How RiskSensai earns your trust
These pages document how the platform governs its AI, its automations, and its integrations. They are written for the people who evaluate vendors for a living: specific, verifiable, and free of marketing claims.
Transparency pages
Read these before relying on any automated surface of the platform, or hand them to your due-diligence team.
AI Transparency
How AI is built and governed on this platform: the assurance boundary (informational only, never an opinion), citations on the questions where published material exists, human review on the highest-risk actions, kill switches, immutable audit logging, model routing, and what happens to your data.
Autonomous Governance
The decision engine that governs automated work on the platform. Aggregate statistics on approval rates, compliance flags, supervisor edits, and cooling-off interventions.
Automations
Tier-gate transparency for every automation, plus the approval posture. What the system can and cannot do without a human in the loop.
Integrations
Every third-party integration the platform supports, the OAuth scopes requested, and per-provider uptime. The data-flow boundaries we maintain with every third party we connect to.
Operating principles
Not a certification body
RiskSensai provides informational readiness work product for the teams building digital trust programs: security, privacy, AI governance, and vendor risk. Nothing on this platform is an audit opinion, a certification, an attestation, or assurance of any kind, and nothing here is legal or accounting advice.
Aggregate over individual
Public Trust Center statistics are aggregate-only. We never publish anything that could identify a single customer, engagement, or user.
Consent, then law, then nothing
We share customer data when the customer explicitly authorizes it, when a lawful demand compels us, or not at all.
Source-of-truth audit logs
Every meaningful automated write is audit-logged with cryptographic hash chaining and enforced immutability. The AI Transparency page describes the mechanism.
Customer trust centers
Compliance customers can publish their own trust center on this platform, listing their frameworks, active policies, and vendor inventory at a public URL under /trust. Those pages are customer-owned and are not part of this directory.
Part of the Sensai family
RiskSensai is part of the Sensai family, alongside LawSensai (legal). RiskSensai covers digital trust and audit readiness: security, privacy, AI governance, vendor risk, and internal audit, IT audit, fraud, and enterprise risk. One doctrine across both: AI does the heavy work, credentialed professionals stand behind it. See how the family fits together.
Responsible disclosure
Found something we should know about? See the security page for how to report it. We respond within two business days.
