Skip to content
Second Key Security

AI Governance

A practical AI use policy and an inventory of the AI tools and features your team already uses.

Cadence
One-time setup, then quarterly review
Pricing
Scoped to your environment after the assessment.
Family
Governance and risk

The problem

Employees use AI tools every day, often with company data. There is no policy, no inventory, and no answer when a customer asks how you govern AI.

What you get

How it works

  1. Step 1: Connect read-only sources

    Sign-in and app connection data, as in Shadow IT and Shadow AI Discovery.

  2. Step 2: Agents build the inventory

    AI tools and features matched to teams and the data they touch.

  3. Step 3: An expert drafts the policy

    Rules that match how your team works.

  4. Step 4: You approve any change

    The policy takes effect only when you approve it. Every approval is logged.

Access we need

  • Read-only access to sign-in and app connection data in your identity provider
  • Read-only access to third-party app connections (OAuth grants) in Google Workspace or Microsoft 365

What we never do

  • We never block a tool or change settings ourselves.
  • We never send your data to an AI provider you have not chosen.

The full access model is on the security and trust page.

Questions about AI Governance?

Tell us what you run and what you need, and we will reply with next steps.