A nonprofit may have a written policy that says one thing while employees routinely do something different.
The purchasing policy requires two approvals, but staff rely on informal email consent. The volunteer handbook describes one incident-reporting process, while program managers teach another. The official remote-work procedure exists in SharePoint, but employees follow instructions copied from an old message.
This gap between documented policy and daily practice creates inconsistency, audit risk, and confusion about which instructions are authoritative.
Why Policies Stop Reflecting Reality
Policies often change without a complete implementation process.
Leadership approves a revision, but outdated files remain available. Managers explain the new process verbally, yet training materials are not updated. Employees develop workarounds because the documented procedure is difficult to follow or no longer fits operational needs.
Over time, informal behavior becomes the real process.
To retain institutional knowledge, nonprofits must document both approved policy and the practical procedures employees are expected to follow. They also need a clear method for identifying conflicts between the two.
The National Council of Nonprofits provides governance and compliance guidance that can help organizations evaluate whether policies support responsible operations and accountability.
Establish an Authoritative Policy Source
SharePoint can serve as the approved repository for current policies, procedures, templates, and implementation guidance.
Each policy should include:
- An owner responsible for updates
- An approval date
- A scheduled review date
- Links to related procedures and forms
- Clear identification of superseded versions
- Instructions for questions or exceptions
SharePoint version history helps preserve changes, but document history alone does not determine which policy is currently approved. Organizations still need governance rules for ownership, review, and publication.
Microsoft’s SharePoint governance guidance explains how organizations can establish ownership and controls for shared information.
Make Approved Guidance Easier to Follow
Maisy gives employees a conversational way to retrieve current guidance without searching through folders.
Pixeldust configures Maisy through Copilot Studio so staff can ask questions such as:
- What approvals are required for this purchase?
- Which incident-reporting procedure is current?
- Can a manager make an exception?
- Where is the approved form?
- Who owns this policy?
Copilot Studio provides the conversational layer, while SharePoint remains the governed knowledge source. Microsoft 365 permissions determine which content each employee can retrieve.
The accounting system remains authoritative for transactions. The HR platform remains authoritative for employee records. The case-management system remains authoritative for participant information. SharePoint contains approved guidance for using those systems correctly.
Sensitive HR, legal, financial, and participant materials require separate permission boundaries. General procedures should never expose confidential records simply because they are referenced by a policy.
Human Judgment Resolves Policy Conflicts
Maisy can identify the approved written procedure, but it should not decide whether staff behavior violates policy, authorize an exception, interpret legal requirements, or determine disciplinary action.
Those decisions remain with leadership, HR, compliance staff, attorneys, accountants, and program experts.
AI improves access to approved information. It does not replace organizational authority or professional judgment.
How Maisy Helps
Pixeldust compares written policies with the questions employees ask and the procedures they actually follow. We identify outdated documents, conflicting instructions, undocumented workarounds, and unclear ownership.
Approved content is organized in SharePoint with appropriate permissions, review dates, and authoritative-system links. Maisy is then configured through Copilot Studio and tested against realistic operational questions.
This helps nonprofits expose policy gaps before they become compliance problems, provide employees with one approved answer, and retain institutional knowledge as procedures, staff, and organizational requirements change.



