Features
Everything an AFSL holder needs to run compliance — without the spreadsheets.
Five purpose-built modules for Australian financial services licensees, all cross-linked, all audit-ready, and all under one transparent monthly price.
AFSL Calendar
Every obligation, every deadline, every owner.
The regulatory obligations every AFSL holder must track — with due dates, owners, recurrence rules and evidence attachments. Recurring reminders, escalations, and an evidence-backed audit trail.
Pre-loaded ASIC obligation library
Custom obligations with RRULE-based recurrence
Evidence files (SHA-256 hashed) attached to each occurrence
Auto-reminders + escalation to Responsible Manager
Risk Register
Every risk, breach, and decision — in one place.
The registers fund managers and AFSL holders actually maintain — risk, breaches, incidents, PEPs & sanctions, audit findings, gifts & benefits, conflicts — with owners, priority, status, escalation, and a full audit trail.
5×5 inherent + residual risk matrix
Controls and treatments linked back to obligations
Item lifecycle: open → in progress → under review → closed
Committee-ready exports (PDF, CSV, ZIP)
Policy Library
Version-controlled policies, attested by your team.
Approval chains, version history, staff attestation, and automatic review reminders. The policy library every external auditor expects to see — without spreadsheets and shared folders.
Draft → review → approve → publish workflow
Per-staff attestation tracking
Review reminders based on cadence
Linked to risks, controls and training
Breach & Incident Reporting
Lodge every reportable situation on time, with the evidence ASIC expects.
Significance assessment wizard aligned to s912D(5), automated 30-day ASIC lodgement clock, pre-populated ASIC prescribed form, remediation tracking, and an immutable audit trail.
s912D(5) significance wizard
30-day clock with 5/2-day warnings + RM escalation
ASIC prescribed form pre-population (PDF, CSV, JSON)
Remediation linked to controls, policies and training
Compliance Training
Assign, deliver, certify — with quizzes and attestation.
AI-drafted training modules with 14-question quizzes, completion certificates, CPD point tracking, and audit-friendly evidence. Standalone or wired to remediation in the Breach module.
AI draft generator (paste context, get a 14-question module)
Quiz with attempt history and pass-mark logic
CPD point tracking by scheme (RG 146, ASIC, AFCA, FINSIA, AICD)
Coach personas reacting to performance during quizzes
How it fits together
Modules that actually know about each other.
Compliance lives in the connections — an obligation that's tied to a risk that’s treated by a control that’s evidenced by a policy that’s reinforced by training. Gallantree wires those connections in from day one.
Australian-native
Built against the Corporations Act, ASIC regulatory guides, AML/CTF Rules and the Privacy Act — not a US GRC tool retrofitted.
Cross-linked, by design
Obligations link to policies, policies link to risks, risks link to controls, breaches link to all four. Evidence is reusable across modules.
Audit-ready by default
Immutable audit trail per record, SHA-256 file hashes, status-change history, and one-click evidence packs that hold up in an external review.
AI coaches in every module
Draft policies, generate training questions, surface regulatory context, and react to performance — without replacing your Compliance Officer's judgement.
Ready to simplify your compliance obligations?
7-day free trial. No charge during trial, cancel anytime.