Aguardic logoAguardic
AIUC-1 · UC Berkeley · 66 Rules · 6 Domains

The Definitive AI Use Case Checklist. Now Enforceable as Code.

UC Berkeley's AIUC-1 defines 49 active requirements across 6 domains — covering everything from data privacy to societal impact. Aguardic turns each control into an enforceable policy rule that runs automatically on every AI output, code commit, and document.

66 enforceable rules across 6 AIUC-1 domains — install in one click

Deterministic + semantic evaluation — regex patterns for speed, LLM analysis for nuance

Continuous audit trails mapped to AIUC-1 control IDs

Free policy pack · 16 integrations · Covers ISO 42001, EU AI Act, NIST AI RMF

What is AIUC-1?

UC Berkeley's Comprehensive AI Governance Checklist

The AI Use Case Checklist (AIUC-1), developed by UC Berkeley's Center for Long-Term Cybersecurity, provides a structured framework of 49 active requirements organized into 6 domains. It covers the full AI lifecycle — from data collection through deployment and societal impact monitoring.

49

Active Requirements

Covering every stage of the AI lifecycle from data privacy to societal impact

6

Domains

Data Privacy, Security, Safety, Reliability, Accountability, and Societal Safety

100%

Free & Open

Open-source checklist from UC Berkeley — free AIUC-1 policy pack on Aguardic Marketplace

The 6 AIUC-1 Domains

Every Domain Covered. Every Rule Enforceable.

Domain A: Data Privacy

14 rules

Consent tracking, PII detection, data minimization enforcement, cross-border transfer controls, retention policy compliance, and right-to-erasure validation.

View in Marketplace

Domain B: Security

14 rules

Adversarial input detection, agent action restrictions, output over-exposure prevention, prompt injection defense, and system prompt extraction prevention.

View in Marketplace

Domain C: Safety

15 rules

Harmful output prevention, vulnerability detection, risk monitoring, fail-safe mechanism validation, and safety testing documentation.

View in Marketplace

Domain D: Reliability

10 rules

Hallucination prevention, unsafe tool call restrictions, agent reliability monitoring, privilege escalation detection, cross-system transfer controls, and operating schedule enforcement.

View in Marketplace

Domain E: Accountability & Governance

7 rules

Audit trail completeness checks, responsible AI officer designation, compliance reporting automation, and third-party audit readiness.

View in Marketplace

Domain F: Societal & Environmental Impact

6 rules

Environmental footprint tracking, community impact assessments, digital divide analysis, and democratic process safeguards.

View in Marketplace

All 6 templates available as a free pack in the AIUC-1 marketplace

How It Works

From Checklist to Continuous Enforcement

Step 1

Install the AIUC-1 Pack

One-click install from the marketplace. 6 templates covering all 66 rules across all AIUC-1 domains — deterministic regex patterns for speed, semantic LLM analysis for nuance.

Step 2

Connect Your AI Tools

Link OpenAI, Anthropic, Gemini, GitHub, Slack, and 10+ more integrations. Every AI output, code commit, and document is evaluated against AIUC-1 rules automatically.

Step 3

Enforce and Generate Evidence

Violations are caught in real-time with full audit trails. Each evaluation maps to specific AIUC-1 control IDs — export evidence for auditors, regulators, or internal review.

Already have internal AI governance documents? Upload them and extract enforceable rules automatically

Coverage Breakdown

23 Requirements Enforced Automatically. 26 Procedural Requirements Documented.

AIUC-1 has 49 active requirements across 6 domains. Aguardic enforces the 23 that can be validated technically — implemented as 66 granular rules across code analysis, output scanning, and configuration checks. The remaining 26 are procedural requirements (training, committee formation) that we document and track.

Enforced Automatically

23 Requirements

PII detection in AI outputs
Consent validation before processing
Encryption-at-rest verification
Access control audits
Bias detection in model outputs
AI disclosure requirements
Human override mechanism validation
Audit trail completeness
Data minimization enforcement
Cross-border transfer controls
Vulnerability scanning triggers
Adversarial input detection
Fail-safe mechanism checks
Performance drift monitoring
Decision explanation generation
Model documentation validation
Compliance reporting automation
Right-to-erasure validation
Retention policy compliance
Incident response validation
Safety testing documentation
Environmental footprint tracking
User notification enforcement

Documented & Tracked

26 Requirements

Staff training programs
Ethics committee formation
Stakeholder consultation processes
Organizational AI strategy
Community impact assessments
Accessibility evaluations
And 20 more procedural requirements...

