AI and agent inventory
Register and discover AI systems, assign owners and keep the list current.
AI systems
Models, agents, endpoints, copilots and MCP servers, declared and discovered.
| Asset | Source | Business unit | Owner | Risk | Controls | Status | Last seen |
|---|---|---|---|---|---|---|---|
| Claims triage agentAgent | AWS Bedrock | Claims | J. Patel | High | 5 of 5 | Gated | 2m |
| Underwriting risk summariserServing endpoint | Databricks | Underwriting | S. Okafor | High | 4 of 6 | Review due | 6h |
| Fraud signal modelModel | Databricks | Claims | R. Lindqvist | High | 6 of 6 | Evidenced | 1h |
| Customer reply assistantModel deployment | Azure AI Foundry | Customer Service | M. Chen | Medium | 3 of 4 | Evidenced | 8m |
| Broker email drafterCopilot | Registered | Distribution | T. Nguyen | Medium | 2 of 4 | Evidence due | 1d |
| Policy wording searchMCP server | Registered | Legal | A. Rossi | Low | 2 of 2 | Evidenced | 3h |
| Unknown gpt-4o callerObserved traffic | Telemetry | Finance | None | Unrated | None | Unowned | 14m |
What counts as an AI system
Anything your organisation runs or relies on that makes or shapes decisions with AI: models, agents, serving endpoints, copilots, MCP servers, and AI features inside software you buy. If it can act or influence an outcome, it belongs in the inventory.
How systems arrive
| Source | What it brings | How |
|---|---|---|
| Cloud platforms | Model deployments, endpoints and registered agents | Read-only connectors for AWS Bedrock, Databricks and Azure AI Foundry |
| Registration | Agents, copilots and MCP servers teams declare | Console form, registration API or an agent card URL |
| Telemetry | AI calls nobody registered | OpenTelemetry generative AI signals, with content stripped |
| Vendors | Models and AI features in purchased software | Vendor and model records linked to the systems that use them |
Triage what was found
- 1Review Discovery
Inventory, Discovery lists systems found since the last review that are not yet registered.
- 2Match or register
Merge a find with an existing record, or register it as a new AI system.
- 3Assign an owner
Every system needs an accountable owner before it can be assessed.
- 4Retire what is unused
Mark idle deployments for retirement and notify the platform team.
The copilot can do this triage for you and wait for your approval on each change:
Discovery
7 AI systems found since the last review, not yet registered.
- Matched 2 to existing systems
- Found owners from cloud tags and the directory
- Drafted 1 registration from the Copilot catalogue
- Waiting on 3 decisions from you
- Request risk assessments for new systems
R. Singh becomes the accountable owner and gets a review task.
Create the record with owner J. Patel, tier Medium (proposed).