Loading...
Loading...
UiPath governance via `uip gov` — author, deploy, and diagnose policies on three layers. AOps product policies (`uip gov aops-policy`): block/restrict/enforce features in Studio, StudioX, Assistant, Robot, AI Trust Layer, Agent Builder; deploy to user/group/tenant. Access ToolUsePolicy (`uip gov access-policy`): allow/deny when one workflow invokes another as a tool (Agent→Agent/Maestro/Flow/RPA/API/Case), gated by tag, caller, or actor (User/Group). Compliance Standards (ISO 42001): check posture and configure recommended settings across products in one operation. Operate: deploy/undeploy, query effective deployed policy. Diagnose: policy not taking effect, deployment precedence (user>group>tenant), blocked tool invocations. For platform ops→uipath-platform.
npx skill4agent add uipath/skills uipath-governance| Surface | Governs | CLI |
|---|---|---|
| AOps product policy | Product feature behavior — what Studio / StudioX / Assistant / Robot / AI Trust Layer / Agent Builder can do at design-time / runtime | |
Access policy ( | Resource/tool-use boundary — when an Actor Process invokes a child Resource (Agent / Maestro / Flow / RPA / API / Case Management), is the call allowed? | |
blockrestrictdenyallowrequireenforcepolicy / rule / guardrail / govern / gate / controlblock / restrict / deny / disable / disallowrequire / enforce / mandateallow only / permit only / limit to / restrict towho can / which … can / on behalf ofcompliance / posture / audit.uipolicycompliance standardapply standardISO 42001check compliancecompliance postureposture againstdrift checkis my tenant compliantam I compliant withorganization-wideall tenantsentire orgacross all tenantsaccess-policy evaluateuipath-platformuipath-agentsuipath-rpauipath-maestro-flowreferences/disambiguation-guide.mdcreateupdatedeleteyyuip gov compliance-packs …references/compliance-pack/preview-gate.mduip loginuip gov …evaluateaccess-policy-overview-guide.mdreferences/disambiguation-guide.md12uipISO 42001apply standardcompliance posturedrift checkam I compliantis my tenant compliantwhat packs are availablewhat packs are configuredwhich standards are enabledorganization-widedisable standardresetrestoreundo drift on a standardpartial-apply/planning.mdcoverage/impl.mdcatalog/impl.mdquery/impl.mdfull-apply/impl.mddisable/impl.mdrestore/impl.mdcatalog/impl.mdstate listuipwhich uip && uip --version
uip login status --output jsonnpm install -g @uipath/cliuip login--authority <URL>evaluateuip login tenant list --output jsonuip login tenant set <NAME>references/auth-context.mdreferences/aops-policy/aops-policy-overview-guide.mdreferences/access-policy/access-policy-overview-guide.mdAskUserQuestion### Which layer should this rule govern?
1. **Govern the product** — control what Studio / StudioX / Assistant / Robot / AI Trust Layer / Agent Builder *can do* (e.g. block ChatGPT inside Studio, enforce Workflow Analyzer, disable a Marketplace widget). Backed by `uip gov aops-policy`.
2. **Govern resource/tool use** — control which Actor Processes / identities can *invoke* which child Resource as a tool (e.g. block agents tagged `Sandbox` from being called, only let the finance group trigger this Flow). Backed by `uip gov access-policy`.
Reply with the number.references/disambiguation-guide.md| I need to... | Read |
|---|---|
| Decide which branch a request belongs to (priors, phrase tables, worked example) | |
| Author an AOps product policy | |
| Deploy an AOps policy to user / group / tenant | |
| Query the deployed AOps policy / effective rules | |
| Author an Access ToolUsePolicy | |
| Look up CLI flags / output shapes (AOps) | |
| Look up CLI flags / output shapes (Access) | |
| Resolve a name to a UUID for Access | |
| Diagnose a governance failure (capability index) | |
| Recognize a known governance failure pattern | |
| Walk the diagnostic priority ladder | |
| Discover available compliance standards | |
| List which compliance standards are currently configured | |
| Posture analysis — what settings are configured vs recommended | |
| Apply full compliance pack | Run coverage first, then |
| Apply specific controls / clauses | |
| Remove compliance standard settings | |
| Reset / restore a standard to its recommended settings (undo drift) | |
| Query — what does a clause / control recommend? | |
| Preview disclaimer + 403 opt-in gate (all compliance flows) | |
uipath-platformdeployed-policy listdeployed-policy get <licenseType> <productName> <tenantId>uip gov compliance-packs state coverageaops-policy deployed-policystate enableaops-policy createsynthesize-formdata.mjsaops-policy createstate enablestate enablestate enable organizationuip login tenant liststate enable tenant <id>references/compliance-pack/full-apply/impl.md