The complete governance platform
Aquil is more than an ISMS tool. It's an AI-driven governance platform that helps your whole team document, comply, run processes, plan audits, and track requirements — across every framework you care about.
Built for everyone who touches governance
Aquil isn't just for the CISO. From compliance officers to HR managers, process owners to internal auditors — every role gets a workflow that fits.
CISO & Security Leaders
See compliance status across every framework in one place
- Real-time gap dashboards across ISO 27001, GDPR, NIS2 and more
- Board-ready reports without consultant lock-in
- Continuous improvement tracked automatically
Compliance Officers
Stop chasing documents, start closing gaps
- Assign owners and link evidence to every control
- AI gap analysis against any framework you load
- Generate audit-ready policies in minutes
Process Owners & IT
Map, run, and version every process visually
- Drag-and-drop process builder, no Visio licences
- Interactive execution with handoff between users
- Versioning, sharing and links to registers and reports
HR Managers
ISMS-quality HR policies in minutes
- Dedicated HR writing assistant with the right tone
- Change control and approvals built in
- Reuse existing handbooks as context
Internal Auditors
Walk into any audit with everything ready
- Activity log and full audit trail per organization
- Scheduled recurring reviews so nothing goes stale
- Exportable evidence and Statement of Applicability
One workspace for the whole organization
Run security, HR, IT and quality from the same Aquil tenant — without anyone seeing what they shouldn't. Scopes and granular roles let you onboard every department safely.
Scopes split your organization cleanly
Tag documents, reports and processes with scopes — like 'HR', 'Production' or 'Customer X' — and each user only sees the scopes they're assigned to.
- Per-document and per-report scope tagging
- Users only see their assigned scopes
- Filter any list by scope on the fly
Six roles, zero ambiguity
From read-only Viewer to full Admin, every Aquil role has clear boundaries. Compliance officers approve, auditors observe, members contribute, reporters file — and nobody steps on toes.
- Admin, Compliance, Member, Viewer, Auditor, Reporter
- Role-aware UI hides what users can't use
- Owner-only edits on sensitive resources
Onboard every team without spinning up tenants
Bring HR, IT, Quality and Security into the same workspace. They share frameworks and templates, but their day-to-day stays isolated. One license, one source of truth.
- No more parallel tools per department
- Shared frameworks, isolated workflows
- Tenant-level data isolation enforced server-side
Documents & AI writing assistants
Generate, refine and maintain audit-ready documentation with assistants tuned for your context
Intelligent document generation
Pick a writing assistant — General, ISO 27001/ISMS, or HR — and let Aquil draft policies, procedures and risk assessments tailored to your organization.
- General, ISO and HR writing assistants
- Adapted to your industry and size
- Native English and Swedish
Context-aware drafting
Aquil understands how your documents relate. Reference up to 10 existing documents, then refine the draft in a chat with an inline diff.
- Reference existing Aquil documents as context
- Cross-references and dependency updates
- Refine with diff-based chat before saving
Learns your style
Upload existing documents and Aquil learns your tone, terminology and structure so generated output sounds like you.
- Automatic style analysis
- Consistent terminology across documents
- Template-based generation
Compliance & frameworks
One platform, every framework — from ISO 27001 to GDPR, NIS2 and beyond
Gap analysis & SoA
Run AI-powered gap analysis against the 93 ISO 27001:2022 Annex A controls and generate an exportable Statement of Applicability.
- AI gap analysis across all 93 Annex A controls
- Statement of Applicability export
- Prioritized action suggestions
Multi-framework support
Aquil isn't tied to a single standard. Work across ISO 27001, GDPR, NIS2, ISO 9001 and NIST CSF — and request new frameworks as you grow.
- ISO 27001:2022, GDPR, NIS2, ISO 9001, NIST CSF
- Request access to additional frameworks
- Switch between frameworks without losing data
Evidence & ownership
Link evidence documents to controls, assign control owners, and prove ownership when activating new frameworks.
