ATLAS Globe
ATLAS
byArcSense
AIAI Governance · Startups & scaleups

Know exactly which AI tools your team uses. Have a policy ready before anyone asks.

Enterprise customers and investors are asking "what's your AI policy?" before they sign. This free starter kit gives you an AI tool registry and a ready-to-customize acceptable use policy — the two documents they're most likely to request.

What's inside

AI Tool Registry

Excel & CSV
  • Tool name, vendor, and deployment environment
  • Tool type dropdown: Coding assistant / Content generator / Data analysis / Decision support / Other
  • Risk level (auto-calculated from review status)
  • Review status: Not reviewed / In review / Approved / Restricted / Prohibited
  • Use case description and data access notes
  • Human-in-the-loop flag

AI Acceptable Use Policy

Word (.docx)
  • Approved tools section with scope and conditions of use
  • Prohibited uses — hard no-go list with rationale
  • Human oversight requirements by use case category
  • Data handling rules: what can and cannot be fed into AI tools
  • Incident reporting procedure when AI outputs go wrong
  • Policy owner, review date, and version fields

Built to match ATLAS exactly

Same fields, same options. The tool registry maps 1:1 to the AI Governance Tool Register in ATLAS. The acceptable use policy template mirrors the structure of the ATLAS Acceptable Use Policy artifact — same sections, same decision points. When you're ready to move off the spreadsheet, nothing gets lost.

Get the free starter kit

Tool registry (Excel + CSV) and acceptable use policy template (Word). Enter your email and we'll send the link instantly.

By submitting this form you agree to our Privacy Policy. We never sell your data.

What should an AI acceptable use policy template include?

At minimum: a list of approved tools with their permitted use cases, a prohibited use list, data handling rules (what customer or confidential data cannot go into AI prompts), human review requirements, and an incident reporting path. The policy should be named, dated, and have a designated owner who reviews it at least annually.

How do I build an AI tool registry?

Start with a self-reported inventory — ask each team to list the AI tools they use, including vendor-embedded AI (Notion AI, GitHub Copilot, Salesforce Einstein, etc.). For each tool, capture: deployment environment, what data it accesses, whether there's a human in the loop, and the current approval status. Review quarterly.

Prefer a living system over a spreadsheet?

ATLAS tracks your AI tools in real time, enforces policy rules, and generates the documentation investors and enterprise customers ask for.