AI governance readiness assessment
A free research diagnostic for private banks in Singapore.
Review your institution's reported practices against 193 assessment criteria across 7 domains, drawn from a defined corpus of 13 source instruments. The results support research and internal reflection; they do not establish regulatory compliance.
Short diagnostic Free · 35 priority criteria · approximately 25–30 minutes
Extended diagnostic Free · all 193 criteria · approximately 90–120 minutes
Both scopes use the same method and offer results in your browser and an optional PDF. No account or email address is required. Answers are saved on your device; requesting a PDF sends them to the report server. Read the privacy policy.
Seven assessment domains
Model Governance & Validation
115 CRITERIA
Full AI lifecycle from identification through decommissioning. Governance structure, capability, third-party AI, and generative AI controls.
Data Governance & Privacy
15 CRITERIA
Personal data in AI systems: consent, data protection, privacy-by-design, anonymisation, bias assessment, and third-party data processing.
Client-Facing AI & Suitability
14 CRITERIA
AI systems interacting with clients: algorithm governance, suitability of advice, fair dealing, customer transparency, and redress.
Explainability & Fairness
11 CRITERIA
Responsible AI principles: fairness definitions, protected attributes, bias detection, explainability methods, and agentic AI governance.
Outsourcing & Third-Party AI
12 CRITERIA
AI from external providers: governance framework, due diligence, outsourcing agreements, concentration risk, and lifecycle management.
Operational Resilience & Cybersecurity
12 CRITERIA
Technology and security infrastructure: IT governance, access control, audit logging, incident management, and AI-specific security.
Governance Structure & Accountability
14 CRITERIA
Institutional governance architecture: AI management system, risk appetite, AI risk culture, operating model, and skills and knowledge.
Source corpus
The diagnostic uses selected provisions from these 13 instruments. It includes proposals and voluntary frameworks to support research; those sources do not create current legal obligations. Instrument names link to the publishers’ source pages or directories.
- P017 – Proposed Guidelines on AI Risk Management
MAS · November 2025 proposal; consultation closed 31 January 2026
CONSULTATION58 criteria
- MindForge Ops Handbook & Implementation Examples
MAS/Industry · January 2026
METHODOLOGY32 criteria
- ISO/IEC 42001:2023
ISO/IEC · Edition 1, December 2023
Publisher overview; the full standard requires licensed access.
ASSURANCE19 criteria
- FEAT Principles (2018)
MAS · 2018 corpus edition
METHODOLOGY17 criteria
- MAS Information Paper on AI Model Risk Management
MAS · December 2024
OBSERVED PRACTICE16 criteria
- TRM Guidelines 2021
MAS · January 2021
SUPERVISORY13 criteria
- PDPA Advisory Guidelines (Mar 2024)
PDPC · March 2024
METHODOLOGY11 criteria
- Outsourcing Guidelines (Banks, Dec 2023)
MAS · December 2023
SUPERVISORY8 criteria
- CMG-G02 Digital Advisory Guidelines
MAS · October 2018
SUPERVISORY7 criteria
- Veritas Assessment Methodology
MAS/Industry · Edition not specified in the register
The link opens the initiative page; edition-level mapping remains to be confirmed.
METHODOLOGY5 criteria
- SUPERVISORY
3 criteria
- IMDA Model AI Governance Framework for Agentic AI
IMDA · January 2026 corpus edition (v1.0)
January launch page. The publisher has since issued a revised framework.
METHODOLOGY2 criteria
- P004 – Proposed Guidelines on Third-Party Risk Management
MAS · March 2026 proposal; consultation closed 20 April 2026
CONSULTATION2 criteria
About this diagnostic
Adrien Pesa developed this diagnostic within Governed Autonomy, his independent, self-funded and non-commercial research programme. The programme has no entity, clients or revenue. The diagnostic is not affiliated with or endorsed by any regulator.
The source framework distinguishes five normative tiers and a separate observed-practice class. The current corpus contains no statutory criteria. Proposed guidance, voluntary methodologies and assurance standards are distinguished from supervisory expectations.
Read the methodology · Explore the research programme
Research feedback and corrections are welcome at contact@governed-autonomy.com.