1 · The dashboard you land on
Month-to-date spend, end-of-month forecast, 30-day bar chart, and the three top providers in a single viewport. Click any KPI tile to drill into per-user, per-team, or per-project attribution.
Try this viewAI Governance for the modern enterprise
GreyScape.ai helps you see and govern every AI tool, dollar, and exposure across your organisation — unapproved AI tools, AI spend, data exposure risks, compliance violations, duplicate subscriptions, and employee AI usage patterns, before they become security incidents. Discovery-first AI governance, in one workspace.
First inventory in 10 minutes. We never read prompts, completions, or anything inside your AI requests — just the metadata you need to govern.
What GreyScape surfaces
Each one started as a small workflow shortcut. Each one is now a row in someone's incident review.
Personal ChatGPT, Cursor, Claude Pro, Midjourney, Perplexity — signed up with corporate emails, paid on expense cards, outside SSO. None of it on your IT inventory.
Provider bills at the org level, individual subscriptions buried in expense feeds, embedded AI inside SaaS you already pay for. Add them up and most companies are 30–50% over their declared AI budget.
Customer PII pasted into prompts. Source code in a chat window. Internal financials uploaded to a free-tier model that retains data for training. The leakage is mundane, constant, and invisible.
EU AI Act Article 50 obligations bite on 2 August 2026. NIST AI RMF, ISO 42001, SOC 2, GDPR — each requires an inventory of AI use you can produce on demand. You can't evidence what you can't see.
Three teams paying for three Cursor seats. Two departments with separate ChatGPT Enterprise contracts. Two people expensing Claude Pro at $20/month when there's a workspace seat available for $0.
Which teams use AI heavily. Which use it not at all. Which model gets reached for first. Whether usage maps to the productivity gains people are claiming. The first honest picture of AI inside your organisation.
— before they become security incidents.
How GreyScape works
Discovery is step one. The platform then gives you the tools to act on what you find — without slowing the teams that are actually using AI well.
Step 01 · See it
Seven intake sources working together: provider admin APIs, expense feeds, browser extension, SSO event hooks, network egress logs, MDM inventory, code scans. One inventory of every AI tool, every user, every dollar — sanctioned or shadow.
See all 7 discovery sourcesStep 02 · Govern it
Every dollar mapped to a real person, team, and project. Budgets at four scopes with soft and hard alerts. New AI workloads scoped, justified, and approved in 60 seconds — with a service-account key auto-provisioned on the way out.
See the approval flowStep 03 · Control it
Approved-models policy enforced at the gateway. Inline PII redaction. Blocked prompts logged for review. A tamper-evident audit log mapped to EU AI Act, NIST AI RMF, ISO 42001 and SOC 2 — evidence pack on request.
See policy + DLPSee the product
It's a fully-seeded GreyScape tenant with 42 days of realistic data, refreshed every morning. Every shipping feature is unlocked — click anything, change anything, break anything. No sign-up, no credit card, no expiring trial timer. Four of the surfaces you'll land in:
Month-to-date spend, end-of-month forecast, 30-day bar chart, and the three top providers in a single viewport. Click any KPI tile to drill into per-user, per-team, or per-project attribution.
Try this viewEvery tool we discovered across seven intake sources, deduped into one row per tool. Each row carries the team, user count, originating discovery surface, and a triage status. Sort by spend, headcount, or risk and drill down per row.
Try this viewThe AI scoping advisor chats with the requester, recommends the cheapest sensible model, and lands a structured request on your queue with a cost estimate and the full transcript. Approve and a scoped service-account key is provisioned automatically.
Try this viewSoft alert at 75%, hard alert at 100% — never a production-breaking cap. Set budgets per organisation, team, person, or project. Email and Slack notifications fire to the budget owner, with full per-day burn-down on the detail view.
Try this viewWhy discovery first
You cannot govern what you cannot see. Every AI policy, every approval workflow, every DLP rule depends on first having an honest inventory of what is actually being used. Discovery isn't a feature — it's the precondition for every other AI control.
Audit in progress, target Q3 2026.
Article 50 mapped, evidence pack on request.
No prompts, no completions, no data leaves your providers.
Frankfurt by default, US region on request.
What you get out of it
Pricing
$3 per user per month. 10-user minimum. 14-day refund guarantee — better than a trial because everything is real from day one.
Everything we ship today, per user, per month.
10-user minimum · self-serve up to 999 users
Everything in Standard, plus advanced governance and DLP.
Vote on which features ship first
Contracted pricing, dedicated support, procurement-friendly paperwork.
MSA · DPA · SCCs · security review pack
FAQ
Quick answers below. The full FAQ — pricing, residency, SLAs, cancellation, billing — lives on the pricing page.
About ten minutes for the read-only path: paste an OpenAI or Anthropic admin API key, run the first sync, and the dashboard fills in. No production code changes, no proxy, no SDK swap.
Provider usage metadata only: which key, which model, token count, cost, timestamp. We never see prompts, completions, embeddings, or anything in the request body.
Free trials force us to gate features and add an expiration deadline. Both make the product harder to evaluate. Instead: a fully-realistic interactive demo at /demo, plus a 14-day refund guarantee. You get the real product on day one with no gates.
Yes. From 2 August 2026 the Commission's GPAI enforcement powers enter application and Article 50 transparency obligations take legal effect across the EU. GreyScape gives you the inventory and audit trail every AI governance framework starts with — with evidence packs mapped to EU AI Act and NIST AI RMF on request.
Want more detail?
Nine places to dig in — from the architecture walkthrough to the per-data-point inventory of exactly what we collect.
Architecture, sync cadence, encryption, attribution scenarios, approval workflow, security stack.
Every connector that ships today, with a candid list of what's still on the roadmap.
Each data point, whether it's mandatory or optional, and which functionality it unlocks.
Pillar page on how we surface every AI tool, sanctioned or shadow, across seven intake sources.
How spend, attribution, budgets, and approvals work together to keep AI within guardrails.
Try every shipping feature, and preview every coming-soon one, with realistic seeded data.
Free, no-login: describe an AI idea, get a model recommendation and a monthly cost estimate.
Project the savings GreyScape would unlock for your headcount, spend, and tool count.
Side-by-side with adjacent categories: SSPM, CASB, FinOps, AI governance.
Connect your first source in 10 minutes and surface every AI tool, every dollar, every exposure — before it becomes a security incident. From $3/user/month. No credit card. SOC 2 in progress. EU + US data residency.