# Tag Policies

> Tag policies let admins gate showback views, schedules, and remediation approvals on resource tags. A new policy editor walks teams through scoping access to a department or environment without touching IAM. Tag inheritance from AWS Organizations is honored throughout the policy engine.

Source: https://zop.dev/changelog/v2025-11
Published: 2025-11-01 · Tags: zopnight, rbac, tagging

---

Tag-based access control rules

## New

- Tag policy editor: gate ZopNight views and actions on resource tag values
- AWS Organizations tag inheritance is now respected in policy evaluation

## Improved

- Policy violations now include a one-click "request access" flow for end users

## Fixed

- Policy preview no longer mis-classifies resources missing the tag key
