Data exposure
Check whether client, personal, health, financial, or confidential data could be entered, processed, or retained by the AI tool.
Enter your email and download the guide instantly on the next page. The guide covers the Australian threat landscape, how vendors are scored, how data impact is classified and the complete vendor lifecycle.
Enter your work email and download the guide instantly on the next page.
Your email is used only to send the guide and occasional product updates. No spam. Unsubscribe anytime.
Plain-English pages
Questions for your board
Opens on any device
No purchase required
What you get
The checklist gives you a practical first-pass record — data review, vendor evidence, account controls, Yes/No/Partial/N/A checks, escalation triggers, approval conditions and next-step decision notes.
Check whether client, personal, health, financial, or confidential data could be entered, processed, or retained by the AI tool.
Identify whether staff are using free or personal accounts that may allow vendor access to business data or lack enterprise controls.
Flag whether the vendor's training, retention, privacy, and security terms have been reviewed and whether they are acceptable for your data types.
Confirm whether AI outputs are reviewed before use, who is accountable, and whether external use of AI-generated content is controlled.
See what's inside the guide
The overview guide walks you through the threat landscape, how vendors are scored using the Vendor Trust Index (VTI), how data impact is classified, and the ten questions every board should ask before approving an AI tool or SaaS vendor.
Sample layout from the AI & Vendor Risk Overview Guide. Full content delivered as PDF after email confirmation.
Want the complete approval workflow?
The AI & Vendor Risk Playbook gives you a premium consolidated set of editable workflow artefacts that take you from the first vendor request through to a complete approval record with evidence, conditions, review dates and incident reporting. Evidence-led, not opinion-led.
Evidence-led vendor and AI questions with red flags, confidence ratings, follow-up prompts and Australian reference points.
Combines vendor input, AI/tool register, risk summary dashboard and remediation action tracking.
Workflow guide, intake form, approval brief and lifecycle checklist designed to support documented due diligence and review.
Structured report template to document findings, risk ratings, evidence gaps and recommendations for each vendor review.
Front-end incident form for triage, scope, notifications, evidence and sign-off, aligned to the ACSC response workflow.
Once-off payment · no subscription · instant delivery
Free resource
Enter your email and download the guide instantly on the next page.
Your email is used only to send the guide and occasional product updates. Unsubscribe anytime.