AI governance in personal health, in plain English.

What the WHO's readiness report and the EU AI Act actually ask of you — as a person using a chat tool for your own health, or as a solo clinician using one for your practice.

The short answer

Governance is not a technical layer. It is four written lines: what the tool is for, what it is never for, who sees the outputs, and where the record lives. Two pages, updated quarterly. That is the whole personal governance stack.

The regulator has been polite so far. That is the phase we are in. The words in the Act do not need an update to catch a solo practitioner who used a general-purpose model to draft a plan for a client and kept no record of it — they already do.

For individuals — the two-page personal policy

You are not the target of the EU AI Act. You are the target of the question the regulator was trying to make institutional: is the way you use this tool defensible in a room with your clinician?

A two-page policy — intent, limit, review, record — is enough. Pre-written. Free of jargon. Yours.

Personal AI Health Governance Kit

Safe-default prompts, a personal policy template, a data-share checklist, and the exact question to bring to your clinician. One-off — €79.

For solo practitioners — the compliance starter

"I only use it for admin" is a governance claim. It needs a written scope-of-use, a client-facing consent line, and a session record showing the AI drafted and the human decided. Not a compliance department. Two pages, a consent paragraph, and a log template.

AI Act Compliance Starter — for solo clinics

Scope-of-use template, client consent language, session log, and a quarterly review checklist keyed to the WHO's six readiness checks. One-off — €149.

Definitions

Adjacent reading

The Governance Kit and the Compliance Starter both sit inside All-Access — along with the pillar course, the resource library, and everything we ship next.

Suggested for you

Based on what you've been reading — always learning.

See all →