AI Risk Assessment

Independent measurement.
Vendors never pay.
Rank never for sale.

An assessment that produces a structured, reproducible risk artifact and a remediation roadmap. We have no financial relationship with model vendors. Findings cannot be purchased into a favorable outcome.

What you are buying today — stated plainly

The assessment delivers a structured risk artifact and remediation roadmap grounded in a formal geometric prior. It is not a fully calibrated, incident-validated risk score yet. Predictive validation is being earned through proxy testing first. We would rather tell you that up front than oversell it.

What the report contains

A document you can circulate inside the organization.

Unlike qualitative audits or vendor model cards, the report is independent, numeric, and organized for board disclosure, regulatory response, and diligence counsel.

Scorecard & explanation

  • Composite band + Coherence Score
  • Meta-condition status (which vetoes fired)
  • Register vector and sub-scores
  • Reason-code spine for material findings
  • Coverage disclosure (what could not be measured)

Context & action

  • EU AI Act risk-tier classification
  • Mapping to NIST AI RMF / internal policy
  • Regulatory gap analysis
  • Prioritized remediation roadmap (30/60/90)
  • Executive presentation summary

System review (scoped)

  • Model architecture & data-lineage review
  • Bias, fairness & adversarial-robustness testing
  • IP / data provenance & AIBOM inventory
  • Shadow-AI system inventory (where applicable)

Independence guarantees

  • No financial relationship with any model vendor
  • Findings cannot be bought into a favorable outcome
  • Reproducible from documented inputs
  • Structured for audit, litigation, and board use
Two levels

Baseline or extended composite.

SSPLX-001

Baseline

Seven-factor score with shadow-simplex centroid analysis and band classification. Coverage under US Provisional 64/066,231.

SSPLX-002 / 003

Extended composite

Adds five-register stratification, capability normalizer C(κ), the 9×6 risk-primitive matrix, cascade propagation, and the full meta-condition veto layer. Non-compensatory throughout.

Process

How an engagement runs.

STEP 01

Scoping call

30-minute intake: system inventory, regulatory context, timeline, priority risk areas. No commitment.

STEP 02

Technical assessment

Per-primitive scoring across the matrix. Register vector, C(κ), and meta-condition vetoes computed.

STEP 03

SREL report delivery

Composite score, Coherence Score, reason codes, and meta-condition status — emitted as SREL.

STEP 04

Remediation roadmap

Phased 30/60/90-day playbook with controls mapped to the scored axes.

Engagement ranges

Indicative, scoped per engagement.

We are still in the build phase for paid diligence at scale. These are indicative ranges, not fixed list prices. Scope and cost are confirmed in a written proposal after the scoping call.

Shippable now

SREL + diagnostic gate

  • SREL adoption support
  • Self-run diagnostic gate integration
  • Conformance path
Start here
Flagship · indicative

AI Risk DD

$40k–$150k
  • Baseline or extended composite
  • Regulatory gap analysis
  • Executive presentation + roadmap
  • Scoped per system & timeline
Request a proposal
Governance design

Framework + retainer

  • AI risk taxonomy aligned to SSS
  • Committee charter & RACI
  • Lifecycle control specs
Discuss needs

Get a scope and an honest read.

A 30-minute call, the relevant dimensions for your situation, and a straight answer on what an engagement would and would not deliver at this stage.

Book a scoping call