---
title: dotCMS | Visual Headless CMS for Compliance-led Enterprises
description: Discover dotCMS, the leading headless CMS built for multi-site management. Empower your teams with flexible content modeling, omnichannel delivery, and enterprise scalability.
url: https://www.dotcms.com/
api-catalog: https://new-dotcms-com.vercel.app/.well-known/api-catalog
---

# dotCMS | Visual Headless CMS for Compliance-led Enterprises

## The compliance-led CMS to run all your websites.  **Govern every change. Put AI to work safely.**

A headless platform where business teams publish visually, and developers build anything from your main site to your intranet, using any front-end framework.

[Talk to Sales about Talk to Sales](https://www.dotcms.com/demo-request)Trusted by banks, hospitals, governments, manufacturers, and other regulated enterprises.![Estes logo](/dA/ee043beb3f/logo/Estes_Express_Lines_logo.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Telus logo](/dA/c09614483e/logo/telus.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Southern Phone logo](/dA/b1cf7b1e31/logo/SouthernPhone_border_0.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Arc health logo](/dA/648419f12f/logo/ARC.svg?language_id=1/100q&w=1024&language_id=1)![BNP Paribas logo](/dA/cd76c1f28e/logo/BNP_Paribas.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Ctt logo](/dA/c0429a4ddc/logo/ctt.svg?language_id=1/100q&w=1024&language_id=1)![UHN logo](/dA/c7c88c02aa/logo/uhn-logo-with-michener.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Estes logo](/dA/ee043beb3f/logo/Estes_Express_Lines_logo.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Telus logo](/dA/c09614483e/logo/telus.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Southern Phone logo](/dA/b1cf7b1e31/logo/SouthernPhone_border_0.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Arc health logo](/dA/648419f12f/logo/ARC.svg?language_id=1/100q&w=1024&language_id=1)![BNP Paribas logo](/dA/cd76c1f28e/logo/BNP_Paribas.png?language_id=1/1024maxw/16q&w=1024&language_id=1)![Ctt logo](/dA/c0429a4ddc/logo/ctt.svg?language_id=1/100q&w=1024&language_id=1)![UHN logo](/dA/c7c88c02aa/logo/uhn-logo-with-michener.png?language_id=1/1024maxw/16q&w=1024&language_id=1)

Take a Virtual Tour of dotCMS

demo.dotcms.com![Demo preview](/dA/2a507c93eccce4de06a983f22d8826f0/75q/1024maxw/50q?w=1024&language_id=1)Explore Live DemoGovernance by design

## Governance is the architecture.

dotCMS enforces governance at the platform level. Granular access, approval workflows, audit trails, version history, rollback, and independent certifications give compliance-led teams the control they need to move faster.

### Access

Control who can view, create, review, approve, and publish through granular roles, permissions, SSO, and MFA.

### Accountability

Maintain a complete audit trail showing who changed what and when.

### Version Control

Compare versions, require approval before publishing, and roll back changes when needed.

### Proof

Meet security and AI governance requirements with ISO 27001, ISO 42001, SOC 2 Type II, and TX-RAMP.

## EXPLORE Your Use Case

### Built around the way **your**

### **industry works**

See how dotCMS fits the workflows, experiences, and operational realities of your sector.

500+

websites

dotCMS powers over 500 websites for one of the nation's largest healthcare providers.

HIPAA-Ready

### Healthcare

Manage 60+ hospital sites with fewer bottlenecks and more control.

[Learn more](/demo-request/healthcare)

## EXPLORE THE PLATFORM

### One governed platform for every **site, team, and AI agent.**

From visual authoring to global delivery, dotCMS brings every site and content operation under one set of roles, workflows, permissions, and audit trails. Deploy on-prem, in your cloud, or in ours.

BuildDeployManageOptimize

### Build

Give developers the freedom to use their preferred front-end frameworks while content teams create, preview, and manage experiences visually.

- Universal Visual Editor — build and preview content in context
- Headless delivery — deliver through REST and GraphQL APIs to any framework or channel
- Reusable content — reuse structured content, components, and templates across sites and brands

### Deploy

Meet infrastructure, security, and data-residency requirements without locking your content strategy into one deployment model.

- Flexible deployment — deploy on-prem, in your cloud, or in ours
- One platform — run websites, portals, intranets, and applications from one platform
- Long-term flexibility — change deployment models as your infrastructure and compliance strategy evolves

### Manage

Enforce roles, permissions, approvals, audit trails, and version history across every site and every person or AI agent acting on your content.

- Approval workflows — create multi-step workflows aligned with your publishing policies
- Auditability — track who changed what and when through audit trails and version history
- Control and recovery — compare, review, approve, and roll back changes across the portfolio

### Optimize

Use analytics, testing, and personalization to improve performance without bypassing the workflows and controls protecting your content.

- Analytics — measure engagement by content, site, audience, and channel
- Testing and personalization — improve experiences within the same governed platform
- Content performance — identify high-performing content and reuse it across the digital portfolio

![Build illustration](/dA/21099e56b0a3bad0f8d18ff06bca560e/640maxw/22q?w=640&language_id=1)![Deploy illustration](/dA/0dee9dd894b4df33c5863b7d3fcbc1a0/640maxw/22q?w=640&language_id=1)![Manage illustration](/dA/44f08ea65a712a84bf88aebfb49af269/640maxw/22q?w=640&language_id=1)![Optimize illustration](/dA/f50a9871250763d72dc6750be40af924/640maxw/22q?w=640&language_id=1)Build

Give developers the freedom to use their preferred front-end frameworks while content teams create, preview, and manage experiences visually.

