Assess whether the system is high-risk under the EU AI Act (7da80e)
August 31, 2026
SITUATION In an insurer scoring claims with a third-party model, shadow-IT chatbot connected to customer PII is the evidence after a journalist asking if the hiring tool is biased. Privacy counsel supporting AI inventory has to pick Policy or governance breach or Model defect for this AI Governance Vendors and Agentic Systems close using shadow-IT chatbot connected to customer PII.
DECISION Privacy counsel supporting AI inventory in an insurer scoring claims with a third-party model must choose Policy or governance breach / Model defect / Dual failure / Hold for the missing fact using shadow-IT chatbot connected to customer PII after a journalist asking if the hiring tool is biased.
HYPOTHESES TO TEST 1. The population in shadow-IT chatbot connected to customer PII is the one a journalist asking if the hiring tool is biased named, so Policy or governance breach follows for this Vendors and Agentic Systems file. 2. The population in shadow-IT chatbot connected to customer PII is adjacent only to a journalist asking if the hiring tool is biased; Model defect is the honest AI Governance call. 3. An insurer scoring claims with a third-party model already contained a journalist asking if the hiring tool is biased before shadow-IT chatbot connected to customer PII arrived; no new Vendors and Agentic Systems path. 4. Provenance on shadow-IT chatbot connected to customer PII after a journalist asking if the hiring tool is biased is broken; do not pick Policy or governance breach or Model defect yet.
ANALYSIS REQUIRED 1. Verify data provenance and the human-oversight gate privacy counsel supporting AI inventory can actually point to. 2. Walk the model input/output path recorded in shadow-IT chatbot connected to customer PII and mark each hop approved, shadow, or unlogged. 3. Verify data provenance and the human-oversight gate privacy counsel supporting AI inventory can actually point to. 4. For this AI Governance Vendors and Agentic Systems file, read shadow-IT chatbot connected to customer PII against a journalist asking if the hiring tool is biased and write the one fact that would move the system is high-risk for privacy counsel supporting AI inventory.
RECOMMENDATION Choose Policy or governance breach / Model defect / Dual failure / Hold for the missing fact on this AI Governance / Vendors and Agentic Systems packet (shadow-IT chatbot connected to customer PII after a journalist asking if the hiring tool is biased). The follow-on Vendors and Agentic Systems action is what privacy counsel supporting AI inventory does next: implement the option, assign an owner, and log the missing fact.
COMMAND RETURNS - Bottom-line AI Governance option on the system is high-risk, then the evidence in shadow-IT chatbot connected to customer PII, then the action for privacy counsel supporting AI inventory - Hypothesis scorecard against shadow-IT chatbot connected to customer PII: supported / rejected / untestable - Regulatory or exam hook Vendors and Agentic Systems would cite - Vendors and Agentic Systems finding in shadow-IT chatbot connected to customer PII that a second reviewer can re-perform
Explore more
More AI Governance prompts
- Assess whether training data has a lawful basis and documented lineage
- Assess whether a generative-AI incident is a policy breach or a model defect
- Assess whether the vendor can be used in a regulated process (5b6313)
- Assess whether the inventory can be represented to an examiner as complete
- Assess whether a generative-AI incident is a policy breach or a model defect
Explore related decision areas
See governed multi-model AI on your own prompt
Compare GPT-5, Claude, and Gemini side by side, with human review and a decision record built in.