- Link any document as evidence
- Assign control owners across the org
- Admin approval workflow for framework access
Process Builder & execution
Design processes visually — then actually run them, step by step, across your team
Visual process builder
Drag-and-drop process diagrams with decision nodes, swimlanes and links to documents, registers and reports.
- Drag-and-drop diagram editor
- Decision nodes and nested processes
- AI-generated diagrams from a title or document
Interactive process execution
Start any diagram as a live workflow. Step through decisions, hand off to colleagues, and share execution links externally.
- Step-by-step execution with yes/no decisions
- Process handoff between users
- Shareable execution links and progress dashboard
Versioning & traceability
Every change is versioned, every execution is logged, and every linked document, report or register stays connected.
- Full version history
- Execution tracking dashboard
- Links to registers, reports and nested processes
Audit Planner
Schedule recurring reviews so nothing in your ISMS goes stale
Scheduled reviews
Set up recurring audits and reviews for any control, document or process — Aquil reminds the right owner at the right time.
- Recurring schedules per control or document
- Owner reminders and notifications
- Roll-up across departments
Evidence collection
Capture evidence of completed reviews — documents, screenshots, links, reports — directly against the audit step.
- Attach documents, processes or reports
- Notes per evidence item
- Timeline view of completions
Audit-ready dashboard
See at a glance what's overdue, what's coming up, and what's ready for an external auditor — without hunting through folders.
- Overdue and upcoming review status
- One-click export for auditors
- Per-framework breakdowns
Say yes to customer contracts with confidence
When sales drops a big customer's security addendum on your desk — know in minutes whether you already meet the requirements, or exactly where the gaps are. No more panic-grepping policy documents.
Paste the contract, get the answers
Upload or paste a customer contract. Aquil maps every requirement line to your existing controls and flags exactly what matches, what's missing, and what contradicts your platform.
- Line-by-line matching in seconds
- Flags contradicting clauses before you sign
- Ready-to-share gap report per deal
One requirement library for the whole company
Every requirement you care about — from ISO and NIS2 down to what each customer demands — lives in one searchable catalog with owners, status and evidence per service.
- Framework controls + customer requirements in one view
- Status and owner per service
- Bulk-update statuses after a control meeting
AI cleans the duplicates for you
The same requirement shows up under ten different names across five different frameworks. Aquil finds the duplicates for you — and you decide what gets merged.
- AI groups duplicates automatically
- You approve every merge by hand
- Full audit log of changes
Reports, activity & support
Dynamic reports, full audit trails, and a help center built into the product
Dynamic reports & assistant
Build custom report templates and let the AI assistant fill them from documents, source text or other reports — with no hallucination.
- Custom report templates per organization
- AI fills fields only from provided context
- Confirmation flow for overwrites
Activity log & audit trail
Every meaningful action across the platform is logged with user, organization and resource context — searchable in your activity feed.
- Per-tenant activity feed
- Structured logging with user and org context
- Filterable by feature and actor
Help, support & changelog
Q&A articles, support tickets, feedback and a changelog of every release — built into the product so users never have to leave to get help.
- Searchable Q&A library
- In-app support tickets and feedback
- Release changelog so users see what's new
Registers & structured data
Turn any document into a living register — capture entries, define fields with AI and keep evidence in one place
Structured data capture
Create a register from any document and start capturing rows of structured evidence — asset inventories, incident logs, supplier lists, access requests.
- Create registers from any document
- Add, edit and track entries over time
- Full audit log of register changes
AI-defined fields
Aquil reads the source document and proposes the right field definitions automatically, so you don't have to design a schema by hand.
- Automatic field extraction from documents
- Customize field types after generation
- Consistent structure across the org
Scope-based access
Control who can see and edit each register with the same scope system used across the rest of Aquil, and link registers into processes.
- Per-register scope access control
- Link registers to process diagrams
- Share only what each team needs
Built to support every framework you need
Aquil already covers the most-used standards. Need another? Talk to us.