Generative AI Use Policy
Generative AI Use Policy
Our principles
Generative AI refers to technology that can create new content in response to prompts, including text, speech and images.
This policy sets out how Alder workers, employees and freelance advisers use generative AI tools responsibly, securely, and in a way that protects client confidentiality at all times.
We are committed to maintaining the highest standards of discretion and professional integrity. Our use of generative AI is governed by the following principles:
- Client confidentiality must not be compromised.
- Generative AI is used to support efficiency, research and internal processes, not to replace professional judgement.
- All work produced with the support of AI is reviewed and validated by Alder professionals.
Alder uses generative AI only within approved, enterprise-grade environments or in carefully controlled ways that ensure client confidentiality is protected.
- Acceptable and responsible use
Generative AI may be used to support administrative tasks, marketing, drafting, research, and creative development.
In relation to such work:
- Outputs are always reviewed, checked, and interpreted by Alder professionals before use.
- AI is never used to make or determine advisory decisions for clients.
- AI-generated content is not relied upon as the sole source of information and is always supplemented by professional judgement and, where appropriate, non-AI sources.
Approved tools are those formally authorised by Alder for specific use cases, as communicated to workers, employees and freelance advisers. These may include enterprise platforms and, for limited non-confidential tasks, designated tools under controlled conditions.
- Enterprise-controlled environment
Alder uses Microsoft365 Copilot enterprise-controlled environment as its standard operating system.
Based on Microsoft’s published terms and enterprise commitments, all prompts and outputs are processed within Alder’s Microsoft365 environment and are not used to train external models. These controls are supported by enterprise-grade security, encryption and access management.
Alder relies on the contractual and technical assurances provided by Microsoft in relation to these safeguards.
- Client confidentiality
In addition to Microsoft365 Copilot, Alder may use AI tools where information is non-sensitive, anonymised, or does not identify a client or specific situation. This includes, for example general background research about organisations or sectors.
Confidential or sensitive information relating to specific client matters must not be entered into AI tools that are not operating within an enterprise-controlled environment.
- Governance and oversight
Our use of AI is subject to internal governance and oversight, including:
- the use of approved tools only
- alignment with our data protection and information security policies
- appropriate monitoring and escalation of any risks or concerns
Any suspected data breach or misuse of AI tools must be reported immediately to senior management and our Data Protection Officer.
- Policy review
This policy is reviewed periodically and in response to any material changes in the terms, capabilities or risk profile of the AI tools we use.