How to Automate ComplySci (COMPLY)

ComplySci, now sold as COMPLY, already automates the employee side: broker feeds into trade monitoring, preclearance rules, restricted lists, attestations and a compliance calendar. What stays manual is gathering from everywhere else, especially across several client firms at once. An agent such as WebRun does that collecting and leaves the sign-off alone.

The compliance calendar became the real to-do list

ComplySci is the platform investment advisers, broker-dealers and private funds run their compliance programme on. The company behind it now trades as COMPLY, having brought ComplySci, RIA in a Box and NRS under one name: the platform is Comply Platform, the adviser product is Comply for RIA and the consulting arm is ComplianceGuardian. Plenty of people still say ComplySci, and they mean the same software.

What sits inside it is the programme in working form. Employee brokerage accounts and the trades running through them. Requests to buy something, waiting on approval. A restricted list. Certifications and attestations with names against them. A calendar of dates the firm set for itself, and the annual review those dates lead up to.

Two sorts of people touch it. The chief compliance officer and whoever helps them, who are in it daily. And everybody else in the firm, who is in it twice a year and finds it inconvenient both times.

Most of the quarter goes on reminding people twice

The part of compliance that takes judgement is not the part that fills the week. The week fills with fetching and reminding.

Somebody pulls the list of employees carrying an unfinished certification and works down it writing near-identical emails. Somebody spots that the restricted list moved this morning and tells the desk. Somebody copies a run of dates out of the calendar into a status note. Somebody opens a state registration site to see whether anything has changed. And a consultant looking after twelve advisory firms does all four of those twelve separate times, through twelve separate logins, before lunch.

None of it is hard. All of it is hours, and they land on the same days every quarter, which is why nobody ever gets round to fixing them.

The comply.com homepage, the app these three jobs run in. ComplySci (COMPLY)
Outstanding attestations on one list Everyone still carrying an unfinished certification, gathered across every firm you look after and sorted by how long it has been sitting.
Restricted list changes, caught the same hour Today's list read against yesterday's, with the names added and the names removed written down and put in front of the people who watch them.
Dates counted down, not hunted for Everything in the compliance calendar falling inside the next month, on one page, instead of found by opening each firm in turn.

Trade monitoring watches the accounts it has been given

The platform does a great deal on its own, and a firm that has not switched all of it on should do that before buying anything else. Employee trading is recorded and monitored from direct broker feeds, and preclearance requests run through workflows that apply the firm's own rules and its restricted lists, with parameters set so routine requests can clear without somebody reading each one. The code of ethics work sits beside it: certifications, attestations, gifts and outside business activities, with a view of who has not answered yet. The compliance calendar holds the firm's dates, risk assessments and the annual review hang off those dates, and reporting turns any of it into something you can put in front of a board.

Every one of those works on what has been connected to it.

The custodian portal a smaller adviser actually logs into, the state's own registration lookup, the marketing piece sitting in a shared drive waiting to be looked at, the public record on a relationship an employee just disclosed: none of that reports in by itself. And a consultant with a dozen client firms gets a dozen separate views, because the platform is scoped to a firm rather than to the person minding twelve of them.

The gathering ahead of a review can finish overnight

Most of what fills the week before an annual review is fetching, and fetching does not have to happen in office hours.

A dozen client firms can be read in a single pass each morning, with everyone carrying an unfinished certification pulled onto one named list, sorted by how long it has been outstanding, and the reminder written but not sent. Restricted list changes can be caught in the hour they happen: today's list against yesterday's, the names added and the names removed, filed where your records live and put in front of the desk.

Dates behave the same way. Everything in the calendar can be counted down, so the next thirty days are one page instead of a monthly hunt through each firm in turn. Preclearance requests sitting past your own turnaround can be surfaced with the requester and the age. A registration status can be read off the state's own site and set beside what the platform holds. The documents somebody has asked to see can be gathered into one folder, with the ones that are missing named rather than discovered later.

None of that needs an API or a slice of somebody's development time. It needs a login, a schedule and a list of what may be opened.

The sign-off belongs to the compliance officer

Gathering and deciding are two different jobs, and only one of them can safely be handed over.

