dot CMS

The compliance-led CMS to run all your websites. Govern every change. Put AI to work safely.

A headless platform where business teams publish visually, and developers build anything from your main site to your intranet, using any front-end framework.

Trusted by banks, hospitals, governments, manufacturers, and other regulated enterprises.
Estes logo
Telus logo
Southern Phone logo
Arc health logo
BNP Paribas logo
Ctt logo
UHN logo
Estes logo
Telus logo
Southern Phone logo
Arc health logo
BNP Paribas logo
Ctt logo
UHN logo

Take a Virtual Tour of dotCMS

demo.dotcms.com
Demo preview
Governance by design

Governance is the architecture.

dotCMS enforces governance at the platform level. Granular access, approval workflows, audit trails, version history, rollback, and independent certifications give compliance-led teams the control they need to move faster.

Access

Control who can view, create, review, approve, and publish through granular roles, permissions, SSO, and MFA.

Accountability

Maintain a complete audit trail showing who changed what and when.

Version Control

Compare versions, require approval before publishing, and roll back changes when needed.

Proof

Meet security and AI governance requirements with ISO 27001, ISO 42001, SOC 2 Type II, and TX-RAMP.

EXPLORE Your Use Case

Built around the way your

industry works

See how dotCMS fits the workflows, experiences, and operational realities of your sector.

500+

websites

dotCMS powers over 500 websites for one of the nation's largest healthcare providers.

HIPAA-Ready

Healthcare

Manage 60+ hospital sites with fewer bottlenecks and more control.

Learn more

EXPLORE THE PLATFORM

One governed platform for every site, team, and AI agent.

From visual authoring to global delivery, dotCMS brings every site and content operation under one set of roles, workflows, permissions, and audit trails. Deploy on-prem, in your cloud, or in ours.

Build

Give developers the freedom to use their preferred front-end frameworks while content teams create, preview, and manage experiences visually.

Build illustration
Deploy

Meet infrastructure, security, and data-residency requirements without locking your content strategy into one deployment model.

Deploy illustration
Manage

Enforce roles, permissions, approvals, audit trails, and version history across every site and every person or AI agent acting on your content.

Manage illustration
Optimize

Use analytics, testing, and personalization to improve performance without bypassing the workflows and controls protecting your content.

Optimize illustration
AI inside your guardrails

Put AI to work within your existing controls

AI agents operate in dotCMS as actors with assigned roles, permissions, workflows, and audit trails. They draft multi-step work, but the approval process still determines what reaches production and every action remains traceable and reversible.

Your approved environment

Use approved models and cloud providers while keeping AI activity inside your established governance model.

Same audit trail

Keep AI-assisted actions visible, attributable, reviewable, and reversible.

Same workflows

When a role requires human approval before publishing, the agent follows that requirement too.

Same roles

Assign an agent a dotCMS role and limit its actions through the permissions associated with that role.

Your Path to Enterprise CMS

Whether you are validating the architecture, exploring a focused use case, planning a migration, or preparing for implementation, choose the path that matches your evaluation process.

Try dotCMS before you commit.

Business Source License is free for non-production use.

Get Started

Explore dotCMS through an intranet or focused use case.

Enterprise grade CMS for intranets and portals.

Learn More

Validate the APIs and architecture.

REST and GraphQL APIs, SDKs, and integration guides for developers.

View Docs

Plan your CMS migration.

Structured migration from assessment to go-live.

Talk to Sales

Find an implementation partner.

Certified implementation partners to help plan, build, and launch.

Find Partners

CMS developers actually enjoy

Ship modern front ends with headless APIs - while dotCMS handles multi-site scale, governance, and enterprise deployment needs.

Headless-First APIs

REST and GraphQL for any front end and any channel.

Framework Agnostic

React, Next.js, Angular, Vue - bring your stack.

Git-Friendly Workflows

CI/CD-ready workflows for predictable releases.

Multi-Site Architecture

Run many sites from one platform with shared models and controls.

CLI + SDKs

Local dev tools, scaffolding, and automation for faster builds.

Content Modeling

Structured content types with relationships for reuse at scale.

Take back control of your content

Create, approve, and publish updates visually - with workflows and permissions that keep compliance-led teams safe.

Universal Visual Editor

Edit in-context on real pages without breaking headless delivery.

Visual Page Building

Drag-and-drop components with real-time preview.

Multi-Channel Delivery

Publish once across sites, portals, and experiences.

Approval Workflows

Multi-step reviews for legal, brand, and compliance teams.

Personalization

Target content by audience, location, or behavior.

Experiments + Testing

A/B test content and iterate with confidence.

Prove who changed what

Enforce access, accountability, approval, and recovery requirements across every site and every action.

Audit Trails + Version History

Know who changed what, when, and why.

Approval Before Publishing

Prevent content from going live until required reviews are complete.

Governance Controls

Granular permissions and role-based publishing.

Governed AI

Apply the same roles, permissions, workflows, and auditability to AI-assisted work.

Operational Reliability

Scale across high-volume environments.

Flexible Deployment

Cloud, on-premise, or Cloud Anywhere based on policy.

Developers & IT
Marketing & Communications
Governance & Compliance
// Quick start with dotCMS
import { createDotCMSClient } from '@dotcms/client'
export const client = createDotCMSClient({...})
const content = await client.getContent()
Content Workflow
1
DraftMarketing
2
ReviewLegal
3
ApproveBrand
4
PublishAuto
Enterprise Dashboard
47
Sites Managed
12.4K
Content Items
2.3h
Avg. Publish Time
99.8%
Compliance Rate

Explore dotCMS for your organization

image

dotCMS Named a Major Player

In the IDC MarketScape: Worldwide AI-Enabled Headless CMS 2025 Vendor Assessment

image

Explore an interactive tour

See how dotCMS empowers technical and content teams at compliance-led organizations.

image

Built for Compliance. Certified for AI.

dotCMS is ISO 27001 and ISO 42001 certified — The first and only CMS platform with independently verified security and AI governance.