Skip navigation
Product & Engineering

Take control of policies with User-Group Policy and Bulk Apply

Have you ever wished managing policies was … easier?

Maybe you’ve wanted to restrict access for a certain group of users across all applications—but found yourself stuck clicking through every single application to make it happen. Or maybe you wanted to pilot a new control with a small set of users — but the setup felt more like a marathon than a test run.

If either of those scenarios sound familiar, we have some good news. We’re introducing two new capabilities designed to give you more flexibility and control while cutting down on repetitive work: User-Group Policy and Bulk Apply.

User-Group policy: Target restrictions at the user level

Until now, custom policies could only be applied at two levels: Application and Application- Group. That works, but sometimes the real question isn’t what application they are logging into—it’s who’s logging in at all.

With User-Group Policy, you can now apply policies directly to specific user groups—no matter which applications those users log into. That means:

  • Apply restrictions globally to specific user groups.

  • Pilot new security controls with small test groups before rolling out to everyone.

  • Simplify management when your policies map more naturally to people than to applications.

Here’s how it works:

  • Policies applied at the Application or Application-Group level will always take precedence.

  • User-Group policies apply underneath those layers, ensuring you can still set broad rules for specific user groups without undoing stricter application-level rules.

Think of it like adding new gear to a bike. You don’t have to relearn how to ride — you just get another option when you need it.

Policy Calculator

And remember: if you ever want to see which policies apply when a user logs into an application, use the Policy Calculator. It’s there to show you the final outcome so you can test and verify with confidence.

Bulk Apply: Make policy changes at scale easier

Creating policies is only half the story—the other half is rolling them out without spending your afternoon buried in app settings. That’s where Bulk Apply and Unassign come in.

With Bulk Apply and Unassign, you can:

  • Apply a policy to multiple applications, groups, or application-groups all at once.

  • Unassign a policy when one or more applications or groups no longer need it.

  • Save time and reduce errors that come from repetitive, click-heavy work.

Manage it all from the Policy page

With Bulk Apply, rolling out a policy is simple and clear—and you do it all right from the Policy page.

Policies dashboard

You’ll see exactly where you can apply a policy—whether to Applications, Application-Groups, or User-Groups—so there’s no guesswork. Selecting targets is quick, with search and filters to help you narrow things down.

If there are pre-existing policies, you can order policies to control which one applies first, giving you even more flexibility.

Before anything is applied, a clear summary gives you visibility into what will change. It’s designed to give you confidence and help prevent mistakes.

Apply policy dashboard

Once applied, tags on the Policy page show where and how the policy is deployed. And if you need to undo something, Unassign makes rolling it back just as easy.

Unassign policy dashboard

Want the full, step-by-step breakdown? Check out our Policy documentation for all the details.

Ready to try it out?

With User-Group Policy you get people-focused controls. With Bulk Apply you get the power to deploy those controls quickly and consistently. And with the Policy Calculator always available, you can preview exactly how those layers combine—so you never have to guess.

Both features are now Generally Available. Head to your Policy page and start using them today—or dive into the documentation for the full step-by-step guide.