Responsible AI Statement
How SSB Defence approaches AI with human oversight, privacy, security and accountability.
Version 1.0 — August 2026
1. Our Approach to Artificial Intelligence
SSB Defence is a trade name used by StartSmartBusiness.com Inc. Artificial intelligence can provide valuable tools for research, analysis, documentation, automation and business decision support. Like any technology, its value depends on how and where it is used.
SSB Defence seeks to use artificial intelligence responsibly, with appropriate consideration for privacy, confidentiality, information security, accuracy, human oversight, transparency, intellectual property and business risk.
2. How We May Use AI
SSB Defence may use AI-assisted technologies where appropriate to support research and information gathering, summarizing publicly available information, drafting and organizing documentation, developing educational materials, reviewing non-sensitive business information, data analysis, identifying issues for further investigation, comparing technology options and supporting internal administrative processes.
The use of AI does not remove our responsibility to evaluate the resulting work.
3. Human Oversight
AI-generated information can be incomplete, outdated, misleading or incorrect. Where appropriate, AI-assisted work should be reviewed against original source material, vendor documentation, technical evidence, applicable standards, regulatory or government sources, the actual client environment, and professional experience and judgment.
Final responsibility for SSB Defence advice and recommendations remains with the people providing the service.
4. Client and Confidential Information
Client confidentiality takes priority over convenience. SSB Defence does not knowingly submit passwords, authentication credentials or other information that would create an inappropriate security risk to public or consumer AI services.
Personal, confidential, proprietary or security-sensitive client information should not be entered into AI systems unless the particular use has been assessed and is consistent with client agreements, privacy requirements, confidentiality obligations, security requirements and data-handling practices.
5. AI and Cybersecurity Information
Cybersecurity work can involve particularly sensitive information, including network configurations, vulnerability information, security architecture, system inventories, credentials, incident information, logs, client infrastructure details and security weaknesses.
Such information should not automatically be placed into an AI system merely because doing so might make analysis faster.
6. AI Features Embedded in Business Platforms
Artificial intelligence is increasingly being incorporated into cloud services, productivity platforms, cybersecurity products and business applications. Organizations may therefore begin using AI functionality without deliberately purchasing a separate AI product.
- Which AI features have been enabled?
- What business information can those features access?
- Which users can use them?
- Is information retained?
- How is information processed?
- What administrative controls are available?
- Do AI permissions inherit existing data-access permissions?
- Does existing data governance remain appropriate?
7. AI Does Not Fix Poor Data Governance
AI can expose existing information-management problems. If employees already have excessive access to files, an AI system connected to those files may make that information easier to discover. If obsolete information is retained indefinitely, AI may incorporate it into searches, summaries or recommendations.
8. Accuracy and Verification
AI-generated information should be treated according to the importance of the decision being made. We distinguish between assistance, evidence and professional judgment. AI assistance should not be confused with evidence.
9. Automated Decision-Making
SSB Defence does not rely solely on automated AI decision-making through its public website to make decisions having significant legal or similarly significant effects on individuals. Where automated tools support assessments or analysis, results should be interpreted in context rather than treated as an automatic determination of risk, compliance or suitability.
10. Intellectual Property and AI-Generated Content
Users of AI need to consider copyright, licensing, confidentiality, attribution and ownership when using generated content. SSB Defence seeks to use AI-generated material responsibly and does not intentionally use AI to reproduce protected third-party material inappropriately or to misrepresent another party's work as our own.
11. AI Vendors and Data Sovereignty
Selecting an AI platform is also a vendor and data-governance decision. Organizations should consider where information is processed, which jurisdiction may apply, whether prompts or files are retained, whether information may be used to improve models, available administrative and privacy controls, ability to delete or export information, integration with corporate systems, vendor dependency, service availability and exit options.
12. Security of AI Systems
AI systems should be incorporated into the organization's normal cybersecurity program rather than treated as an exception. Depending on the environment, this may include identity and access management, MFA, least privilege, logging and monitoring, data-loss prevention, vendor-risk management, configuration review, incident response, backup and continuity planning, and periodic access reviews.
13. Responsible AI for Our Clients
For many small and mid-sized organizations, a practical starting point is answering five questions:
- What AI are we using?
- What information can it access?
- What information are employees permitted to give it?
- Who is responsible for verifying important outputs?
- What happens to our information after the AI processes it?
14. Transparency
Where AI plays a material role in work performed for a client and that use is relevant to the nature, confidentiality or reliability of the work, SSB Defence seeks to provide appropriate transparency regarding its use.
15. Continuous Review
Artificial intelligence technology, regulation, security practices and vendor capabilities are changing rapidly. SSB Defence will periodically review its AI practices as technologies, risks, client requirements, privacy guidance and applicable legal requirements evolve.
16. Contact
Questions about this Responsible AI Statement may be directed to Email SSB Defence. Privacy-specific inquiries may be directed to Email Privacy.
17. Updates
We may revise this statement as technology, business practices and applicable requirements evolve.
Version 1.0 — August 2026