Guide
Roll out and recover from policy changes
Validate policy changes, preserve a recovery path, diagnose blocking, and record the decision.
Last reviewed September 12, 2026
Roll out a policy safely
Roll out policy in five stages: observe representative traffic, classify resources and owners, stage the smallest provider or resource decision, validate critical journeys and resulting records, then expand gradually while monitoring findings and support signals.
Procedure
- 1.
Open the correct project and page
Use the project selector to choose the website you intend to review, then open Policies in the left navigation. Confirm the organization, project, and monitored domain before interpreting a record or changing a control.
- 2.
Record the effective policy
Inspect Global, Provider, and Resource layers. Capture both the configured value at each layer and the resolved effective state, together with the critical journeys and current working behavior.
- 3.
Observe
Read the configured value at Global, Provider, and Resource layers and identify the resolved effective state. Apply the narrowest approved change, validate critical journeys, and retain the previous state for recovery.
- 4.
Validate
Reproduce the expected state on a representative page or journey and retain the result before proceeding.
- 5.
Validate the effective result
Reload the policy view and confirm the resolved effective state. Exercise every affected critical journey and verify required browser access and network requests before expanding the change.
- 6.
Document approval and recovery
Record the policy layer, previous and new effective values, reason, approver, validation journeys, result, monitoring window, and exact recovery action.
Troubleshoot unexpected blocking
For unexpected blocking, capture the failing URL and journey, identify the blocked request or resource, inspect its effective resource, provider, and global state, and restore the narrowest last known working value. Validate recovery before redesigning the restriction.
Policy change record
For every policy change, record project, policy layer, target, previous and new configured values, effective value, observed-use evidence, reason, owner, approver, deployment time, validation journeys, result, and recovery action. This record explains the decision; it does not replace the underlying SiteWall telemetry.