Product features

Everything you need to adopt AI without losing control.

Employees get a clear way to ask for tools, and reviewers get the risk context to decide quickly. The directory, policy, and audit records stay current on their own.

Vendor policies & insights✦ AI-generated · awaiting review
Privacy policy Terms of service Website
Documents last checked Jul 7, 2026  ·  AI summary generated Jul 7, 2026
Risk assessmentMedium risk
CategorySeverityWhat the documents say
Data trainingMediumThe vendor says it may use user content to train its AI models, and users can control that training in account settings.
Intellectual propertyLowUsers own their outputs, and the vendor does not retain ownership of AI-generated outputs.
Data sharingMediumThe vendor discloses user content to trusted service providers for AI technology and cloud storage.
ComplianceLowThe privacy policy explicitly says the vendor uses encryption and other safeguards to secure data.
CautionData training

Flagged because the vendor's own policy says:

“User inputs may be used to train models unless users opt out through their account settings.”

Quote verified against the source text
1Vendor risk assessment

Know what each vendor does with your data.

GovernKit reads the vendor's privacy policy and terms of service, then builds a practical risk table covering training, sharing, and retention. Every flag cites the source document. Anything that cannot be verified is marked unknown.

Green, amber, and red risk signals reviewers can scan quicklyA source quote sits behind every important flagPlain-English summary of how the vendor handles your dataLive progress indicator while the analysis runs
2Request and review workflow

A simple request form that gives reviewers real context.

An employee picks a tool, explains the use case, and selects the data involved. Customer data, credentials, and source code each move the live risk preview differently. Reviewers get one page with the request, a suggested risk level, and the vendor assessment.

Live risk meter while filling the formFour review outcomes, including “approved with restrictions”Built-in Q&A thread between reviewer and requesterAdmins who add a tool themselves are fast-tracked straight to review
Request an AI tool
Takes about 2 minutes. You'll get an email as soon as there's a decision.
Which tool would you like to use?
ChatGPTClaudeGeminiCopilotSomething else…
What data will touch it?
Public informationInternal documentsSource codeCustomer data
Suggested: High riskupdates live
High risk because this request includes source code.
Your decision
ApproveEveryone can use it as requested.
Approve with restrictionsAllowed — but with rules everyone must follow.
RejectNot allowed. You'll explain why below.
Request more informationAsk the requester a question before deciding.
Risk level
High
Pre-filled with the suggested level — adjust if you know better.
Approve tool
The requester gets an email with your decision.
Northstar StudioOwner
DashboardAI ToolsRequests1PoliciesReportsMembersAudit LogSettings
Business planManage
12 / 200 members
SCMaya Raomaya@northstar.co
AI Tools
Every AI tool your company tracks — approved, pending, and everything in between.
+ Add AI tool
ToolCategoryDepartmentsRiskStatus
CClaudeGeneral AI assistantEngineeringHighRestricted
MMicrosoft CopilotGeneral AI assistantMarketingLowApproved
GGrammarlyWriting assistantAll departmentsLowSubmitted
FFreeTranscribe.ioTranscriptionAll departmentsHighRejected
PPerplexitySearch/researchAll departmentsLowDeprecated
5 tools match · est. $358/month in tracked AI spend across approved tools
3Shadow AI amnesty

Find the tools already in use, without starting a witch hunt.

Every request asks whether the tool is already in use, which quietly builds the inventory you never had. After review, the whole company can see what is approved, what carries restrictions, and what to avoid.

“Already in use” capture on every requestApproved tool directory with risk levels and usage restrictionsPer-department tool availabilityFormal decommission requests for retiring tools
4Policy generator

An AI usage policy with acknowledgement tracking.

Answer a short questionnaire and GovernKit drafts your workplace AI policy. Edit it, publish a version, and track who has acknowledged it. Contractors and employees who are not on GovernKit yet can be invited by email to read, acknowledge, and sign it, and every one of those actions is logged. When a client or auditor asks, export the PDF.

