governance
13 Dtwo policies tagged "governance", including Confluence: Deny Org-Wide & Public Publication, HubSpot Block Deal Closure. Browse by what the control does rather than which app it targets.
On this page
Confluence
HubSpot
HubSpot Block Deal ClosureBlocks HubSpot CRM-object calls that move a deal into a closed stage (closedwon or closedlost). Both create and update requests are inspected.HubSpot Protect AssociationsBlocks HubSpot CRM-object calls that create or change associations between objects (deal↔company, contact↔company, etc.).HubSpot Protect Deal OwnerBlocks HubSpot CRM-object update calls that set or change a deal's owner.HubSpot Protect Lifecycle StageBlocks HubSpot CRM-object calls that set or change a contact's lifecycle stage.HubSpot Read-OnlyMakes the HubSpot connection read-only by blocking the write tool.
Intercom
Salesforce
Salesforce Guard Opportunity Pipeline FieldsKeeps revenue-pipeline moves human-approved.Salesforce Protect Contact FieldsBlocks Salesforce Contact updates that modify protected fields — ownership, account linkage, contact PII, name, and consent flags.Salesforce Query AllowlistRestricts Salesforce SOQL queries so only Account, Contact, and Opportunity records can be retrieved.Salesforce Read-Only AccessRestricts the Salesforce MCP server to read-only access.
Slack
Slack: Deny Channel CreationBlocks Slack channel-creation tool calls at ingress. Every other Slack tool — and every non-Slack tool — passes through untouched.Slack: Deny Sending Direct MessagesBlocks Slack message-write calls whose destination resolves to a direct conversation — a 1:1 DM, a message posted to a user ID (which Slack auto-opens as a…