The search page: a question about the retention period for customer records, a short answer with numbered citations, and a list of source documents with section and page numbers.
Search. Answers only from approved documents, each sentence cited.

Why this sample

In regulated companies, people ask the compliance team the same questions every week, and contract review waits in a queue. A platform that answers from approved documents only, and logs every answer, is Platform-tier work: single sign-on, roles, an audit trail and a security review are part of the job, not extras.

This is a sample build. There is no client, and nothing here is a result from a real company.

What it does

  • Staff ask a question in plain words and get a short answer with sources.
  • Only documents that a compliance owner approved are searched.
  • Reviewers upload a contract and get a clause-by-clause check against company policy.
  • Admins manage roles and read a full audit log, ready for an auditor.
The contract review screen: a contract page with highlighted clauses on the left, and a clause check panel on the right listing findings against policy with red and green status and a status menu each.
Contract review. Each finding links to the clause and the policy it breaks.

The AI part

Search and answers use retrieval over the approved documents and a language model that must cite a source for every sentence. If no source supports an answer, the platform says it does not know. The contract check compares clauses to written policy rules and marks each finding for a person to accept or fix.

We would build a test set of real questions with the expected sources, and run it on every change. An answer that cites the wrong document counts as a failure.

The admin audit log: a dense table of timestamps, users, roles, actions and IP addresses with filters and an Export CSV button, and a roles summary card.
Audit log. Who asked what, what they saw, and who changed what.

Where it stops

The platform does not give legal advice and does not sign or change contracts. Policy writing stays with the compliance team.

Timeline

When What happened
Weeks 1 to 4 Single sign-on, roles, document upload and approval, text extraction, audit log.
Weeks 5 to 8 Search with cited answers, a test set of real questions with expected sources, answer scoring.
Weeks 9 to 12 Contract clause check against policy, review workflow, exports, penetration test fixes, handover.