Getting Started with Governably
Set up your account and run your first exposure scan in under 5 minutes.
1. Create your account
Sign up with your work email via our secure login. You'll be asked to enter your organisation name and primary domain (e.g. yourcompany.co.uk). This takes about 30 seconds.
Every new account gets a 14-day Growth trial — full access to all features including AI tool governance, policy builder, and PDF reports.
2. Run your first scan
From the dashboard, click Run Scan. Governably immediately checks two surfaces:
- Email security: SPF, DKIM, and DMARC records — the three standards that prevent email spoofing
- Credentials: employee email addresses found in publicly known data breaches
Results appear in under 30 seconds with a 0–100 exposure score.
3. Review your exposure score
Your exposure score runs from 0 (severe exposure) to 100 (clean). The dashboard shows your overall score plus a breakdown across each surface. Each finding has a severity level:
- Critical: immediate action required
- High: address this week
- Medium: address this month
- Low: address when convenient
4. Connect cloud integrations
To scan all five surfaces, connect your Google Workspace or Microsoft 365 account. This unlocks:
- File sharing: publicly shared files on Google Drive or SharePoint
- AI tool access: shadow AI tools with OAuth access to your cloud data
- External surface: subdomains, expired SSL certificates, DNS misconfigurations
See our guides on connecting Google Workspace or connecting Microsoft 365.
5. Generate your first report
On the Starter plan or above, go to Reports and click Generate report. This produces a professional PDF with your exposure findings, surface breakdown, and remediation guidance — suitable for board packs or insurer evidence.
6. Next steps
- Remediation: review your prioritised fix list with direct links to admin consoles
- AI governance: approve, flag, or block discovered AI tools (Growth plan)
- Policies: create an AI acceptable use policy from templates (Growth plan)