Before you can write an AI acceptable-use policy, you need to know what your staff are actually running. Our agentless, read-only scanner inventories AI usage across your computers in minutes — giving you the evidence you need to secure your data and satisfy underwriters.
Here is what a typical run looks like when inspecting a single endpoint. Nothing is installed, and the scanner reports findings in a clean JSON format.
Employee monitoring is a data protection concern. Our discovery tool is designed strictly as a risk validator. We verify the presence of tool usage without ever inspecting the contents of the work.
We look for twelve independent evidence classes to verify the existence and frequency of AI interactions:
.gguf files over 50MB.Privacy by design ensures we collect only structural meta-data. We strictly exclude and redact the following:
chatgpt.com/c/some-id are cut off at the root hostname.Designed as a point-in-time diagnostic. We walk you through the entire deployment and present findings directly to your leadership.
Run from a secure USB key or pushed centrally via Intune, SCCM, GPO, or RMM. The collector is our own read-only script — built and maintained in-house, updated as new AI tools emerge — and completes in under a minute per device. Zero impact on daily operations.
Evidence JSON files are compiled locally. Real identities are salted-hashed by default so the findings focus on structural practice risk, not individuals.
A comprehensive risk analysis including illustrative business exposure ranges, compliance alignment reviews, and a prioritized roadmap for governance.
A point-in-time scan is an essential diagnostic, but its value decays. To help you establish continuous oversight, 100% of your assessment fee is credited toward your first year of our Continuous AI Governance Subscription if you sign within 60 days. This makes the diagnostic assessment effectively free if you continue the program.
The assessment fee is flat regardless of what we find — there's no incentive to inflate. The report is yours to act on however you choose: with us, with your existing IT provider, or on your own. And when we point to a tool we don't resell, we say so.
An authorized pilot (typically 10 to 25 devices) is all it takes to establish your baseline. We coordinate directly with your IT resource.