ExportableProof — Routines today. Proof tomorrow.

Policy

Information Classification Policy

This document is Arcfield's Information Classification Policy, document ID INFO-CLASS-POL-001. It binds Arcfield Platform classification levels, labelling, handling, ownership, external sharing and exceptions. Public, Internal, Confidential and Restricted are the only approved levels. It is not the ISMS Scope Statement, the Risk Assessment Methodology or the Statement of Applicability. It applies to Arcfield Platform production, customer data, CI/CD, privileged access and critical suppliers. Neighbouring records cite this Document Control version. Do not copy these paragraphs into those records.

This file is a fictional Arcfield example, not your organization's approved policy. Copy this file as the controlled Word master for your ISMS only after you replace Arcfield decisions with your own.

Back to demo

OSCAL source · ICP

{
  "artifactId": "ICP",
  "iso": [
    "A.5.12",
    "A.5.13"
  ],
  "catalog": [
    {
      "iso": "A.5.12",
      "oscalId": "iso27001-a.5.12",
      "title": "Classification of information",
      "className": "iso27001-annex-a",
      "group": "Organizational controls (Annex A.5)"
    },
    {
      "iso": "A.5.13",
      "oscalId": "iso27001-a.5.13",
      "title": "Labelling of information",
      "className": "iso27001-annex-a",
      "group": "Organizational controls (Annex A.5)"
    }
  ],
  "profileAlters": [
    {
      "control-id": "iso27001-a.5.12",
      "adds": [
        {
          "props": [
            {
              "name": "applicability",
              "value": "applicable"
            },
            {
              "name": "applicability-justification",
              "value": "Required for handling and protection decisions."
            },
            {
              "name": "implementation-status",
              "value": "Implemented"
            }
          ]
        }
      ]
    },
    {
      "control-id": "iso27001-a.5.13",
      "adds": [
        {
          "props": [
            {
              "name": "applicability",
              "value": "applicable"
            },
            {
              "name": "applicability-justification",
              "value": "Required to communicate classification handling."
            },
            {
              "name": "implementation-status",
              "value": "Implemented"
            }
          ]
        }
      ]
    }
  ],
  "components": [],
  "sspImplementedRequirements": []
}

Check installation

What is installed here. Extra volumes are optional and do not change Ready. Update re-runs the check.

CheckResult
Webserver…
Python…
Volumes…
Scripts…
Ready…
Working directory…
Last update…