Audit any deployment
Eight questions to take into a vendor conversation — including ours. Answers should be specific enough to write down. The blanks that stay blank are the map of the remaining risk.
Data location
Where do originals, indexes, queries and answers reside — and can that differ by project?
Media processing
Where are previews, thumbnails and transcripts created? Is full media transferred to make them?
Model access
What exact content reaches each model? Can external processing be disabled per source?
Storage and retention
How long are prompts, answers and derived assets kept, and by whom?
Permissions
Does the assistant inherit existing user and project access, or expose a broader view?
Provenance
Can every answer lead back to inspectable evidence? How are conflicting sources shown?
Operations
Who maintains, updates and monitors it? What capacity does indexing need?
Exit and deletion
Can indexes and derived assets be exported or removed? How is deletion verified?
These questions are useful whatever the final topology. Their purpose is not to steer every studio towards the same answer, but to replace assurance with an operating model.