Most organizations can name their AI strategy before they can name their AI inventory. Policies get written for tools nobody’s tracking, and pilots quietly become production without anyone deciding that on purpose. This checklist is the first step: a straight count of what’s actually deployed, who owns it, and what it touches — before you try to govern any of it.

Pair this with Your AI Policy Is Not Your AI Inventory for the fuller argument on why policy-first approaches skip this step.

What’s inside

  • Section 1 — Find It: surface every AI tool in use, including shadow AI and embedded features
  • Section 2 — Name It: capture owner, purpose, data touched, and status for each item
  • Section 3 — Classify It: sort by data sensitivity and flag anything with no human checkpoint
  • Section 4 — Decide: mark each item Continue, Pivot, or Retire

Get the checklist

Enter your name and work email and the one-page PDF will download automatically.

    Part of the Governed Growth Model framework.