Skip to content

How to Respond to Alerts

GOVERN generates alerts when assessments produce violations above a configurable severity threshold. Alerts are designed to surface only what requires human attention.

Alert types

TypeTriggerDefault severity
Policy violationAssessment score below thresholdMatches violation severity
Drift detectedModel behavior deviation exceeds limitHigh
Shadow AI discoveredUnapproved system found by monitoring agentCritical
Energy dropOrg energy score falls more than 10 pointsMedium
System offlineRegistered system stops reportingHigh

Responding to an alert

  1. Open the alert from your notification channel or from Alerts in the dashboard
  2. Review the linked assessment or system record
  3. Choose a response: Acknowledge, Escalate, Resolve, or Suppress
  4. Add a note explaining your decision — this becomes part of the audit record

Alert suppression

If an alert type is generating noise (e.g., a known acceptable use pattern flagging a threshold), you can suppress it for a defined window. Suppressions require a reason and are visible in the audit trail. They automatically expire.

Routing alerts

Configure alert routing in Settings → Notifications. You can route by severity, system, or policy to different channels (email, Slack webhook, PagerDuty integration key).