The AI Audit

Find out where AI fits, in two weeks.

Most senior leaders we meet know their team is using AI tools. They do not know what for, whether it is safe, whether it is creating value, or what to do next. The ORBX AI Audit answers all four questions in a fixed-scope, fixed-price engagement.

Book the Audit Have a quick chat
Fixed scope Fixed price Two-week delivery UK delivered
Two weeks ยท fixed price

What you get

One written audit report. One AI policy document. One Monday-morning action plan. All inside two weeks.

  • Current state assessment of AI usage in your business
  • Risk register of where AI is being used unsafely
  • Prioritised opportunity list with effort and value estimates
  • A simple AI use policy your team can follow from day one
  • Recommendations on tooling, governance and next 90 days
  • Final readout to your leadership team
What we cover

Four areas. One coherent report.

The Audit is structured to answer the four questions every senior leader actually has about AI in their business, with evidence and specific recommendations attached.

What is your team already using?

ChatGPT, Copilot, Claude, Gemini, Perplexity, Notion AI, every other tool with "AI" in the name. We map who uses what, on what data, and through which licensing arrangement.

Where is the risk?

Sensitive data leaving the business via personal AI accounts. Confidentiality breaches. Hallucinations being treated as fact. We document the genuine risks and where they sit, not the theoretical ones.

Where is the opportunity?

The five highest-value AI applications in your specific business, ranked by effort, time-to-value, and likely ROI. Not generic recommendations. Specific to your operations.

What is the policy?

A two-page AI use policy your finance director can sign off, your legal counsel can defend, and your team can actually follow. Editable, not boilerplate.

How it works

Two weeks, start to finish.

No drift, no scope creep, no extension fee. The Audit is a fixed-scope engagement and we deliver inside the timeline.

01

Kickoff

30-minute call with your senior leadership team. We agree the scope, your goals, and the key stakeholders we will speak to.

02

Discover

Days 2 to 7. We interview your team (typically 5 to 10 staff), map current AI usage, review tooling, and identify risks and opportunities.

03

Synthesise

Days 8 to 12. We write up the report, draft the policy, and prepare the action plan. Internal QA from a second consultant.

04

Deliver

Day 14. Live readout to your leadership team. Written report, policy and action plan delivered. Q&A. Recommended next moves.

What clients walk away with

Three things, guaranteed.

If we do not deliver these three outcomes by day 14, you do not pay.

01

Clarity on current state

You know exactly what your team is using, on what data, and where the genuine risks sit. Documented and evidenced.

02

A defensible AI policy

One document your auditor will recognise, your team will follow, and your insurer will accept. Editable, not boilerplate.

03

An action plan you can use

Five specific AI initiatives ranked by ROI and effort. Not "explore AI". Actual recommendations you can task someone to deliver.

Common questions

Things buyers actually ask us.

How much is it?

Fixed price, scoped to the size of your business. Pricing scales with the size of the discovery work, not with how much value you get from the report. Call us and we will give you a number on the first call. Final price confirmed before kickoff.

What if we do not get clarity?

We refund the fee. We have not had to do this yet, but the offer stands. The point of a fixed-price productised engagement is that you carry no execution risk. We do.

Is this a sales process for ORBX AI?

The Audit is a standalone engagement. Roughly half of clients use it to inform their own next steps without further ORBX involvement. The other half engage us for follow-on work in Bespoke Automations or AI Governance. Either is fine. The Audit has to stand on its own value or we have not done our job.

Who delivers the work?

A senior ORBX consultant. Not a junior researcher. The same person who runs the kickoff is the person interviewing your team and writing the report. You speak to one person, not five.

Do you sign an NDA?

Yes, before kickoff. Mutual, two-way, standard UK terms. We can sign yours or supply ours. Either is straightforward.

What does the policy actually look like?

Two pages, plain English, signed off by your data protection officer (or us if you do not have one). It covers permitted tools, data classification, prohibited uses, the approval process for new tools, and the escalation route. It is editable so it can grow with you.

Two weeks. One clear answer.

Book a 20-minute discovery call to see if the Audit is the right fit. If it is, we agree a kickoff date and confirm pricing. If it is not, we will tell you exactly that and recommend the right next step.

Book a discovery call