Twenty-eight plain-English checks across the eight working parts of AI security — AI inventory and shadow AI, vendor and model supply chain, prompt injection and input handling, data protection in AI pipelines, access control and agentic systems, monitoring and drift, incident readiness, and governance. You get a scored snapshot with plain-English next steps. About ten minutes. No email required.
Plain-English security — without us ever seeing your answers. Everything stays in your browser. Nothing is transmitted or tracked.
The eight working parts of AI security. The assessment starts where the books start: AI inventory and shadow AI (knowing what is actually in use, including the tools staff signed up for on their own) and the vendor and model supply chain. It then covers prompt injection and input handling, data protection in AI pipelines, and access control and agentic systems. The operations half follows: monitoring and drift, incident readiness, and governance and reporting.
What you get. A weighted maturity score with an area-by-area breakdown and plain-English priority actions, starting from your weakest area. One honest note from the books: the right level of control is the one proportionate to how much AI your organisation actually runs — a small estate with three tools can be exactly where it should be.
What it isn't. This is general guidance. It is not a professional audit, not a penetration test, and not legal advice. Every recommendation is optional. Following it reduces common risks but does not guarantee any outcome. Responsibility for your programme remains with you.
Everything behind this free assessment — the working documents, templates, runbooks, and depth to put it into practice. Three editions to fit how you work.
See the full toolkit & pricing →One-time purchase · files you own forever · 30-day money-back guarantee.