Sterling Communications SterlingPRIVATE.aiPrivate AI

Free download

An AI use policy your staff will actually read

Four pages, plain language, no legal jargon. It sorts everything your team might hand to an AI tool into four levels, names the rule at each one, and includes a one-page Microsoft Copilot explainer built from Microsoft's own documentation.

What is inside

Built for businesses without a compliance department

Four levels, two questions

Public, Internal, Confidential, Restricted. Two questions sort any piece of information, and the rule changes at each level. Your staff can apply it in ten seconds.

Personal vs. company accounts

The distinction almost nobody has explained to their team: a company AI account carries a contract that stops the vendor training on your data. A personal free account does not.

An approved-tools table

A fill-in table that turns the policy from a document into a decision: which tools, up to which level, on which account, and who to ask for access.

Things we never use AI for

Six bright lines that apply regardless of tool or level — the section a lawyer will ask about first.

The Copilot addendum

One page on what Microsoft promises and what it does not, sourced from Microsoft's own documentation, so the decision about Copilot gets made on facts.

NIST aligned

Follows the U.S. government's AI Risk Management Framework — the reference an auditor or insurer will recognize — without the framework jargon.

Questions

About the template

Is the template really free?

Yes. Download the PDF directly, no email required. If you want the editable Word version, tell us where to send it and we will email it over.

Who is it written for?

Small and mid-size businesses — the version most templates skip. It is four pages, in plain language, with a fill-in approved-tools table and a one-page explainer on Microsoft Copilot sourced from Microsoft's own documentation.

What are the four levels?

Public, Internal, Confidential, and Restricted. Two questions sort any piece of information into a level, and the rule about where it may go changes at each one.

Can we put our own name on it?

That is the point. The template uses [Company] placeholders throughout. Swap in your name, fill in the approved-tools table, and it is your policy.

Does it align to any standard?

It follows the U.S. government's NIST AI Risk Management Framework — the reference an auditor or insurer will recognize — without burying your staff in framework language.

When the policy is not enough

Some work needs somewhere private to go

A policy tells your team what not to paste into public AI. It does not give the sensitive work anywhere to go. That is what SterlingPRIVATE.ai is for — a dedicated private AI environment, managed by the same Portland team. See how it works →

Next step

Ask for a demo

Thirty minutes, on your schedule. We will run a real analysis in front of you — on a sample of your own data if you are comfortable, or on ours if you would rather — and show you exactly where that data goes at each step. Nothing to prepare on your side.