsible-AI posture.
Go-Live Readiness
Confirm governance before you deploy.

