Governance framework & guidance

What should a board report answer?

Boards and executives need to understand how AI is being used, which Uses require attention, what decisions are waiting, whether material Risks are being managed, what has changed, and whether Strategy is turning into organisational activity.

Swell provides four canonical Release 1 pages: Executive Overview, AI Portfolio & Governance, Strategy & Roadmap, and Governance Actions & Change.

Missing information remains visible

Swell distinguishes genuine zero, Unknown, Not recorded, Not measured and Not assessed. These states are not interchangeable.

A board should be able to see the difference between “0 High Risks” and “Risk assessment has not occurred”. Good reporting creates useful questions rather than false assurance.

Using Swell AI

Chart: Recorded AI Portfolio Position

The Executive Overview uses one purposeful doughnut chart to split current confirmed AI Uses into Needs attention, Governance in progress and No immediate attention signal. The centre shows the total current AI Uses and the legend shows direct counts and percentages.

“No immediate attention signal” means no immediate governance attention signal is present in the information recorded in Swell. It is not a claim that the AI Use is safe, compliant or risk-free.

Chart: AI Uses by Business Area

The AI Portfolio & Governance page uses horizontal bars to show how confirmed AI Uses are distributed across business areas. This answers where AI is actually being used and can highlight concentrations or possible disclosure gaps.

The chart does not measure maturity, value, Risk or business-area performance. It shows distribution.

Chart: Governance Decision Position

A ranked lollipop/bar visual shows how many AI Uses are Approved, Awaiting Approval, Rejected, Not yet assessed or in other relevant decision positions.

Not assessed remains separate from not approved. The chart helps management understand where the portfolio sits in the governance decision process and where work may be stalled.

Chart: Initiative Roadmap

The Strategy & Roadmap page connects Strategic Objectives to named Initiatives across Now, Next and Later. An empty Objective row is a visible strategic gap rather than an error.

Now / Next / Later is a planning horizon, not project status. It remains separate from Initiative lifecycle and governance approval.

Chart: Expected Value × Readiness Matrix

The 3×3 matrix places Initiatives by Low, Medium or High Expected Value and Low, Medium or High Readiness. Each cell shows the count of Initiatives in that position.

It is a portfolio-planning matrix, not a Risk Matrix. It does not measure likelihood, consequence, safety, compliance or approval. The centre Medium/Medium cell is intentionally meaningful.

Chart: Executive AI Risk Matrix

The Governance Actions & Change page uses a simplified 3×3 residual AI Risk Matrix with Low / Medium / High Likelihood and Consequence. Each cell retains the full Low, Medium or High band colour and displays the number of current applicable residual Risks.

The board matrix is an executive projection of the detailed Risk Register and does not rewrite or rerate the authoritative underlying Risk records. A zero means no current applicable Risks occupy that cell; unrated Risks remain explicit rather than being silently treated as favourable.

Chart: Material Change & Incident Timeline

A compact horizontal timeline shows recent Material Changes and AI Governance Incidents in chronological order. It answers what material events occurred during the reporting period and provides an entry point for management discussion.

The number of events alone does not establish whether governance is strong or weak. The useful question is what happened and how management responded.

Preview, Generate and Reporting Snapshots

Release 1 uses Select pages → Preview → Generate → Download / History. Preview renders the exact report templates without creating history. Generate creates one immutable Reporting Snapshot and freezes the facts used across all selected pages.

If governed data changes between Preview and Generate, the stale preview is rejected. Historical reports are never silently rewritten by later operational changes.