The Confidential AI Exposure Checklist
Your firm is already using AI with client data. This five-minute checklist shows you exactly where it's exposed — and what it's costing you.
For law firms, accounting practices, government contractors, and insurance teams.
Where should we send it?
Enter your details and the checklist is on its way. No spam — just the checklist, plus a few short notes on the gaps we see most often.
Five sections. Twenty-eight checkpoints.
1. Shadow AI
Is client data already leaving your control — on personal accounts, with no policy or audit trail?
2. Privilege & Confidentiality
Could your AI use waive privilege, or break the confidentiality your firm is bound to?
3. Regulatory & Statutory
Privilege, IRC §7216, HIPAA, CMMC 2.0 — the obligations that apply to your practice.
4. Vendor & Tool Audit
Which tools train on your data, where it lives, and whether you can prove it.
5. Policy & Governance
Written policy, staff training, and the documented competence regulators now expect.
Your Exposure Score
Count the boxes you can't tick. The total tells you whether you're ahead — or need to act now.