AI, built in

AI Insights

One rundown of your whole compliance program: readiness gaps, policy and vendor issues, stale evidence, and where to focus next, each with a link to act.

Start free See pricing
AI Insights walkthrough
app.keelgrc.com/insights
Overview
AI Insights
A total rundown of your workspace, each finding with a link to act. Runs on your live data and uses no AI credits.
7
Findings
1
Critical
3
High
2
Medium
1
Low
62% ISO 27001 78% SOC 2 91% AI Governance Essentials
Critical
1 security incident still open
Includes high severity. Unresolved: Phishing led to credential exposure.
Work incidents →
High
ISO 27001 is 62% ready with 14 requirements to close
48 of 62 applicable requirements covered (9 with no control mapped, 5 flagged as a gap).
Open ISO 27001 →
Medium
3 vendors due for review
1 is critical/high risk. Overdue or never reviewed: Acme Cloud, Northwind Mail +1 more.
Review vendors →
Low
Consider adding PCI DSS
Commonly pursued for your industry; 19 of your controls already overlap it.
Explore PCI DSS →
Deep analysis
A premium AI pass: board-ready narrative, duplicate detection, and a prioritized 30-day plan.
✦ Run deep analysis

Most tools show you a dashboard and leave the “so what do I do?” to you. AI Insights reads your entire workspace and turns it into a ranked list of what actually needs attention, each finding linked straight to the screen where you fix it. The full breakdown runs on your live data with AI switched off and costs zero credits; when you want more, one on-demand deep pass adds a board-ready narrative and a prioritized plan.

You have the data. You still don’t know where to start.

Readiness sits on one screen, policies on another, vendors and evidence and access reviews on three more. Knowing which gap is most urgent, whether two policies overlap, or which vendor review slipped means clicking through all of them and holding it in your head. That’s exactly the synthesis a computer should do.

What ai insights does

Framework readiness gaps

For every framework you’ve enabled, the requirements that have no control mapped, are flagged as a gap, or are still in progress, ranked by how far each framework is from ready.

Policy issues

Recommended policies you haven’t drafted yet, policies not yet approved or overdue for review, and likely duplicate or overlapping policies to consolidate.

Vendors due for review

Third parties past their review cadence or never reviewed, with critical and high-risk vendors escalated so the ones that matter surface first.

Evidence & access

Evidence that has expired or is about to, access reviews left open past their window, and security incidents still unresolved.

Framework crossover suggestions

Using your industry and the controls you’ve already built, the frameworks worth adding next, e.g. a manufacturer toward ISO 9001 or a fintech toward PCI DSS, with the count of controls that already carry over from the authored crosswalk.

Optional AI deep analysis

One premium pass over everything above for a board-ready narrative, semantic duplicate and contradiction detection across your policies, and a prioritized 30-day plan. It uses AI credits; the findings above never do.

Why it matters

  • See your whole program’s posture in one ranked, linked list
  • Runs on your live data with AI off, so the core analysis costs no credits
  • Every finding links straight to the screen where you act on it
  • Discover the next framework to pursue from work you’ve already done

Get audit-ready, and prove it

AI Insights is one module of a full GRC platform: controls crosswalked across every framework, so you collect evidence once and comply everywhere. Start free, no credit card, no sales call.

Start free

Frequently asked questions

Does AI Insights use AI credits?

The full breakdown, readiness gaps, policy and vendor issues, evidence and access, and crossover suggestions, is computed from your live data with AI switched off and uses no credits. Only the optional deep-analysis pass spends credits, and it’s clearly labelled before you run it.

How are the crossover suggestions decided?

From your onboarding industry and the controls you’ve already implemented, matched against Keel’s authored cross-framework crosswalk. The “controls already overlap” count is a real property of that crosswalk, not an estimate.

What does the deep analysis add?

A premium AI pass that turns the computed facts into a board-ready narrative, flags policies that likely duplicate or contradict each other, and lays out a prioritized 30-day plan. It reasons only over your own data.

Do I have to act on everything?

No. It’s a prioritized map, not a to-do list that files itself. Nothing changes in your workspace until you click through to a finding and make the change yourself.