Skip to content

Consulting & advisory

Data & AI governance

Clear, right-sized rules for what your data may do, and what AI may touch.

Data & AI governance

Your team already uses AI. The rules don't exist yet.

  • Company data in public chatbots

    Someone pastes a customer list into a free AI tool to save an hour. Nobody decided that was allowed.

  • Access grew by accident

    Old accounts, shared passwords, exports on laptops. Who sees what is nobody's decision, it just happened.

  • GDPR is one letter away

    One customer request or one incident, and you must show your rules. There is nothing to show.

Rules sized for your business, not a bureaucracy.

We write the few rules that actually matter for a business your size: what data may leave the building and what must stay, which AI tools are allowed and for what, who may access which data, and what happens when something goes wrong. Short enough that people read it; clear enough that they follow it.

Live view (coming soon)

What it does

  • A map of your data first

    What you hold, where it lives, and which of it is sensitive. Rules mean nothing before this map exists.

  • Practical AI rules for staff

    Which tools are allowed, with what data, phrased so people can decide in the moment.

  • GDPR without the panic

    The registers, consents, and retention rules a business your size actually needs, no more.

  • Ready for the day it matters

    When a customer asks or an incident happens, the answer and the procedure already exist.

What you get

  • A data map: what you hold, where it lives, what is sensitive.
  • A short, readable AI-use policy your team actually follows.
  • Access rules: who may see what, and how access is granted and revoked.
  • GDPR basics in order: registers, retention, and how requests are handled.
  • An incident playbook: who does what, in what order, when something leaks.

How we work

  1. Know

    We map your data and how it actually moves: systems, files, exports, and the AI tools already in quiet use.

  2. Insight

    We find where real risk lives, and separate it from paperwork that would add nothing.

  3. Vision

    We write the smallest set of rules that covers those risks, in language your team can act on.

  4. Act

    We walk the rules through with your people, wire them into daily tools, and review them as your use of AI grows.

Common questions

Is this a legal service?+

No. We set up the practical side: maps, rules, and procedures. For legal opinions we work alongside your lawyer, and the documents we produce make that work shorter and cheaper.

Will rules slow my team down?+

The opposite is the goal. Clear rules end the quiet uncertainty about what is allowed, so people use AI more, not less, inside safe lines.

We are small. Do we really need this?+

You need a small version of it, and that is exactly what we build. A page of good rules beats a binder nobody opens.

Does this cover the AI systems you build for us?+

Yes. Anything we deliver already ships with guardrails; governance extends the same thinking to every tool your team touches.

Do you know where your data went this week?

One free call. Tell us how your team works today, and we tell you honestly which rules you need, and which you can skip.