What it is. The foundational governance document for all AI activity at Balsam Brands. The Charter’s position is that AI adoption is already happening, and the council’s job is not to slow it down but to make speed safe — “Balsam’s AI operating system.”
The five pillars. Policy & Guardrails (what’s allowed), Ethics & Responsible Use (fairness and explainability), Security & Risk (prompt injection, data leakage, agentic exposure), Agentic AI Governance (earning autonomy incrementally), and Education & Culture (AI literacy across the org).
Decision rights. The council approves new AI tools and use cases above a defined risk threshold, sets org-wide policy, and escalates to the C-suite when risk exceeds its mandate. Day-to-day usage decisions sit with individual teams — within policy.
Membership. Five seats: Technology & Security, Legal & Compliance, People & HR, Data & Analytics, and a rotating Business Representative. Each has decision-making authority. The rotating seat brings a use-case advocacy lens and changes annually.
Cadence. Monthly full-council meetings for policy review, use-case intake, and risk discussions. Quarterly AI-health scorecard to the C-suite, plus an MCP Server Registry review. Annual charter and policy refresh.
Pair this with. The Legal AI Use Notification & Approval Framework (three-level, with an AI Use Registry for external-facing use) and the AI Use Case Intake & Request Process — those two documents operationalise the Charter for day-to-day submission.