Control over AI
Blog
Safe AI adoption 7 min read

Why an AI tool catalog ages the moment you print it

Dozens of new AI tools arrive every day. An annual inventory describes last year, and inventorying more often does not fix it.

Admin updating a list of AI tools
Quick answer

An inventory is a photograph, and the subject keeps moving. Dozens of new AI tools appear daily, existing software gains AI features with no new procurement decision, and tools change owner and therefore change terms. A list compiled once a year is already wrong on the day it is delivered. The fix is not inventorying more often but measuring something else: not which tools exist, but which ones are actually being opened inside your organisation. That list is far shorter and it refreshes itself.

01

An annual inventory describes the situation as it was last year

02

AI features appear inside software you already approved

03

Acquisitions change jurisdiction and terms in one move

04

Measure what is used, not what exists

05

The list of tools actually in use is short and self-refreshing

An organisation decides to get a grip on AI. An inventory is commissioned, run properly, with a survey across every department. Six weeks later there is a list of 34 tools, each with a risk rating and a recommendation.

On the day it is presented, it is already wrong. Not because the work was poor, but because the subject moves while you are looking at it.

Three mechanisms that age your list

Too many arrive. The There's An AI For That directory logs dozens of new AI tools daily and now lists tens of thousands. The exact figure matters less than the order of magnitude: no manual process keeps pace with that.

AI appears inside software you already have. The most awkward of the three, because there is no moment at which anyone requests anything. Your video-meeting tool started summarising calls last month. Your CRM drafts emails. Your PDF reader grew an assistant. No new procurement decision, therefore no new assessment, and the tool sits in your list described as it was two years ago.

Tools change hands. On acquisition the new owner inherits the users, the data and the ability to revise terms. Jurisdiction can shift, sub-processors can change, retention policy can move. In your list it remains the same row in the same colour.

Why more frequent inventories miss the point

The reflex is to raise the cadence: annual becomes quarterly. That helps marginally and does not solve anything, because you are now taking faster photographs of something that keeps moving.

The real problem is what you are measuring. An inventory tries to capture which tools exist or could be used. That set is effectively infinite and grows faster than you can track it.

What is finite is the set of tools actually being opened inside your organisation. In most organisations that is a few dozen, not thousands, and that list refreshes itself when you derive it from observation rather than from a survey.

What a survey misses

A further reason not to rely on a departmental round: people do not report everything.

Not out of obstruction. Research by KPMG and the University of Melbourne on trust in and use of AI found that 57 per cent of workers hide their AI use from their employer, and 48 per cent have put sensitive company data into public AI tools. A list built from what people volunteer is a list of what people are comfortable volunteering.

That is not an argument for more surveillance. It is an argument for asking a different question: not "what do you use", but "which services are being opened", with no person attached to the answer.

What to do about it

Three shifts.

Measure use, not existence. Which AI services are being opened in your organisation? That is observable without recording who does it: the domain alone is enough to know a decision is needed.

Search tool, vendor or categoryโ€ฆ
700+ tools
ChatGPT๐Ÿ‡บ๐Ÿ‡ธ
HighAllowed
Claude๐Ÿ‡บ๐Ÿ‡ธ
MediumAllowed
DeepSeek๐Ÿ‡จ๐Ÿ‡ณnew
CriticalNot allowed
Perplexity๐Ÿ‡บ๐Ÿ‡ธnew
MediumNo decision yet
Mistral๐Ÿ‡ซ๐Ÿ‡ท
LowNo decision yet
Midjourney๐Ÿ‡บ๐Ÿ‡ธ
MediumNo decision yet

Every tool, scored for risk

700+ AI tools, each scored Low to Critical, with nothing pre-approved or pre-blocked until someone decides.

More about AI Tools

Make assessment a routine, not a project. New tool spotted, decision made, done. At half an hour rather than a six-week cycle, it survives contact with reality.

Reassess on events. Acquisition, changed terms, incident, new feature, relocated hosting. Not on a calendar, on a trigger.

What changes then is the nature of the list. It gets shorter, because it contains only what actually happens. It gets more current, because it comes from observation. And it becomes usable, because a list of 34 tools nobody opens answers no question about where your risk sits.

See also approving an AI tool: what to ask the vendor and blocking AI doesn't make you safer.

FAQ

Common questions

How many AI tools are appearing?

Dozens a day. The There's An AI For That directory now lists tens of thousands. The precise number matters less than the order of magnitude: any hand-maintained list is structurally behind.

Why doesn't inventorying more often help?

Because you are then taking faster photographs of something that keeps moving. The underlying problem is measuring what exists rather than what is used. The first set is effectively infinite; the second is finite and much smaller.

What do you mean by AI inside already-approved software?

Vendors add AI features to products you assessed years ago. Your video-meeting tool now summarises calls, your CRM drafts messages. There was no new procurement decision, so there was no new assessment.

Why is an acquisition a risk?

Because the new owner inherits the users, the permissions and the data, and can revise the terms. Jurisdiction can shift, sub-processors can change, retention policy can move, while the tool sits green in your list throughout.

What should we measure instead?

Which AI services are actually being opened in your organisation, how often, and whether a decision exists for them. That can be done without recording who: the domain is enough to know a decision is needed.