Knowledge Check, Attestation & Publishing
Configure the knowledge-check quiz and sign-off attestation, then publish or pause the program.
Completing a Course
After viewing the slides, a participant must pass the knowledge check and sign the attestation. Kit records these steps. Configure the quiz and attestation text before publishing the course.
The Knowledge Check
Open Knowledge check from the program editor. The SOC 2 template quiz has 7 questions covering: acceptable MFA factors, the dependency cooldown rule, what to do after clicking a phishing link, where to store passwords, how card data is handled, an employee’s role during a service disruption, and how to respond to a suspicious wire-transfer (business email compromise) request.
Each question has:
| Field | Purpose |
|---|---|
| Question | The prompt shown to the participant. |
| Answer options | The multiple-choice answers. |
| Correct answer | The option marked correct. Used for grading; never shown to participants. |
There is also a pass mark (%) for the whole quiz. The default is 80%. Adjust the questions, options, correct answers, and pass mark, then save.
Danger
The correct answer is the grading key. It is stored separately from what participants see and is never exposed in the participant view, but double-check you’ve marked the right option before publishing.
Questions with a blank prompt are dropped when you save, so you can clear a row to remove a question.
The Attestation
Open Attestation from the program editor. This is the legal sign-off each participant must agree to before completion is recorded. The seeded text summarizes the controls covered in the deck: MFA, password manager, device compliance, data handling, dependency hygiene, and incident reporting.
Like slides, the attestation supports {{ variables }}. The default text uses {{ incident_contact }} so the sign-off names the right reporting contact for your company. Edit the text to match your policies and save.
Tip
Keep the attestation specific and plain-spoken. It’s the record an auditor reads, so it should state exactly what the person is committing to.
How Completion Is Recorded
Kit marks the course complete after these three steps. The attestation can only be signed after the content is complete and the quiz has been passed:
- Every slide viewed, including the required video watch threshold if one is configured
- The knowledge check passed (at or above your pass mark)
- The attestation signed
Passing the quiz alone does not complete the training. Until the attestation is signed, the person stays In progress and shows as Incomplete on the completion register, even with a perfect quiz score.
Warning
If the register still says Incomplete after the quiz was passed, check whether the participant signed the attestation. Kit sends them straight to the attestation after they pass and follows up by email if they still haven’t signed. See Reminders & Deadlines.
Publishing
A program moves through three states: Draft → Published → Archived.
Before publishing, a course must meet three requirements. The editor shows a banner listing any that are still missing:
| Requirement | Blocker shown if missing |
|---|---|
| At least one slide | Add at least one slide. |
| A configured knowledge check | Configure the knowledge-check quiz. |
| Attestation text | Add the sign-off attestation text. |
Once all three are satisfied, the Publish button activates. Click it to set the program live.
Pausing a Program
A published program can be paused at any time with the Pause action, which moves it to Archived. Pause it when you need to take it offline, for example while you revise the content.
Quick Checklist
- Every quiz question has a correct answer marked
- The pass mark reflects your standard (default 80%)
- The attestation text matches your policies and names your incident contact
- The program has at least one slide
- No publish blockers remain in the editor banner
- You clicked Publish