TopRank Skills

Home / Claw Skills / Git / GitHub / Afrexai Ai Governance
Official OpenClaw rules 72%

Afrexai Ai Governance

AI Governance Policy Builder

Stars

0

Installs

0

Status

ACTIVE

Visibility

PUBLIC

安装方式

直接复制以下提示词,发送给你的 AI 助手即可完成安装。

请先检查是否已安装 SkillHub 商店,若未安装,请根据 https://skillhub-1388575217.cos.ap-guangzhou.myqcloud.com/install/skillhub.md 安装 SkillHub 商店,然后安装 Afrexai Ai Governance 技能。 若已安装,则直接安装 Afrexai Ai Governance 技能。

Overview

Skill Key
1kalin/afrexai-ai-governance
Author
1kalin
Source Repo
openclaw/skills
Version
-
Source Path
skills/1kalin/afrexai-ai-governance
Latest Commit SHA
012902528e917e560fe23342e5265f33fafa31ab

Extracted Content

SKILL.md excerpt

# AI Governance Policy Builder

Build internal AI governance policies from scratch. Covers acceptable use, model selection, data handling, vendor contracts, compliance mapping, and board reporting.

## When to Use
- Writing or reviewing internal AI acceptable use policies
- Establishing AI governance committees or review boards
- Mapping AI usage to regulatory frameworks (EU AI Act, NIST, ISO 42001)
- Evaluating vendor AI terms and liability clauses
- Preparing board-level AI governance reports

## Governance Policy Framework

### 1. Acceptable Use Policy (AUP)

Every organization running AI needs a written AUP covering:

**Permitted Uses**
- List approved AI tools by department and function
- Define data classification tiers (public, internal, confidential, restricted)
- Map which data tiers can enter which AI systems
- Specify approved vendors vs. shadow AI (employees using personal ChatGPT accounts)

**Prohibited Uses**
- Customer PII in non-SOC2 models without anonymization
- Autonomous financial decisions above $[threshold] without human review
- HR screening/scoring without bias audit documentation
- Any use violating sector regulations (HIPAA, GDPR, SOX, PCI-DSS)

**Shadow AI Detection**
| Signal | Risk Level | Action |
|--------|-----------|--------|
| API calls to unknown AI endpoints | HIGH | Block + investigate |
| Browser extensions with AI features | MEDIUM | Audit + approve/deny |
| Personal accounts on company devices | MEDIUM | Policy reminder + monitor |
| Exported data to AI training sets | CRITICAL | Immediate review |

### 2. AI Model Selection & Procurement

**Evaluation Scorecard (100 points)**

| Criteria | Weight | What to Check |
|----------|--------|---------------|
| Data residency & sovereignty | 20 | Where is data processed? Stored? Can you choose region? |
| Security certifications | 20 | SOC2 Type II, ISO 27001, HIPAA BAA, FedRAMP |
| Model transparency | 15 | Training data provenance, bias testing, version control |
| Contract terms |...

README excerpt

# AI Governance Policy Builder

Build internal AI governance policies that actually hold up — acceptable use, vendor contracts, compliance mapping, incident response, and board reporting.

Covers EU AI Act, NIST AI RMF, and ISO 42001 frameworks with practical templates you can deploy this week.

## What's Inside

- **Acceptable Use Policy** template with shadow AI detection
- **Model Selection Scorecard** (100-point evaluation)
- **Data Handling Audit** template for every AI integration
- **Regulatory Mapping** — EU AI Act risk categories, NIST RMF, ISO 42001
- **Governance Committee** structure and decision authority matrix
- **Vendor Contract Checklist** — 12 non-negotiable clauses
- **Board Reporting Template** — quarterly AI governance report
- **Incident Response** categories and post-incident review
- **90-Day Implementation Roadmap**

## Who This Is For

CTOs, CISOs, compliance officers, and ops leaders at companies running AI tools without a formal governance framework. Especially relevant if you're in a regulated industry (financial services, healthcare, legal) or selling to enterprise customers who ask about your AI policies.

## Get More

- Full industry context packs ($47 each): https://afrexai-cto.github.io/context-packs/
- AI Revenue Calculator (free): https://afrexai-cto.github.io/ai-revenue-calculator/
- Agent Setup Wizard (free): https://afrexai-cto.github.io/agent-setup/

Built by [AfrexAI](https://afrexai-cto.github.io/context-packs/) — AI operations infrastructure for mid-market companies.

Related Claw Skills

heyixuan2

bambu-studio-ai

★ 41

Bambu Lab 3D printer control and automation. Activate when user mentions: printer status, 3D printing, slice, analyze model, generate 3D, AMS filament, print monitor, Bambu Lab, or any 3D printing task. Full pipeline: search → generate → analyze → colorize → preview → open BS → user slice → print → monitor. Supports all 9 Bambu Lab printers (A1 Mini, A1, P1S, P2S, X1C, X1E, H2C, H2S, H2D).

capt-marbles

geo-optimization

★ 1

Generative Engine Optimization (GEO) for AI search visibility. Optimize content to appear in ChatGPT, Perplexity, Claude, and Google AI Overviews. Use when optimizing websites, pages, or content for LLM discoverability and citation.

carlulsoe

parakeet-stt

★ 0

Local speech-to-text with NVIDIA Parakeet TDT 0.6B v3 (ONNX on CPU). 30x faster than Whisper, 25 languages, auto-detection, OpenAI-compatible API. Use when transcribing audio files, converting speech to text, or processing voice recordings locally without cloud APIs.

carlzhao007

feishu-process-feedback

★ 0

飞书消息自动处理与进度反馈技能。安装后后台运行,监听飞书任务消息并自动创建独立进程处理。 在处理前后发送实时进度反馈(任务确认、进度百分比、完成通知)。 支持任务类型识别、智能解析、错误重试、并发控制、状态持久化。 使用场景:飞书自动化工作流、任务进度追踪、批量任务处理、需要实时反馈的场景。

cartoonitunes

bottyfans

★ 0

BottyFans agent skill for autonomous creator monetization. Lets AI agents register, build a profile, publish posts (public, subscriber-only, or pay-to-unlock), upload media, accept USDC subscriptions and tips on Base, send and receive DMs, track earnings, and appear on the creator leaderboard. Use this skill when an agent needs to monetize content, interact with fans, manage a creator profile, handle payments in USDC, or operate as an autonomous creator on the BottyFans platform.

camopel

arxivkb

★ 0

Local arXiv paper manager with semantic search. Crawls arXiv categories, downloads PDFs, chunks content, and indexes with FAISS + Ollama embeddings. No cloud API keys required — everything runs locally.