Module
Module 5 of 5Lesson 2 of 2~22 min

Workshop: your team's AI policy, the exit kit and the application plan

Lesson 2 of the module "Transparency and team policy" in the course "Use AI at work without exposing your data or your company".

Lesson objective

By the end of this lesson, you will have written your team's AI policy (one to two pages), checked it with a self-assessment grid, and planned its adoption over 7 and 30 days.

Where it fits

Transparency and team policy

When must I say I used AI, who approves, and how do I write rules the team will actually follow?

Lessons in this module

  1. Saying when AI contributed, and who approves, AI Act included
  2. Workshop: your team's AI policy, the exit kit and the application plan (this lesson)

What you will learn in the course

This lesson is part of the course Use AI at work without exposing your data or your company

  • Sort the information in your work into green, amber or red based on its nature (public, internal, personal, sensitive, trade secrets, contractual commitments) and the tool considered.
  • Check and configure, for each tool and plan, what happens to your inputs (training, retention, human review, business terms), based on the vendors' dated pages.
  • Apply GDPR basics to the use of an AI tool (personal data, purpose, minimisation, sensitive data, processor, transfers) and prepare data by distinguishing pseudonymisation from anonymisation.
  • Protect the company in everyday AI use (trade secrets, contractual confidentiality, shadow AI, rights over generated content and third-party content).
  • Decide when to disclose the use of AI and who approves an output, placing the AI Act obligations in context (Article 50 transparency, Article 4 AI literacy).
  • Write a team AI policy (green, amber, red data, tools and settings, transparency, human approval, incidents, review) and organise its adoption.