![Build illustration](/dA/21099e56b0a3bad0f8d18ff06bca560e/640maxw/22q?w=640&language_id=1)Deploy

Meet infrastructure, security, and data-residency requirements without locking your content strategy into one deployment model.

![Deploy illustration](/dA/0dee9dd894b4df33c5863b7d3fcbc1a0/640maxw/22q?w=640&language_id=1)Manage

Enforce roles, permissions, approvals, audit trails, and version history across every site and every person or AI agent acting on your content.

![Manage illustration](/dA/44f08ea65a712a84bf88aebfb49af269/640maxw/22q?w=640&language_id=1)Optimize

Use analytics, testing, and personalization to improve performance without bypassing the workflows and controls protecting your content.

![Optimize illustration](/dA/f50a9871250763d72dc6750be40af924/640maxw/22q?w=640&language_id=1)AI inside your guardrails

## Put AI to work within your existing controls

AI agents operate in dotCMS as actors with assigned roles, permissions, workflows, and audit trails. They draft multi-step work, but the approval process still determines what reaches production and every action remains traceable and reversible.

### Your approved environment

Use approved models and cloud providers while keeping AI activity inside your established governance model.

### Same audit trail

Keep AI-assisted actions visible, attributable, reviewable, and reversible.

### Same workflows

When a role requires human approval before publishing, the agent follows that requirement too.

### Same roles

Assign an agent a dotCMS role and limit its actions through the permissions associated with that role.

[Explore the dotCMS MCP server about Explore the dotCMS MCP server](https://www.dotcms.com/product/dotcms-mcp)

### Your Path to**Enterprise CMS**

Whether you are validating the architecture, exploring a focused use case, planning a migration, or preparing for implementation, choose the path that matches your evaluation process.

### Try dotCMS before you commit.

Business Source License is free for non-production use.

[Get Started](https://www.dotcms.com/bsl)

### Explore dotCMS through an intranet or focused use case.

Enterprise grade CMS for intranets and portals.

[Learn More](https://www.dotcms.com/solutions/intranet-portal)

### Validate the APIs and architecture.

REST and GraphQL APIs, SDKs, and integration guides for developers.

[View Docs](https://dev.dotcms.com/)

### Plan your CMS migration.

Structured migration from assessment to go-live.

[Talk to Sales](https://www.dotcms.com/demo-center)

### Find an implementation partner.

Certified implementation partners to help plan, build, and launch.

[Find Partners](https://www.dotcms.com/partners)Developers & ITMarketing & CommunicationsGovernance & Compliance

## ## CMS developers**actually enjoy**

Ship modern front ends with headless APIs - while dotCMS handles multi-site scale, governance, and enterprise deployment needs.

### Headless-First APIs

REST and GraphQL for any front end and any channel.

### Framework Agnostic

React, Next.js, Angular, Vue - bring your stack.

### Git-Friendly Workflows

CI/CD-ready workflows for predictable releases.

### Multi-Site Architecture

Run many sites from one platform with shared models and controls.

### CLI + SDKs

Local dev tools, scaffolding, and automation for faster builds.

### Content Modeling

Structured content types with relationships for reuse at scale.

[View Documentation](https://dev.dotcms.com)[Explore SDKs](https://www.dotcms.com/developers/sdks)

## ## Take back control of**your content**

Create, approve, and publish updates visually - with workflows and permissions that keep compliance-led teams safe.

### Universal Visual Editor

Edit in-context on real pages without breaking headless delivery.

### Visual Page Building

Drag-and-drop components with real-time preview.

### Multi-Channel Delivery

Publish once across sites, portals, and experiences.

### Approval Workflows

Multi-step reviews for legal, brand, and compliance teams.

### Personalization

Target content by audience, location, or behavior.

### Experiments + Testing

A/B test content and iterate with confidence.

[See Marketing Solutions](https://www.dotcms.com/product/marketer)[Interactive Demo](https://www.dotcms.com/tour)

## ## Prove **who changed what**

Enforce access, accountability, approval, and recovery requirements across every site and every action.

### Audit Trails + Version History

Know who changed what, when, and why.

### Approval Before Publishing

Prevent content from going live until required reviews are complete.

### Governance Controls

Granular permissions and role-based publishing.

### Governed AI

Apply the same roles, permissions, workflows, and auditability to AI-assisted work.

### Operational Reliability

Scale across high-volume environments.

### Flexible Deployment

Cloud, on-premise, or Cloud Anywhere based on policy.

[Security & Compliance](https://www.dotcms.com/product/security-compliance)[Talk to Sales](https://www.dotcms.com/demo-center)![Developers & IT](/dA/06386f437f/asset/dotcms-homepage-persona-developer.jpeg?language_id=1/1024maxw/50q&w=1024&language_id=1)![Marketing & Communications](/dA/37f8c31147/asset/dotcms-homepage-persona-marketer.jpeg?language_id=1/1024maxw/50q&w=1024&language_id=1)![Governance & Compliance](/dA/4fd86a44b0/asset/dotcms-homepage-persona-business.jpeg?language_id=1/1024maxw/50q&w=1024&language_id=1)// Quick start with dotCMSimport { createDotCMSClient } from '@dotcms/client'  export const client = createDotCMSClient({...})  const content = await client.getContent()Content Workflow1DraftMarketing2ReviewLegal3ApproveBrand4PublishAutoEnterprise Dashboard47Sites Managed12.4KContent Items2.3hAvg. Publish Time99.8%Compliance Rate