> ## Documentation Index
> Fetch the complete documentation index at: https://docs.zas.red/llms.txt
> Use this file to discover all available pages before exploring further.

# Organization Policies in Zas Enterprise

> Zas Enterprise org policies let you set shorter expiry, lock channels to your domain, and export departure logs. You can only shorten lifetimes, never extend them.

Enterprise organizations can enforce policies that match their compliance and security needs. Every policy follows the same law: you can only shorten lifetimes, never extend them. Zas never moves free features into a paid tier; it only adds control.

## Available policies

### Org expiry policy

Set a maximum item lifetime for your organization. This can be shorter than the default 5 days, but never longer. For example, you can require that all items expire in 24 hours.

<Warning>
  The org expiry policy only shortens lifetimes. It cannot extend them beyond the account's natural limit.
</Warning>

### Domain-locked channels

Restrict shared channels so only members with verified corporate identities can join. This prevents external contractors or personal accounts from accessing sensitive channels.

### Departure-log export

Export a log of who left the organization and when. This includes SCIM deprovisioning events, manual removals, and identity unbindings. Use it for audit trails and compliance reporting.

## How to configure policies

<Steps>
  <Step title="Open org settings">
    As an admin, go to your organization settings in Zas.
  </Step>

  <Step title="Choose Policies">
    Tap **Policies** to see the available controls.
  </Step>

  <Step title="Set and save">
    Adjust the expiry limit, enable domain-locked channels, or request a departure log. Changes apply to new items immediately.
  </Step>
</Steps>

## What to read next

* [Domain proof setup](/en/enterprise/domain-proof)
* [SSO and SCIM](/en/enterprise/sso-scim)
* [Identity model](/en/enterprise/identity-model)
