A new version resets signatures, a minor edit does not
9 days ago the password policy (POL-SEC-002) was changed to require multifactor sign-in. That was a material change, so everyone had to sign again: 5 of 25 current so far. Nobody is overdue yet because each person has 30 days.
Compare the security incident policy (POL-SEC-003): its latest version only changed a phone extension, so it was approved as a minor edit and earlier signatures carried forward. The compliance officer makes that call explicitly when approving.
A bar stays at the top of every screen so you can come straight back to this step.