AI Governance
AI Systems and Agents, Governed by People
Register the AI systems and agents you build or use, classify their risk, and keep sensitive actions behind human approval, alongside the security frameworks you already run.
How it works
From Record to Proof
Register
Each AI system and agent with its purpose, owner, data and what it is allowed to do.
Classify
Risk classes informed by the EU AI Act categories. A prohibited use cannot be approved, and a high-risk system has to pass its gates first.
Oversee
Agent permissions are explicit, and sensitive actions, including financial ones, wait for a person to approve them.
Map
ISO 42001 and the NIST AI RMF, mapped to canonical controls like any other framework.
What’s included
- AI registryAI systems and agents, their purpose, owner and what they may do.
- Risk classesInformed by the EU AI Act categories; prohibited uses cannot be approved.
- Human oversightSensitive actions wait for a person to approve them.
- ISO 42001The AI management system standard, mapped like any other framework.
- DoveAn operator that acts with your permissions, only once you confirm.
What It Proves
- Prohibited and high-risk gates enforced by the system, not by a checklist
- Every agent action attributed: actor, intent, tool, input, output and approval
- Dove itself follows the same rules: your permissions, your confirmation, on the record
- AI governance evidence sits next to your security and privacy evidence
Frameworks it serves
Questions
What People Ask
Does this cover AI we buy as well as AI we build?
Yes. Register any AI system or agent your organisation uses, with its owner and purpose, whether you built it or bought it.
Is DoveSure itself governed this way?
Yes. Dove acts only with the permissions of the person using it, only after they confirm, and every action is recorded.
Related
The Rest of the Platform
Ready to prove it?
Know what you are responsible for, control whether it works, and prove it to anyone who asks.