Loading…
Pauses a Zap the moment a customer's risk score crosses the line, instead of letting the automation keep firing.
For: Risk and ops teams whose Zaps act on customer records
Escalates an action on a customer whose risk score crossed the elevated band.
Blocks any automated action on a customer flagged restricted.
Restrains the workflow when a risk score moves more than the allowed delta in one step.
# Zapier Risk-Score Change Pause
# Fork: thresholds mirror the "Regulated customer actions" template.
apiVersion: decionis.dev/v1
kind: PolicyPack
metadata:
name: zapier-risk-score-change-pause
surface: zapier
workflow_key: regulated_customer_action
standards: [SOC2-CC7.2, ISO27001-A.5.7]
defaults:
mode: shadow
emit_dossier: true
rules:
- name: elevated_risk_escalation
when: "action == 'customer.act'"
decision: |
ALLOW IF risk_score < 60
ESCALATE IF risk_score < 85
BLOCK OTHERWISE
reason_code: risk_score_over_threshold
- name: restricted_customer_block
when: "action == 'customer.act'"
decision: |
BLOCK IF restricted == true
ALLOW OTHERWISE
reason_code: restricted_customer
- name: score_jump_restraint
when: "event == 'risk_score.changed'"
decision: |
RESTRAIN IF abs(risk_score - previous_risk_score) > 20
ALLOW OTHERWISE
reason_code: risk_score_jump_needs_review
Fork it, change the thresholds to match your environment, and deploy in shadow mode first — it defaults to listen-only so nothing in your live pipeline changes.
Follow the install path for this surface, then paste the forked YAML as your policy config.