The product

One control plane for your entire AI program

Ten modules that share a single data model — so an entry in your systems registry sharpens your cost analysis, your maturity score, your prompt governance, and the AI recommendations that follow.

Inventory

Systems Registry

You can't govern what you can't see. Catalog every business system — CRMs, ERPs, databases, internal tools — and flag which ones use AI. The foundation of governance, and the first step to understanding your shadow AI exposure.

  • Categorize by type, vendor, and status
  • Flag AI-enabled systems and surface shadow AI
  • The single source of truth that feeds every other module
Spend

AI Cost & License Tracker

Understand where AI dollars go. Track seat-based licenses and month-by-month usage costs, with provider breakdowns reconciled automatically.

  • Monthly cost buckets with provider breakdowns
  • License and seat tracking with renewals
  • Server-side reconciliation keeps totals honest
Measure

Maturity Assessment & Dashboard

A structured 25-point assessment scores your AI maturity from 0–100 across five dimensions — Strategy, Data, Talent, Governance, and Tools — aligned to ISO/IEC 42001 and the NIST AI Risk Management Framework.

  • 5-level framework: from Awareness & Exploration to Transformational
  • Weighted scoring (Governance and Data carry higher compliance weight)
  • A board-ready dashboard, updated as you improve
Recommend

AI Initiative Generator

Stop guessing what to do next. LLMs analyze your full company picture — profile, systems, spend, and assessment — and proposes prioritized initiatives sequenced to move your organization through each maturity level.

  • Grounded in your real data, not generic advice
  • Sequenced from shadow AI discovery through to runtime enforcement
  • Every recommendation is auditable and regenerable
Execute

AI Project Portfolio

A C-level portfolio view, not a task tracker. Move AI projects through their lifecycle, record ROI, and see each project's projected impact on your maturity score.

  • Lifecycle stages: in scope → in progress → monitoring → ongoing support
  • ROI tracking with projected return
  • Projected maturity uplift per project
Govern

Prompt Registry

The golden catalog of approved prompts for your organization. Create, version, review, and publish AI prompts with a formal approval workflow — from draft through to deprecated — so every team uses controlled, auditable instructions.

  • Formal workflow: draft → under review → approved → deprecated
  • Version history with line-by-line diffs and change logs
  • Dynamic {{variable}} tokens and department-level ownership
Connect

MCP Servers

Register and govern the Model Context Protocol servers that give AI agents access to your business systems, APIs, and internal tools. Link each server to your IT Landscape inventory and track the environment variables your agents require.

  • Supports stdio, SSE, and HTTP transport mechanisms
  • Links each MCP server to an IT Landscape system entry
  • Tracks required environment variable keys — never the values
Comply

AI Policies

Create and publish the code of conduct, risk guardrails, and compliance playbooks that govern AI usage across your organization. Write from scratch in markdown, upload existing PDFs, or use AI-assisted drafting to accelerate policy creation.

  • Online markdown editor with live preview and print-to-PDF
  • PDF upload with automatic AI summary generation
  • AI-assisted drafting to generate policy content from a prompt
Accountability

AI Talents

Map the people executing AI projects and holding governance roles across your organization. Clear ownership of strategy, engineering, compliance, and business sponsorship — the accountability layer the ISO 42001 Talent dimension requires.

  • 8 structured role types: AI Leader, CoE Member, GRC Officer, and more
  • Visual role distribution to spot governance and capability gaps
  • Links talent to the AI maturity Talent dimension score
Security

Org isolation, by design

Multi-tenancy is the foundation. Every record lives under your organization, enforced by server-side rules and a per-tenant identity claim — verified, not assumed.

  • Per-tenant data isolation in the database
  • AI retrieval restricted to your organization
  • Model keys and secrets stay server-side
Standards alignment

Built on the frameworks regulators expect

Every evum module is designed to generate evidence and artifacts aligned to the governance and compliance standards your auditors and regulators will ask for.

ISO/IEC 42001

Artificial Intelligence Management System (AIMS) — clauses 4–10. The platform generates evidence for strategy, risk assessments, and continuous improvement.

NIST AI RMF

Govern, Map, Measure, and Manage functions. Maturity scores and initiative roadmaps are structured to satisfy RMF playbook requirements.

EU AI Act Article 50

Transparency obligations for providers and deployers of AI systems — effective August 2, 2026. evum tracks disclosures and machine-readable markings.

See it with your own data

Spin up a workspace and map your AI estate in minutes.