FAIR v2.1

Score yourself first

No account, no fee, no third-party audit required. Rate your own organisation against the published FAIR rubric, see roughly where you stand, and apply when you are ready. Hard evidence such as an existing certification will always score better under the real assessment than a self-declared answer — but a self-declared answer still counts, and still gets you through the door.

C1 — Product & Solution Documentation

What the product does, where it is used, and how it uses AI. A product deck, overview or website usually covers this whole category.

C2 — Technical Architecture & Data Flow

How data moves through the system: where it comes from, what is processed, where it is stored and who can reach it. A simple data-flow or architecture diagram is the ideal evidence.

C3 — Privacy & Data Governance

How personal and organisational data is collected, kept, transferred and deleted. A privacy policy and a data-retention policy usually answer most of this category.

C4 — Security & Access Control

The controls that protect the product, its systems and its data. An information security policy, access-control screenshots, or an ISO 27001 or SOC 2 report are all accepted; external certification is not required.

C5 — AI Models, Cloud Services & Third-Party Dependencies

The AI models, cloud services and other providers the product depends on. One table — provider, purpose, data, region — answers this category.

C6 — User & Stakeholder Engagement

How intended users and affected communities shaped the product, including language, culture and accessibility.

C7 — Complaints, Incidents, Appeals & Human Review

What happens when something goes wrong for a user: complaints, challenges to AI-supported decisions, and human review.

C8 — Sustainability & Social / Local Impact

The difference the product makes for users, local jobs and skills, and the environment. Small and early-stage teams are not expected to have formal impact reports.

Nothing you enter here is saved or sent to AIFOD.