WebRun does the gathering. It signs into ComplySci and whatever else you use in a real browser, under your own logins, on a schedule, with a written list of what it may open. It reads, compares and prepares: a list, a difference, a folder, a draft. Nothing is attested, certified, filed or approved by it, and nothing goes to an employee, a client or anybody else until a qualified person has read it and sent it themselves.

The cards below are the gathering jobs that already run this way.

Questions people ask

Can it approve a preclearance request or mark an attestation complete?

No. It reads what is outstanding, sorts it and writes the reminder, then stops. Approving a request, completing an attestation, signing anything or making a filing is work for a qualified person, and the agent is set up so it cannot do those things by accident.

Our adviser clients each sit in their own tenant. Does that mean a run per client?

It signs into each one in turn, the way you do, and puts the results side by side. The output is one list across all of them, so you stop rebuilding the same picture twelve times before a Monday meeting. Nothing crosses between client records.

Employee brokerage data sits in there. Is signing something into it sensible?

It uses the login and permissions you give it, so it sees exactly what that user sees and nothing more. Give it a read-only account where one exists. You also write down what it may open, and it works inside that, in a browser, with a record of what it did.

10 ready-made ComplySci (COMPLY) workflows

Each one names the apps it touches and the exact steps it takes. Open one to read what it will do, then turn it on.

Automated Restricted List Update Alerts
Every hour, WebRun checks ComplySci across your clients for restricted list changes, files the updated list in Egnyte, and alerts your compliance team in Slack the same hour it changes.
ComplySci (COMPLY)EgnyteSlack
Automated Regulatory Change Alert Digests
Every morning, WebRun checks SEC.gov for new rule releases, matches them against each client's compliance calendar in ComplySci, and posts your team a Slack digest of what applies and to whom.
SEC.govComplySci (COMPLY)Slack
Automated ComplySci Trading Exception Alerts
Every morning, WebRun checks ComplySci across your clients for new personal trading exceptions, drafts an Outlook request for explanation to the employee involved, and alerts your team in Slack the same day.
ComplySci (COMPLY)OutlookSlack
Automated RIA Client Onboarding Checklists
When a new client is added to ComplySci, WebRun checks their compliance program setup, tracks the onboarding checklist in Google Sheets, and checks DocuSign for the signed engagement agreement.
ComplySci (COMPLY)Google SheetsDocuSign
Automated Compliance Mock Audit Checklists
Every Monday, WebRun checks each client's compliance program in ComplySci against your standing mock audit checklist, logs every gap to Google Sheets, and posts your team a Slack readiness summary by client.
ComplySci (COMPLY)Google SheetsSlack
Automated Marketing Rule Review Checklists
When a new marketing piece is submitted, WebRun checks it in ComplySci against the SEC Marketing Rule requirements, logs the outcome to Google Sheets, and posts your team a Slack alert for anything needing revision.
ComplySci (COMPLY)Google SheetsSlack
Automated Form ADV Filing Deadline Reminders
Every Monday, WebRun checks ComplySci for material changes at each client that need disclosure, compares them against the firm's filed status on SEC IAPD, and posts your team a Slack countdown of who's still due.
ComplySci (COMPLY)SEC IAPDSlack
Automated Code of Ethics Attestation Reminders
Every Monday, WebRun checks ComplySci across your RIA clients for employees who haven't completed their code of ethics attestation, drafts a Gmail reminder naming who's still outstanding, and posts your team a Slack summary by client.
ComplySci (COMPLY)GmailSlack
Automated Client Exam Readiness Summaries
Every Monday, WebRun compiles each client's exam readiness status from ComplySci into Google Sheets and drafts a Gmail readiness memo to the client's compliance officer, left unsent for your review.
ComplySci (COMPLY)Google SheetsGmail
Automated Annual Compliance Review Scheduling
Every Monday, WebRun checks ComplySci for each client's last annual compliance review date, flags anyone due within 60 days, logs the schedule in Google Sheets, and holds a Zoom slot with your reviewer.
ComplySci (COMPLY)Google SheetsZoom

Want one of these running on your own ComplySci (COMPLY)?

Show WebRun the process once and it will run it on schedule, in your own private browser environment.