AI usage policy generator: a real policy, not a blank template.
Answer ten questions and get a complete AI acceptable use policy written for your company — approved tools, data rules, review requirements, and the regulatory clauses that apply to you. Copy it, edit it, hand it to your lawyer.
- Your organisation
- Tools and approval
- Your data
- Review and disclosure
Your organisation
Used to write the policy in your name rather than leaving blanks to fill in.
A name or a role — whoever answers questions about it and keeps it current. Leave blank if undecided and the policy will flag it.
Written out in full, not left as blanks.
Most AI policy templates are a heading structure and a lot of square brackets. The problem with those is that the hard part was never the structure — it was knowing what the rule should say. Every clause here is written.
Approved tools, named
The specific platforms people may use, and what happens when someone wants to try something else.
Data rules people can apply
Three clear categories — generally fine, restricted to approved tools, and never — based on the data your business actually handles.
Regulatory clauses where they apply
HIPAA, GDPR, CCPA, SOC 2, FINRA and FERPA language, written out in full and included only if you select them.
Review requirements
What a person has to check before AI-assisted work goes out, scaled to the stakes rather than applied uniformly.
Rules for tools that take actions
Most policies were written for chatbots. This one covers agents that send messages, edit files and change records.
An escalation path
Who to tell when something goes wrong, framed so people actually report it instead of hiding it.