AI policy and acceptable use
A governance policy and a staff acceptable-use standard, fitted to your position and reviewed by your counsel.
Policies, templates, and workflows to govern how your organization uses AI.
A starting set of policies and workflows for governing AI. It covers acceptable use, risk assessment, an inventory of models and agents, and ongoing monitoring. We fit it to your risk tolerance and connect it to how your teams already release work.
Download the PDFDocumented answers when a regulator, customer, or board asks how you govern AI.
The problem it solves, what is included, how it works, the technical components, and how we adapt it with you.
Your download has started.
We also emailed the link to . It stays valid for 7 days.
Download didn't start? Get the PDF
Want to see how it would fit your data? Talk to us.
AI is already in use: vendor features, pilots, models, and agents. Policies are drafts, the inventory is a spreadsheet nobody updates, and every customer security questionnaire starts from scratch.
The AI Governance Starter gives you working governance records on day one, a risk tier for every system, and a check that fails when records fall out of date.
Four parts, each adapted to your data, platforms, and controls. What we adapt for you is yours to keep.
A governance policy and a staff acceptable-use standard, fitted to your position and reviewed by your counsel.
A questionnaire with scoring and controls per tier, and an inventory of models, vendor AI features, and agents.
A card per live system and a register of 18 starting controls with owners and evidence.
Generated on request for auditors, customer security questionnaires, and board reports.
Inventory, control register, assessments, and cards in your repository, reviewed like code.
Roles, approved tools, and prohibited uses to match your position and the law where you operate.
Scores, thresholds, and controls per tier, approved by your AI governance committee.
An owner, enforcement method, evidence, and honest status for each control.
Every AI system in use today, assessed, with its gaps listed.
Any change that leaves a production system without a current review, card, or control fails.
Vendor-neutral Python and configuration, Azure first, with tests included from the start.
A demand forecast model, a support-answers assistant, and an invoice-triage agent, each assessed and carded.
The pack can cover every system, or only the ones a given customer uses. A coverage gap on a production system fails the check.
Policies and questionnaire fitted to your risk tolerance, with review by your counsel.
Every system, model, vendor AI feature, and agent listed and assessed.
Records tied to how your teams already release work, and checked in CI.
Evidence packs for audits, customer questionnaires, and board reports.
You keep the policies, the records, and the check, in plain CSV, YAML, and Markdown that open in Excel and import into a GRC tool later.
We state the limits up front, and we recommend tools based on fit. We do not resell platforms.
Get the 10-page PDF to share with your team, or tell us the decision you want to improve and we will tell you whether the AI Governance Starter fits.