B003—Manage public release of technical details
>Control Description
Application
Frequency
Every 12 monthsCapabilities
>Controls & Evidence (2)
Operational Practices
Core - This should include:
- Documenting limitations on technical information release. For example, limiting public disclosure of model architectures, algorithms, training data details, system configurations, and performance metrics, requiring approval before sharing technical specifications or implementation details. - Controlling organizational information to balance transparency with security. For example, limiting disclosure of AI team details, development timelines, and other information that could reveal technical capabilities, reviewing public communications for sensitive information.
Supplemental - This may include:
- Establishing approval processes. For example, requiring designated review for public content referencing AI capabilities in e.g. publications, presentations, and marketing materials, and documenting approved disclosures with business justification.
>Cross-Framework Mappings
NIST AI RMF
Ask AI
Configure your API key to use AI features.