This topic introduces each governance capability available in the Dedicated edition and explains how to configure it for your organization.
Browser Access
- By default, YiDA is accessible both inside DingTalk and in web browsers. When disabled, all members of your organization can only use YiDA inside DingTalk and cannot access YiDA on the web. Combined with DingTalk’s security controls (especially with DingTalk Dedicated), this strengthens business and data security.
App Vault
- App Vault toggle: When enabled for a specific app, platform Admins can no longer directly access the app backend or view sensitive app data.
Special note:If any apps have App Vault enabled, you must first disable it on those apps before turning off the master toggle.
Executive Mode
For designated users, approval task nodes in the organization’s office approval processes are automatically bypassed, and they will no longer receive YiDA approval tasks (including approval, CC, and execution node tasks). This is designed for Do Not Disturb task handling for senior executives, supporting up to 10 users.App Center List
Different organizations have different management needs for the visibility of the app list in the App Center. YiDA Dedicated edition provides flexible toggles that let each organization decide independently whether content is shown or hidden.File Download
- For attachment download scenarios in YiDA, including the data management page, form detail pages, and report data, you can manage whether the file attachment download entry is exposed in data export scenarios.
- A common scenario: office computers in an organization have security management software installed and do not allow attachments to be downloaded locally or to external USB drives. Combined with this data export control, this effectively strengthens the organization’s data security, ensuring data belongs to the organization, is stored within the organization, and does not leave the organization.
- In addition to disabling entry points, if you want to enforce further controls (such as preventing screenshots and screen recording), you can combine YiDA’s browser access restriction with DingTalk Dedicated’s security measures. For details, refer to the DingTalk Dedicated product manual.
App Governance
- As organizations increasingly encourage individuals to develop innovative apps, some degree of platform and app governance is required.
- App development, management, and publishing can be governed in YiDA Dedicated according to your organization’s customized governance principles.
Public Page Publishing
You can turn on the restriction to disable public page publishing. Once disabled, no output pages within your organization will be allowed to be published publicly. The public page publishing view is shown below:The public publishing policy for output pages only applies to newly created scenarios. Existing live business is not affected.