The metric

The AI Trust Index.

One 0–100 number for the board — a credit rating for your AI estate. Security 50, Compliance 30, Value 20, every input traceable to evidence.

AI Trust Index
0
● MEDIUM · 65–84
▲ +11 vs last quarter
AI Security weight 50%86 / 100
Measured across Proxy, Probe, Connector and the Recon questionnaire — the whole estate, not just the gateway.
AI Compliance weight 30%70 / 100
APRA, DPDP, ISO 42001 and NIST mapped continuously from live telemetry, exported as PDF + JSON.
AI Value weight 20%40 / 100
FinOps cost attribution and token-budget fences — the CFO's question, answered beside the CISO's.

Composite 0–100 per tenant. Bands: 85+ good · 65–84 medium · 45–64 high risk · <45 critical. A decision engine, not a dashboard.

BAND

85+ · Good

Demonstrable control across security, compliance and value. Audit-ready.

BAND

65–84 · Medium

Material gaps in one or more pillars. A prioritised remediation path is generated.

BAND

<45 · Critical

Ungoverned AI in active use. Immediate board-level attention required.

Methodology

How the score is computed.

Transparent and auditable by design — no black box. Each pillar is measured from live signals, weighted, and rolled into the composite.

50

AI Security

Proxy enforcement, Probe findings, Connector audit signals and the Recon 330-question assessment — combined into the security pillar.

Largest weight
30

AI Compliance

Continuous control coverage against APRA, DPDP, ISO 42001 and NIST AI RMF, mapped from telemetry.

Evidence-linked
20

AI Value

Cost efficiency and token-budget adherence — value realised per dollar of AI spend.

FinOps pillar