AI policy and acceptable use
A governance policy and a staff acceptable-use standard, fitted to your position and reviewed by your counsel.
Policies, templates, and workflows to govern how your organization uses AI.
Download the PDFDocumented answers when a regulator, customer, or board asks how you govern AI.
The problem it solves, what is included, how it works, the technical components, and how we adapt it with you.
Your download has started.
We also emailed the link to . It stays valid for 7 days.
Download didn't start? Get the PDF
Want to see how it would fit your data? Talk to us.
AI is already in use: vendor features, pilots, models, and agents. Policies are drafts, the inventory is a spreadsheet nobody updates, and every customer security questionnaire starts from scratch.
The AI Governance Starter gives you working governance records on day one, a risk tier for every system, and a check that fails when records fall out of date.
Four parts, each adapted to your data, platforms, and controls.
A governance policy and a staff acceptable-use standard, fitted to your position and reviewed by your counsel.
A questionnaire with scoring and controls per tier, and an inventory of models, vendor AI features, and agents.
A card per live system and a register of 18 starting controls with owners and evidence.
Generated on request for auditors, customer security questionnaires, and board reports.
You keep the policies, the records, and the check, in plain CSV, YAML, and Markdown that open in Excel and import into a GRC tool later.
Inventory, control register, assessments, and cards in your repository, reviewed like code.
Roles, approved tools, and prohibited uses to match your position and the law where you operate.
Scores, thresholds, and controls per tier, approved by your AI governance committee.
An owner, enforcement method, evidence, and honest status for each control.
Every AI system in use today, assessed, with its gaps listed.
Any change that leaves a production system without a current review, card, or control fails.
Vendor-neutral Python and configuration, Azure first, with tests included from the start.
A demand forecast model, a support-answers assistant, and an invoice-triage agent, each assessed and carded.
The pack can cover every system, or only the ones a given customer uses. A coverage gap on a production system fails the check.
Have a question about the AI Governance Starter?
Get an answer from our pages in seconds, with links to the sources.
Share the overview with your team, or tell us the decision you want to improve and we will tell you whether it fits.