Name approved tools: list the AI tools and tiers people may use for work data, and say what is off-limits.
Define red-line data: customer personal data, credentials, source code, contracts and unreleased plans should never go into unapproved tools.
Prefer no-training tiers: route real work data through enterprise or API plans with written no-training and retention terms.
Redact by default: require placeholders for names, IDs and figures whenever the full value is not needed for the task.
Check the paperwork: confirm DPA, retention, sub-processors and region for any tool handling personal or client data.
Train and review: brief staff on the policy, give them a person to ask, and revisit the list as tools and settings change.