Everything on Keel, in one place
A quick directory of the whole site. Looking for something specific? Search the site, or browse below, or jump to features, frameworks, or the Zapier integration.
Product
- Product overview
- All features
- Crosswalk-native GRC
- Keel Quality (ISO 9001)
- Pricing & plans
- Zapier integration
- Reliability
- Policy management
- Controls & crosswalk
- Information asset register
- Nonconformities & CAPA
- Internal audits
- Security incident register
- Management reviews
- Legal & regulatory requirements register
- Business continuity & BIA
- Security objectives & KPIs
- Competence & training-gap matrix
- Documented information register
- Nonconforming outputs (NCR)
- Audit programme & calendar
- Quality dashboard
- Complaints & customer feedback
- Change control
Frameworks
- ISO/IEC 27001
- CIS Critical Security Controls
- PCI DSS
- SOC 2
- NIST Cybersecurity Framework
- NIST SP 800-53
- HIPAA
- ISO 9001
- AI Governance Essentials
- ISO/IEC 42001
- NIST AI Risk Management Framework
- EU AI Act
- ESG Essentials
- ISO/IEC 27002
- HITRUST CSF
- NIS2 Directive
- DORA
- SOC 1 (SSAE 18)
- SOC 3
- NIST SP 800-171 · Launches Sep 2026
- HITECH Act
- GDPR · Launches Aug 2026
- CCPA / CPRA
- ISO/IEC 27701
- ISO 22301
- ISO 14001
- ISO 26000
- ISO/IEC 27017
- ISO/IEC 27018
- CSA Cloud Controls Matrix
- CISA Known Exploited Vulnerabilities
Solutions
Resources
- Collect once, comply everywhere: the framework crosswalk explained
- Leaving your GRC tool? Take your evidence files, not just links
- AI governance you can start today, for free
- How to keep customers informed during a security incident (without a public status page)
- GRC for developers: an open API, an MCP server, and no lock-in
- Crosswalk-native GRC: collect evidence once, comply everywhere
- How to build a risk register for SOC 2 and ISO 27001
- The 18 CIS Controls that stop the most common attacks