Framework-aware compliance review
See which controls are proved, failed, unknown, or not applicable.
Compliance turns control-heavy reviews into a deterministic, evidence-first workflow. Teams can inspect four-state control assessments, coverage gaps, findings, waivers, advisory context, and immutable run history while retaining the exact evidence behind every result.

Design
Prompt, code, pattern, or live context
Review
Cost, threat, scale, and compliance
Document
CoDocs, HyperDocs, and share links
Govern
Discovery, drift, and IaC continuity
Four-state control truth
Distinguish pass, fail, unknown, and not-applicable outcomes instead of hiding missing evidence.
Evidence-linked controls
Trace every deterministic result to organization-scoped architecture and infrastructure evidence.
Coverage before claims
Keep framework alignment separate from certification and block complete claims when scope is partial or stale.
How it works
The workflow behind Compliance.
Each step exists to reduce time-to-clarity for technical teams without forcing them into a separate diagramming or documentation toolchain.
Step 1
Select the topology
Use a generated architecture, imported system, or stored pattern as the evaluation target.
Step 2
Run framework checks
Produce a persisted deterministic artifact with explicit control and evidence coverage.
Step 3
Govern the findings
Triage evidence-linked findings, waivers, and advisory explanations without mutating historical results.
Best fit
Integrations
Outputs
Related features
Explore the rest of the workflow.
Security posture analysis
Security Posture
Security Posture helps teams review architectures against common risk models and zero-trust design expectations.
Drift and governance visibility
Drift Detector
Drift Detector compares environments and IaC context so platform teams can see where architecture intent and deployed reality have diverged.
STRIDE-driven threat modeling
Threat Analyzer
Threat Analyzer applies structured threat modeling to architecture diagrams so teams can surface risk while design decisions are still reversible.
Next step
See Compliance inside the full Architecto workflow.
Start on the free plan, then move from this feature into the larger architecture, review, and documentation flow when the team is ready.