Plain-English AI definitions for legal professionals. For what bars actually require, see the Legal AI Compliance Register.

AI policy

Risk and governance Last reviewed 2026-06-11

Definition An organization's written rules for AI use: which tools are approved, what data may be entered, what review output requires, and who is accountable. The baseline document of any AI governance program.

In more depth

Effective policies are specific enough to act on—naming approved tools, prohibited data categories such as client-identifying information in unapproved systems, verification requirements, and disclosure expectations. Law firm policies commonly also address client consent, engagement-letter language, and applicable court rules on AI use. A policy only functions alongside training and accessible approved tools; rules without alternatives tend to produce shadow AI.

Related terms

About the editor: MHSB Solutions, Research desk. MHSB Solutions is not a law firm. This glossary is educational information, not legal advice.

Educational information, not legal advice. AI terminology and tools change quickly; definitions reflect usage as of the last-updated date. For what bar associations and courts actually require of lawyers using AI, see legalaicompliance.help and consult a licensed attorney in your jurisdiction.