Know which AI uses are ready — and which need controls first.
1. Proceed
2. Add controls
3. Pause
From AUD 5,000
Fixed-fee starting scope
7–10 Days
Business day turnaround
100% Written
Asynchronous delivery
Aus & Asia
Regional focus
AI adoption is moving faster than most SME controls.
Public AI Tool Usage
Unchecked Vendor Updates
Undefined Data Ownership
Staff members routinely copy sensitive corporate data into unvetted consumer generative tools, bypassing enterprise privacy protections.
Existing software vendors quietly push AI features into core business software without explicit administrative approval or governance.
Critical business intelligence enters third-party systems without clear ownership terms, security review, or leadership sign-off.
What you receive
A comprehensive, written delivery pack giving executive leaders and boards full operational clarity.
Executive decision brief
AI use-case inventory
AI risk register
Traffic-light assessment
Board-ready summary detailing business exposure and core priorities.
Audited register of active and proposed AI deployments across departments.
Categorised analysis of data, legal, and operational vulnerabilities.
Clear Proceed, Control, or Pause status assigned to each use case.
Practical framework
Vendor scorecard
90-day action plan
Implementation pack
SME-friendly governance policy guidelines and staff usage rules.
Evaluation model for assessing software suppliers and AI features.
Sequenced roadmap for immediate risk mitigation and governance.
Leadership-ready templates and guidelines ready for immediate deployment.
Clarification is asynchronous by email or shared documents — eliminating scheduling delays.
Written intake
Document review
Independent assessment
Hand-off pack
Complete a structured intake questionnaire detailing your current software stack and target AI tools.
We review submitted documentation and issue targeted, written questions for precision alignment.
Our technical advisers evaluate data flows, risk triggers, and vendor commitments independently.
Receive your final written deliverable suite, risk register, and 90-day action plan by email.
Transparent investment options
Final fixed fee follows written scoping. Prices exclude GST where applicable. Only need help answering a buyer's AI questionnaire? Choose the Vendor Questionnaire Pack (AUD 1,950 fixed) in the form below. Not ready for a full Review? Start with the AI Use Policy Starter (AUD 950 fixed), which counts towards a Review booked within 60 days.
Focused Review
Extended Review
Standard Review
AUD 5,000
Fixed Fee
AUD 12,500+
AUD 12,500–20,000 Scope
AUD 7,500
Fixed Fee
Designed for SMEs evaluating initial AI adoption.
For complex business architectures and multi-team setups.
Comprehensive assessment for established operations.
• Up to 3 priority use cases • Written risk register • Basic governance rules • 90-day execution plan
• Up to 6 use cases • Tool & vendor comparison • Full governance framework • Implementation pack
• Multiple operational teams • Complex system integrations • Deeper cyber & privacy review • Custom risk scorecards
/ Suitability
Good fit for your organisation
Outside our review scope
• Businesses with 10–250 employees in Australia or Asia • Organisations actively adopting or planning AI software • Leaders seeking independent advice before vendor lock-in • Teams capable of supplying context via written intake
• Penetration testing or vulnerability code scans • Formal legal opinion or regulatory certification • Ongoing managed IT support or helpdesk services • On-site software implementation or workshops
Will you recommend tools?
Yes. We supply an independent tool and vendor selection scorecard evaluating security, data privacy, and operational suitability.
Can you work outside Australia?
Yes. We advise SME clients across both Australia and Asia, adapting recommendations to local commercial environments.
What happens after the review?
You receive a complete 90-day action plan that your internal team or existing IT provider can implement immediately.
Is this legal advice?
Do we need meetings?
What information is required?
No. We provide practical technology governance and operational risk guidance. For formal legal opinions or compliance certification, consult legal counsel.
No. The review is conducted 100% in writing. Clarification questions are handled asynchronously via email or shared documents to save leadership time.
You will complete a written intake specifying current tools, planned use cases, software vendors, and existing IT or data governance guidelines.
Review a seven-page fictional example showing the executive decision brief, AI risk register, readiness decisions, governance framework and 90-day action plan.
Fictional example — no client information.
