Secure AI Readiness Check

Before AI reaches production, test the foundations around it.

Review one proposed AI use case across data, identity, platform, security and operational control. The check takes approximately five minutes. Answers are processed only to return the result and are not saved by this template.

Begin the Private Check

Private by design

Your selections are used only to calculate the result. Do not enter credentials or confidential environment details.

Directional, not diagnostic

The result is a maturity signal—not a certification, privacy opinion, penetration test or security audit.

Built for one use case

Answer with one defined workflow in mind so the result remains useful and appropriately bounded.

01Use case and data
02Identity and retrieval
03Security and oversight
04Platform and operations
Four Control Areas

Select the response that best reflects the current state.

Choose Yes, Partly or No. If evidence is unavailable, choose Partly or No rather than relying on an assumption.

Purpose & Information

Use Case & Data

Confirm what the system is intended to do and what organizational information may reach it.

Control objective A bounded use case with known data exposure.

Is the use case defined, owned and connected to a measurable outcome?
Is sensitive, confidential or regulated data identified?
Have model retention, training, residency and confidentiality terms been reviewed?
Access Boundaries

Identity & Retrieval

Determine whether people, services and retrieved content remain inside intended authorization boundaries.

Control objective Traceable, least-privilege access.

Are user, service and model permissions connected to defined identities?
Does retrieval preserve source-system authorization before content reaches the model?
Safe Behaviour

Security & Oversight

Establish how unsafe behaviour, unintended disclosure and consequential outputs will be detected and controlled.

Control objective Tested safeguards with accountable human oversight.

Has the workflow been tested for manipulation, disclosure and unsafe tool actions?
Are human approval and escalation requirements defined?
Can relevant access, model activity, outputs and administrative changes be traced?
Production Control

Platform & Operations

Confirm that performance, cost, support, continuity and change responsibilities are understood before scale.

Control objective An operable platform with visible ownership and cost.

Are performance, usage growth and model or infrastructure costs understood?
Are support, incident, change, continuity and retirement responsibilities assigned?
Need Deeper Validation?

Turn the readiness band into an evidence-based plan.

Discuss one priority use case and the controls that require deeper technical review.

Confidential Discussion

Questionnaire answers are not saved by this template. Share only the context you choose.

Start a Conversation