EU AI Act • GDPR • Enterprise AI risk

AI Governance Toolkit

Govern shadow AI and production LLM features with one interconnected kit — acceptable use, system register, risk tiering, DLP rules, vendor intake, and incident playbooks engineered for B2B SaaS teams.

18 Governance Templates
TXT + JSON Engineering-Ready Rules
0 Subscription • Lifetime ZIP
Acceptable use + employee ack AI system register & risk matrix DLP / prompt firewall configs Vendor security questionnaire

Stand up governance in days

AI-001 AUP and AI-006 register give legal and engineering a shared inventory on day one.

Risk-tiered controls

AI-005 matrix routes high-risk tools to HITL, DLP, and vendor review requirements.

Engineering artifacts included

AI-010 firewall rules in TXT and JSON — drop into gateways or policy engines.

Skip fragmented counsel

One kit vs. separate AUP, vendor, and security engagements for every new AI feature.

What’s inside the ZIP

18 templates across governance, compliance architecture, engineering safeguards, and vendor risk

1 Governance and Acceptable Use

AI-001Word

Enterprise AI Acceptable Use Policy

Enterprise acceptable use policy with banned data classes and escalation paths.

AI Governance
AI-002Word

AI Data Classification & Ingestion Standard

Editable template with section-by-section guide at lintgrc.com/templates/ai-data-classification-ingestion-standard/.

AI Governance
AI-003Word

Prompt Engineering & Input Handling Guidelines

Editable template with section-by-section guide at lintgrc.com/templates/prompt-engineering-input-handling-guidelines/.

AI Governance
AI-004Word

Training Data Restrictions & IP Guardrails

Editable template with section-by-section guide at lintgrc.com/templates/training-data-restrictions-ip-guardrails/.

AI Governance
AI-015Word

Customer-Facing AI Transparency Summary

Customer-facing transparency summary for security reviews.

AI Governance
AI-016Word

Employee AI Policy Acknowledgment Form

Employee acknowledgment log for audit evidence.

AI Governance

2 Compliance Architecture

AI-005Word

AI Risk Tiering & Classification Guide

Risk tiering matrix — routes tools to HITL, DLP, and vendor requirements.

AI Governance
AI-006Excel

AI System Register & Inventory Ledger

System register with risk, compliance, and decommission tabs.

AI Governance
AI-007Word

Implementation & Organizational Rollout Playbook

Editable template with section-by-section guide at lintgrc.com/templates/ai-governance-rollout-playbook/.

AI Governance

3 Engineering and Risk Safeguards

AI-008Excel

Agentic AI Controls & HITL Matrix

Editable template with section-by-section guide at lintgrc.com/templates/agentic-ai-controls-hitl-matrix/.

AI Governance
AI-009Word

Model Output Quality & Content Drift Standard

Editable template with section-by-section guide at lintgrc.com/templates/model-output-quality-content-drift-standard/.

AI Governance
AI-010Word + Excel

DLP & Prompt Firewall Engine Rules

DLP and prompt firewall rules in TXT and JSON for engineering deployment.

AI Governance

4 Third Party and Procurement

AI-011Word

Vendor AI Security Intake Questionnaire

Vendor security questionnaire tailored to AI processors and model APIs.

AI Governance
AI-012Word

AI Vendor Contracting & DPA Addendum

Editable template with section-by-section guide at lintgrc.com/templates/ai-vendor-contracting-dpa-addendum/.

AI Governance
AI-013Word

Model Change Management & Release Controls

Editable template with section-by-section guide at lintgrc.com/templates/model-change-management-release-controls/.

AI Governance
AI-014Word

AI Security Incident Response Playbook

Editable template with section-by-section guide at lintgrc.com/templates/ai-security-incident-response-playbook/.

AI Governance
AI-014bExcel

AI Risk Register

Editable template with section-by-section guide at lintgrc.com/templates/ai-risk-register/.

AI Governance

5 Examples

AI-SAMP-01Excel

Example Completed AI Risk Register

Editable template with section-by-section guide at lintgrc.com/templates/example-completed-ai-risk-register/.

Example

A single AI policy PDF is not a governance program

LintGRC connects policies, registers, engineering controls, and vendor intake under shared AI doc IDs.

Register → tier → control

AI-006 system register feeds AI-005 risk scores and AI-008 HITL requirements.

Vendor loop closed

AI-011 questionnaire and AI-012 intake align procurement with AI-004 data classification.

Customer transparency

AI-015 summary answers enterprise security reviews without drafting from scratch.

Incident playbooks

AI-014 and AI-014b pair policy with risk register rows for prompt injection and data leakage.

Generic AI policies vs. LintGRC AI Governance

Policies plus registers, engineering rules, and vendor workflows

System Feature
Generic Templates
LintGRC AI Governance
System inventory
None
AI-006 register + AI-005 tiering
Engineering controls
Policy language only
AI-010 DLP / prompt firewall TXT + JSON
Vendor due diligence
Boilerplate clause
AI-011 questionnaire + AI-012 intake
Employee attestation
Rarely
AI-016 acknowledgment tracker
Implementation guides
Rarely
lintgrc.com guide per template
Price
Free (incomplete)
$497 one-time

Designed to work together

Update the register once — risk tier, DLP rules, and vendor requirements stay aligned.

AI-001 AUP → AI-016 employee acknowledgments
AI-005 tier → AI-008 HITL matrix
AI-006 register → AI-010 firewall scope
AI-011 vendor → AI-012 intake workflow

AI Governance Toolkit

$649 $497 one-time
  • 18 AI governance templates (Word, Excel, TXT, JSON)
  • Acceptable use, register, risk matrix, and DLP rules
  • Vendor questionnaire and incident playbooks
  • START_HERE.txt + README.txt at ZIP root
  • Website guide for every template
  • Instant download after purchase

No subscription. One payment. Licensed for your organization.

Frequently asked questions

Does this cover EU AI Act compliance?

Templates include risk-tiering, documentation, and vendor patterns aligned with common EU AI Act and GDPR program expectations. Final classification and obligations depend on your use cases — obtain legal review for your jurisdictions.

Can engineering deploy the DLP rules?

Yes. AI-010 ships structural rules in TXT and JSON for gateways, proxies, or policy engines — adapt patterns to your stack.

How does this relate to SOC 2?

AI-016 acknowledgments and AI-006 inventory support CC2 governance evidence. Pair with SOC 2 kits if you need full trust services coverage.

Disclaimer: Templates support AI governance programs; they are not legal advice. Adapt to your models, vendors, and jurisdictions. Licensed for your organization only — do not redistribute.