vanwebdev product visual: Consulting Services

Intelligence Audit

Starting at $250 CAD

Two week engagement. Operational audit, deployment plan, ROI projections. Range: $5K to $8K depending on scope.

Scope of engagement

What you get

  • One AI system or one shipping plan per call. We focus rather than survey.
  • Prompt inputs and every user-facing surface. We sketch the attack-surface map together.
  • Tool calls, function calls, and third-party integrations. We list each external dependency.
  • Output channels and downstream consumers. We trace where the AI output actually lands.
  • Data residency posture and a jurisdiction map. We name the country each byte sits in.
  • Logging, monitoring, and audit trail design. We score what is captured against what must be captured.
  • Incident response posture and the rollback plan. We test the rollback against one plausible failure.
  • Regulatory framing under PIPEDA, ITSG-33, OSFI B-13, or AIDA as relevant. We cite the clause.

Timeline

1 to 2 weeks

Deliverables

  • Operator-readable risk map: A one-page scored risk map of your AI system, drawn live during the call. Every input, every tool, every output node carries a score. The map is a working artefact, not a slide deck.
  • Prioritised remediation list: A prioritised remediation list. Top fixes first, with the order, the cost band, and the regulatory clause that motivates each item under PIPEDA or ITSG-33 where relevant.
  • 90-day plan: A 90-day rollout plan with weekly checkpoints. Each checkpoint names the artefact you ship that week and the rollback note if it fails. Furthermore, the plan stays inside your operator budget.
  • Two-page executive brief: A two-page executive brief written in plain English. Pass it to a regulated client, a board, or an insurer without translation. Specifically, it covers what you fixed, what you accepted, and why.

Prerequisites

  • A working AI system, or a shipping plan documented well enough to discuss in one hour.
  • One regulatory worry that keeps you up at night: PIPEDA, OSFI B-13, ITSG-33, AIDA, or sector-specific.
  • Any existing architecture diagrams or design notes, even rough sketches; we work from what you have.
  • Twenty-minute access to the engineer who actually built or owns the system in production.
  • Honest answers about what is logged, what is monitored, and what is not. We will not judge.

Who this is for

  • Book the AI readiness audit Canada operators run before they ship a model into production
  • Specifically, you walk in with one AI system or one shipping plan; you walk out with a scored risk map, a prioritised remediation list, and a 90-day plan
  • Inside scope of the audit

Customize this engagement

Live configurator arrives in milestone 2. For now, mention any custom scope on the kickoff call.

Frequently asked

Who actually runs the audit, and what is their background?

One Vanwebdev engineer runs the audit, on one call. The engineer has shipped production AI systems in Canada under PIPEDA and ITSG-33, and reads the regulatory clauses for a living. Furthermore, the engineer who runs the call also writes the brief; nothing is handed off.

Is the $250 fee final, or are there add-ons after the call?

The $250 fee is final. Vanwebdev does not run an upsell ladder on this audit. If your situation requires a multi-week engagement after the call, we name a price band and you decide; the audit price never changes retroactively.

Do you sign a mutual NDA before the audit call begins?

Yes. We sign a mutual non-disclosure agreement before the audit call begins. The Vanwebdev template is available on request, or we sign yours if it is a standard Canadian operator NDA.

What if my AI system is still pre-launch or only in design?

Pre-launch works well. The AI readiness audit Canada operators run before they ship was specifically designed for the pre-launch state. Specifically, the earlier you audit, the cheaper the remediation list is to execute.

Will you recommend specific Canadian vendors, or stay neutral?

We stay neutral on vendors. When a recommendation is structurally required, we name two or three options and explain the trade-offs; you decide. Vanwebdev does not take vendor referral fees on this audit.

Can I bring my engineering team and my legal counsel on the call?

Up to four people on the call: one engineer who built the system, one product or operations lead, one legal or compliance contact, and one observer. Beyond four the call loses focus; we will ask to split into two audits.