What's approved? What stays out? Who do you ask? Three editions, increasing depth: the half-page Stage Promise, a one-page Starter, and a 2-page Pro with risk tiers and a workflow approval process. Copy or download as DOCX.
Edition 1 of 3 · Stage Promise (½ page)
The keynote version. Three questions, three answers. Copy drops it as plain text. Download generates a formatted .docx in your browser — no upload, no tracking.
Need a working policy doc? Jump to the One-Page Starter ↓ · Need governance? Skip to Pro ↓
Read the Stage Promise
The half-page version. The keynote line, on a page. Same content as the Stage DOCX above.
[Org] uses AI tools to do better work, faster. This page answers the three questions every employee needs answered. If you can't find your situation here, ask the AI Owner before you prompt — not after.
The current approved list lives at [Tool Inventory]. If a tool isn't on the list, don't use it for [Org] work. New tools require security, legal, and operational review before broad use.
[Designated AI Owner] at [email]. Before you prompt, not after. No question is too small. If the AI Owner is out, escalate to your manager.
Need a working policy doc?
The Stage version is the answer. The One-Page Starter is the document — same answers, plus the principles, prohibitions, sign-off, and review cadence Legal expects.
Edition 2 of 3 · One-Page Starter
A complete working policy on a single page. The full text, rendered below. Same content as the One-Page DOCX.
[Org] uses AI tools (such as ChatGPT, Claude, Microsoft Copilot, Gemini, and approved successor tools) to do better work, faster. This policy sets the boundaries that keep that work safe for our customers, our people, and our business.
This policy is reviewed every 90 days by the [Designated AI Owner], with input from Legal, IT, and one rotating team lead. Material changes are communicated to all employees within 5 business days. The current version is posted at [Internal Link].
By accessing [Org] systems and using AI tools in the course of [Org] work, you confirm that you have read this policy, understand your responsibilities under it, and agree to operate within its requirements and safeguards. Repeated or material violations may result in disciplinary action, up to and including termination.
Three steps to ship it
A starter doesn't help if it sits in a folder. This is the path most of our clients take in their first 30 days.
Replace [Org], designate an AI Owner, and link to your approved-tool inventory. 15 minutes if your tool list already exists.
Run it past Legal and IT. Adjust prohibitions and incident reporting to match your jurisdiction. Most clients ship in a single review cycle.
Pair with a 30-minute AI awareness session. Collect signed acknowledgements. Set the calendar reminder for the 90-day review.
Edition 3 of 3 · Pro
Same brand, same plain language, two pages. Adds AI risk tiers, formal tool categories, an AI workflow rollout process, and a fuller AI Owner job description. Built for orgs ready to formalize.
+ Risk Tiers
Low / Medium / High with examples, so employees can self-classify before they prompt.
+ Workflow Rollout
A four-step approval gate before any AI workflow goes beyond a single user.
+ AI Owner Charter
Five named responsibilities so the [Designated AI Owner] is a real role, not a placeholder.
Get the Pro edition
Two pages, eight sections. Copy drops the full text into your clipboard. Download generates a formatted .docx in your browser.
Same template footer applies — not legal advice. Have legal or compliance review before adoption.
[Org] uses AI tools (such as ChatGPT, Claude, Microsoft Copilot, Gemini, and approved successor tools) to do better work, faster. AI may assist with drafting, analysis, summarization, research, and workflow acceleration, but final accountability for decisions, communications, approvals, and outcomes always remains with the employee and approving manager.
[Org] maintains three categories of AI tools:
New tools require a security, legal, and operational review before broad adoption.
Before an AI workflow is shared across a department or deployed operationally:
This policy is reviewed every 90 days by the [Designated AI Owner], with input from Legal, IT, and one rotating team lead. Material changes are communicated to all employees within 5 business days. The current version is posted at [Internal Link].
The [Designated AI Owner] is responsible for:
By accessing [Org] systems and using AI tools in the course of [Org] work, you confirm that you have read this policy, understand your responsibilities under it, and agree to operate within its requirements and safeguards. Repeated or material violations may result in disciplinary action, up to and including termination.
What responsible adoption looks like
Mid-sized HR services and payroll organizations. Anonymized for confidentiality.
600+
Hours Recovered
In the first 90 days
80%
Team Certified
AI BlackBelt Level 1+
~40x
ROI
Year-one, conservative model
0
Compliance Incidents
With governance in place
Want a deeper look?
30 minutes. We'll map your AI risk exposure, identify one high-leverage pilot, and outline what governance needs to look like for your org.
Book Your Strategy Call