01 · Explanation
Data boundaries and approved tools
Objective: Map data entering and leaving an AI workflow and enforce approved-purpose, access, retention, vendor, and deletion boundaries.
Inventory the information a workflow receives, retrieves, generates, logs, exports, and shares. Classify each element under the organization's data rules and ask whether it is needed. Names, contact details, financial records, health information, credentials, source code, contracts, trade secrets, client files, export-controlled material, and regulated records can create distinct obligations. Redaction is not automatically anonymization; combinations of details may re-identify a person or reveal a business. Use synthetic or de-identified test data when possible, and never paste sensitive material into a personal or unapproved service.
Tool approval should cover more than a brand name. Record the specific service and plan, administrator, authentication, access roles, data-use terms, training-use settings, region, retention, connectors, subprocessors, logging, deletion method, incident path, and exit plan. Confirm which outputs may be stored or reused. A browser extension or integrated assistant can move data even when the user does not intend it, so approved workflows should specify where the tool may operate. Privacy, security, procurement, legal, and records specialists must review questions within their authority. The operator documents and follows the boundary; the operator does not invent one.
Before you begin
- Confirm F02, F03, F05, F06, and F11; record that vendor contract, data-location, deletion, subprocessors, lawful basis, and approved architecture are absent.
- STOP. If the vendor contract, data location, deletion control, subprocessor record, lawful basis, or architecture is missing or conflicts with F02/F03/F05/F06/F11, route the flow to authorized privacy, security, legal, and procurement reviewers; do not claim architecture approval or execute transmission, retention, or partner sharing.

