Skip to main content

Organization settings: Notifications rules (New Experience)

Organization notifications rules let you configure automated compliance updates to Slack or Microsoft Teams.

Updated this week

💡 Still using the classic Drata experience? Refer to Company Settings: Notifications for the original UI.

These notifications help teams stay on top of control readiness, personnel actions, and system errors, without relying on individual email preferences.

What organization notifications are used for

Use organization notifications to:

  • Monitor controls that are not audit-ready

  • Track personnel with pending compliance actions

  • Surface monitoring or automated test errors

  • Keep security and compliance teams aligned in shared channels

⚠️ Important: These notifications may include sensitive compliance or personnel information. Choose destinations carefully.


Prerequisites

Before creating notifications, you must connect at least one messaging platform: Slack or Microsoft Teams

Slack-specific prerequisites (private channels)

If you plan to send notifications to private Slack channels, the Drata app must be added to each private channel

Add Drata to a private Slack channel

Option 1: Command

/invite @Drata

Option 2: Slack UI

  1. Open the channel

  2. Select the channel name → Integrations

  3. Select Add an app

  4. Add Drata


Create an organization notification

  1. Select Settings.

  2. Go to Organization → Notification rules.

  3. Select Create notifications rule


Choose a target

Slack

  • Select one or more public or private channels

  • Or notify specific users

  • Private channels require the Drata app to be added

Microsoft Teams

  • Paste the channel URL as the destination

How to get a Teams channel URL: Copy from the browser address bar or select Get link to channel in Teams


Available notification types

Notification options depend on whether you’re using Slack or Microsoft Teams.

  • Personnel with Pending Actions

    • Notifies pending compliance actions (for example, accepting a policy).

    • ⚠️ May include names and compliance status.

    • Recommended: Send to a private channel.

  • Tests with an “Error” Result

    • Alerts you when an automated test encounters an issue and cannot determine pass or fail.

    • These errors require investigation to restore monitoring.

  • Required Approvals

    • Notifies you when there are updates or changes to control approvals.

  • Control Evidence Updates

    • Notifies control owners when evidence has been added or updated for their controls.

  • Controls Not Ready

    • Alerts you when selected controls are not audit-ready.

    • You can choose specific controls to monitor.

    • Notifications are only sent if issues are detected.

  • Workflow Updates

    • Notifies you when workflows are updated or encounter run errors.


Notification frequency

Available frequencies:

  • Daily: Sent at 6:00 AM PT, including weekends

  • Weekly: Sent Mondays at 6:00 AM PT


Manage existing notifications

For each notification rule, you can:

  • Disable: Temporarily stop the notification without removing it. Use this if the rule may be needed again.

  • Active: Turn the notification back on so it resumes sending alerts based on its configured schedule.

  • Delete: Select the notification rule to permanently remove the notification rule.

    • ⚠️ This action cannot be undone.


Common misconfigurations to avoid

  • ❌ Sending personnel notifications to public channels

  • ❌ Forgetting to re-authorize Slack after adding private channels

  • ❌ Assuming notifications replace dashboards or reports

  • ❌ Expecting personal notification settings to affect org rules

Did this answer your question?