6
6clicks Roadmap & Feature Requests
6
6clicks Roadmap & Feature Requests
1
In-Platform Review & Commenting for RBAs
In progress this quarter
G
george.reed@6clicks.com
May 8, 2026

The review process for RBAs currently happens outside 6clicks, leading to fragmented communication and limited visibility. This feature enables users to complete the entire RBA review phase within the platform.

Users can add requirement-level comments to provide context or feedback, assign comments to drive accountability, and receive notifications when they are mentioned or assigned. Comments can also be marked as resolved to track progress and maintain a clear audit trail.

This creates a centralized, transparent, and efficient review experience for RBAs, reducing reliance on external tools.

Key Components:

  • Requirement-Level Commenting (for RBAs): Add contextual comments directly against specific requirements during the RBA review phase.
  • Comment Assignment: Assign comments to users to drive ownership and accountability for actions.
  • Mentions & Notifications: Notify users when they are mentioned or assigned within RBA comments.
  • Comment Resolution: Mark comments as resolved to track completion of discussions.
  • Audit Trail: Maintain a clear, centralized record of all review discussions and decisions within RBAs.

Benefits:

  • Centralized Review for RBAs: Eliminates the need for external tools by bringing all review discussions into one place.
  • Improved Collaboration: Enables seamless communication between stakeholders during the RBA review phase.
  • Clear Accountability: Assignments ensure ownership of actions and reduce ambiguity.
  • Timely Responses: Notifications and mentions help users stay on top of required actions.
  • Better Visibility & Tracking: Comment resolution and audit trails provide clear insight into progress and decisions.
  • Increased Efficiency: Reduces manual effort and speeds up the overall RBA review workflow.

Example use case:

During an ISO 27001 RBA, a reviewer flags a vague response to an access control requirement and adds a comment, assigning it to the IT owner. The IT owner receives a notification, provides clarification, and attaches supporting details. Once reviewed, the comment is marked as resolved, maintaining a clear audit trail within the RBA.

Comments
G
george.reed@6clicks.com
May 8, 2026
Set the status to
In progress this quarter
0