AI-drafted, human-edited, versioned policiesAcknowledgement tracking with reminder emailsExternal signers join by email invite, no GovernKit account requiredSigners can save their copy as a PDF or print itBuilt-in “ask the admins” channel on the policy page
Northstar AI Usage PolicyPublished · v6
Published Jul 6, 2026 by Maya Rao
Export PDF.md
Acknowledgements14 of 16 members (88%)
2 members haven't acknowledged yet.Send reminder to 2 members
Version history
Northstar AI Usage Policy · v5Published Jul 5, 2026ArchivedView
Northstar AI Usage Policy · v4Published Jul 5, 2026ArchivedView
Northstar AI Usage Policy · v3Published Jul 5, 2026ArchivedView
Vendor monitoringAutomatic
Documents last checked Jul 7, 2026 · next check scheduled
Vendor changed its privacy policyJul 7, 6:02 AM
Scheduled re-crawl detected a change in the vendor's privacy policy.
Risk assessment regeneratedJul 7, 6:04 AM
Data training flag raised from Low to Medium, with a new verbatim citation.
Team notified by emailJul 7, 6:05 AM
“A vendor behind one of your approved tools changed its privacy policy.”
5Continuous vendor monitoring

Know when a vendor changes the rules.

Approved vendors' documents are re-checked on a schedule, so nothing depends on someone remembering to look. Each tool page shows when the vendor was last checked.

Scheduled re-crawls of vendor documentsFresh risk assessment when a change is detectedEmail alerts when an approved vendor changes its policy
6Dashboard & reports

A clear view of AI adoption across the company.

One dashboard covers approved tools, pending requests, acknowledgement coverage, and recent activity. Reports break the same picture down by status, risk level, spend, and department.

Monthly AI spend and per-tool cost rankingTools by risk level and by statusStale request warnings (waiting more than a week)Policy acknowledgement stats
Tools by status
20 tools tracked in total.
Approved8
Approved with restrictions3
Pending review2
Rejected4
Deprecated3
Monthly AI spend
$358estimated per month across approved tools
Microsoft Copilot$218/mo
Claude$96/mo
Grammarly$44/mo
1 request waiting more than a week — flagged as stale
Audit logAll eventsAnyoneAny object
MRMaya Rao published policy v6 “Northstar AI Usage Policy”Policy published · Policy4:24 AM
JOJonas Okafor requested ClaudeTool requested · Tool request4:18 AM
MRMaya Rao approved Grammarly with 2 restrictionsTool approved · AI toolJul 6
PKPriya Kaur acknowledged policy v6Policy acknowledged · PolicyJul 6
7Complete audit trail

Every decision has a clear record.

Requests, decisions, policy publications, acknowledgements, role changes, and billing events land in one chronological log. When a client or insurer asks how you manage AI tools, the answer is already written.

Chronological log of every meaningful eventFilters by category, event type, person, object, and date rangeHuman-readable entries, not machine noise
8Roles & departments

Scoped reviews out of the box.

Owner, admin, manager, and member roles are built in. Managers see their own department's requests while admins govern company-wide, and tools can be approved for everyone or for specific departments.

Owner, admin, manager, and member rolesDepartment-scoped review queues for managersInline department creation while filling formsCompany-wide or per-department tool approvals
MemberRoleDepartment
MRMaya Raomaya@northstar.coOwner
JOJonas Okaforjonas@northstar.coManagerEngineering
PKPriya Kaurpriya@northstar.coMemberMarketing
Notifications

The right nudge at the right time.

Reviewers hear about new requests, requesters hear back on decisions, and anyone who misses a policy update gets a reminder. Every non-essential notification has an off switch.

Security & simple pricing

No surprises in security or billing.

Two-factor authentication ships with QR setup and backup codes, and billing runs through Stripe. Plans scale by team size, tool limits, AI credits, governance features, and audit history, using the same limits the product enforces.

Automated workflows & integrations

The follow-up work is handled for you.

Email automation is live today. Native workflows for chat, identity, and ticketing are coming next.

Live

Instant approval alerts

Reviewers get an email with the risk summary the moment a request lands. The requester hears back as soon as a decision is made.

Live

Automated policy reminders

GovernKit tracks who has acknowledged the latest policy and reminds those who have not, so nobody keeps a spreadsheet for it.

Live

Continuous vendor monitoring

When an approved vendor changes its terms, GovernKit flags it and emails your admins before the review goes stale.

Coming soon

Click an integration to get notified when it is ready.

Give your team a better way to adopt AI.

Create your workspace and start reviewing tools today.