AI Acceptable Use Policy
A starter policy for approved tools, sensitive data, model use, human review, and prohibited workflows.
Free templates
Copy-ready templates for governing AI tools, reviewing MCP servers, briefing executives, and responding to agentic security incidents.
A starter policy for approved tools, sensitive data, model use, human review, and prohibited workflows.
A response checklist for prompt injection, exposed model keys, runaway agents, unsafe tool calls, and data leakage.
A review checklist for local MCP servers, tokens, filesystem access, network access, and tool permissions.
A concise board-ready structure for AI adoption, control maturity, risk scenarios, and investment requests.
A practical rollout checklist for Claude Code, Codex, Cursor, and other coding assistants in security-sensitive teams.
Questions for vendors handling prompts, customer data, model logs, subprocessors, training data, retention, and incident disclosure.
Use this template to define which AI systems are approved, what data may be used, what actions require human review, and which workflows are prohibited.
Use this when an AI tool leaks data, executes unintended actions, follows malicious instructions, or exposes credentials.
Use this structure for a one-page executive update: current AI adoption, top risk scenarios, control maturity, incidents or near misses, investment needs, and 90-day milestones.