vetEDTECH walks you through a structured security & privacy review of any AI tool or third-party service, then produces a clean report you can hand straight to District Information Security. The rubric mirrors the HECVAT 4 framework higher-ed institutions actually use — plus the specific documentation your CISO asks for.
Strong, documented controls. Independent audit on file, no model-training on your data, least-privilege access. Safe to recommend for approval.
Workable, but with gaps. Approvable if specific conditions are met — a contract clause, a narrower scope, or follow-up documentation.
A critical control is missing or the tool trains on your data. Needs remediation or a different vendor before it goes anywhere near institutional accounts.
Name, vendor, what it does, and what data it would touch.
Each question explains itself — no security background needed.
The rubric scores as you go and flags any deal-breakers.
One clean PDF for your CISO. Saved to your library for next time.