What you get
- Week 1
Register
Every AI system and embedded model inventoried with owner, lifecycle stage, data categories and affected parties. Vendor AI included.
- Week 2
Assess
Risk and impact assessments on your highest-exposure systems, scored 5×5, with the controls the crosswalk maps to ISO/IEC 42001, NIST AI RMF and the EU AI Act.
- Week 3
Remediate
Gap analysis with maturity ratings, remediation tasks assigned, and approval gates set for high-risk systems.
- Week 4
Prove
A Statement of Applicability, a board-ready governance report, and a scoped audit pack — each stamped with the framework version it was built from.
What it costs
$4,900fixed
Credited in full against a Starter or Growth annual plan if you continue within 30 days of delivery.
Founding Customer terms (10 slots)
- List price locked for three years
- Named on govliance.com
- Direct line to the product team; your requests shape the roadmap
Who it's for
Compliance, risk and security leads at organisations of 200–2,000 people who are answering AI questions from customers, auditors or regulators — and recording the same answer more than once.
Who it's not for
Teams needing certification decisions (those rest with accredited bodies) or legal advice on classification. We give you the governed record; your auditor and counsel work from it.
How it runs
Two 45-minute working sessions per week with your named owner. You confirm every control the engine suggests — it never decides for you. Everything is in your workspace from day one; nothing lives in our inbox.
Questions
Do we need ISO 42001 already?
No. Most Sprint clients start with a spreadsheet or nothing.
What do we need to bring?
A list of your AI systems (even rough) and one person with two hours a week.
What if we don't continue?
You keep every export. No lock-in.
Can our auditor see it?
Yes — Audit Mode gives them scoped, time-boxed, read-only access.
Thirty days from spreadsheet to governed record
10 of 10 Founding Customer slots remaining

