Navigating the Settings → Compliance Hub
The Compliance Hub at Settings → Compliance is the single dashboard surface for every tenant-owned compliance control. It is a persistent tab strip, not one long scroll: the ~30 controls are grouped into eight task tabs, and only the active task group is on screen at a time. The active tab is the “where am I” cue; the first tab is the status overview. The eight tabs, in order:- Overview — aggregate compliance health and profile status
- Consent & Preferences — opt-in, consent ledger, preference center
- Privacy & Data Rights — AI disclosure, inbox AI privacy, data residency
- Retention — retention policy and data retention
- Audit & Evidence — AI turn audit, audit export, SIEM streaming
- Messaging Compliance — 10DLC, toll-free verification, brand identity, DNC, RND, fraud, emergency stop
- Security & Verification — verify configuration, customer-managed keys
- Legal Policies — HIPAA, DPA, subprocessors, legal hold
#ten-dlc, #hipaa, #brand-identity,
#data-retention, and so on). Deep links from other surfaces — the
Numbers console, send dialogs, sibling compliance panels — resolve
to whichever tab owns the anchor, open that tab, and scroll the control
into view.
Tab-by-tab map
Each tab owns the section anchors below. Open the tab to work the controls it contains; follow the linked page for the deep read on any one control.
A tab appears only when it has at least one control your role can see;
a role-restricted control is hidden rather than shown as a dead link.
Deep links and URL hashes
The hub resolves three kinds of URL hash to the tab that owns it:- A group key — the tab token itself.
#consentopens the Consent & Preferences tab;#legalopens Legal Policies. Switching tabs reflects the active group back into the URL the same way, so the address bar always names the tab you are on and a link is shareable. - A section id — the
compliance-section-*form the page stamps on each group.#compliance-section-privacyopens the Privacy & Data Rights tab. - A control anchor — the historical id a specific control
keeps.
#ten-dlcopens Messaging Compliance and scrolls to 10DLC registration;#hipaaopens Legal Policies and scrolls to the HIPAA section;#brand-identityand#data-retentionresolve the same way.
Unsaved-changes safety across tabs
Switching tabs does not discard an unsaved draft. Once you open a tab, its controls stay mounted in the background; when you switch away and back, the form state is still there. This matters for the controls you edit in passes — a half-filled HIPAA section, a retention window you are still tuning, an AI disclosure draft — because an in-app tab switch does not trigger a page unload, so a “leave page?” guard would never fire for it. The pattern is once-opened, stays mounted: a tab you have visited at least once keeps its subtree in the DOM (hidden, not unmounted) so its local state survives. Tabs you have not yet opened mount lazily on first visit, so the page does not pay the render cost for every control up front.Save before you leave the page or close the browser tab. The
unsaved-edit safety covers tab switches inside the hub; navigating
away from the page still unloads it.
Recommended first-run pass
A new tenant configures the hub top to bottom once. Work the tabs in this order; each later step reads the surfaces the earlier ones populate.- Start with the posture map. Read Configure your tenant’s compliance posture before the first send for the send-time gate sequence — consent baseline, opt-out, quiet hours, DNC and RND pre-flight, country rules, and the emergency kill switch — in the order you configure them.
- Build the compliance profile. Walk the compliance profile wizard to create the country-specific packet behind regulated numbers and senders, then attach it to the gated surface.
- Finish organization KYC. Complete organization KYC/KYB/IDV onboarding so live traffic is approved; the hub’s Messaging Compliance tab surfaces the registration controls KYC unlocks.
- Work the hub tabs in order. Overview first (status), then Consent & Preferences, Privacy & Data Rights, Retention, Audit & Evidence, Messaging Compliance, Security & Verification, and Legal Policies. Each tab above links to the deep page for the control you are configuring.
Related references
- Compliance posture overview — the one-page concept map of every tenant-toggleable control, the out-of-box defaults, and what the platform does not let you toggle.
- Configure your tenant’s compliance posture before the first send — the day-one runbook across the send-time gates, in configuration order with every default stated.