Cross-Framework Coverage

AIUC-1 Covers What Other Frameworks Miss

AIUC-1 is comprehensive by design. Its 6 domains overlap significantly with other major AI governance frameworks — meaning one AIUC-1 implementation gives you a head start on multiple compliance requirements.

ISO 42001

~70% overlap

AI management system controls for risk assessment, deployment governance, and monitoring align closely with AIUC-1 Domains D and E.

EU AI Act

~65% overlap

High-risk AI system requirements, transparency obligations, and human oversight map directly to AIUC-1 Domains C, D, and E.

NIST AI RMF

~60% overlap

NIST's Map, Measure, Manage, and Govern functions correspond to AIUC-1's safety, reliability, and accountability domains.

OWASP AI Security

~50% overlap

AI-specific security risks (model poisoning, prompt injection, data leakage) covered by AIUC-1 Domain B security controls.

CSA AI Control Matrix

~55% overlap

Cloud-native AI controls for data governance, model lifecycle, and operational security align with AIUC-1 Domains A and B.

Implement AIUC-1 once — get a head start on 5 major AI governance frameworks.

Audit Ready

Built for AIUC-1 Audit Readiness

Control-Mapped Evidence

Every evaluation result maps to a specific AIUC-1 control ID (A.1, B.3, C.7, etc.). Export audit packages grouped by domain for streamlined reviews.

Continuous Compliance

No more point-in-time assessments. Every AI output, code commit, and document is evaluated against AIUC-1 rules in real-time — evidence generates itself.

Auto-Updating Rules

When UC Berkeley updates AIUC-1 or publishes AIUC-2, Aguardic updates the policy pack automatically. Subscribers get new rules without manual intervention.

Frequently Asked Questions

AIUC-1 FAQ

What is AIUC-1?+

AIUC-1 (AI Use Case Checklist version 1) is a comprehensive AI governance framework developed by UC Berkeley's Center for Long-Term Cybersecurity. It defines 49 active requirements across 6 domains covering the full AI lifecycle — from data privacy and security to societal impact.

Is the AIUC-1 policy pack free?+

Yes. The complete AIUC-1 policy pack is free on the Aguardic Marketplace. You can install all 6 domain templates with one click and start enforcing immediately. No subscription required for the policy pack itself.

How many rules does the AIUC-1 pack include?+

The pack includes 66 enforceable rules across 6 templates — one for each AIUC-1 domain. Rules use a combination of deterministic evaluation (regex pattern matching for speed) and semantic evaluation (LLM analysis for nuanced checks).

What's the difference between enforced and documented controls?+

Enforced requirements (23 of 49) can be validated technically — implemented as 66 granular rules covering code analysis, output scanning, and configuration checks. Documented requirements (26 of 49) are procedural (training programs, committee formation) that Aguardic tracks and reports on but cannot automatically validate.

Does AIUC-1 overlap with other frameworks?+

Yes, significantly. AIUC-1 shares ~70% overlap with ISO 42001, ~65% with the EU AI Act, ~60% with NIST AI RMF, and ~50-55% with OWASP and CSA frameworks. Implementing AIUC-1 gives you a head start on multiple compliance requirements.

How do I install the AIUC-1 pack?+

Sign up for Aguardic (free trial available), navigate to the Marketplace, find the AIUC-1 category, and click Install on any or all 6 domain templates. Connect your AI tools and enforcement starts automatically.

Will the pack update when AIUC-1 is revised?+

Yes. When UC Berkeley publishes updates to AIUC-1 or releases AIUC-2, Aguardic will update the policy pack. Subscribers receive updates automatically — no manual intervention required.

Start Enforcing AIUC-1 Today

Install the free AIUC-1 policy pack, connect your AI tools, and start generating audit-ready evidence in minutes.

Free policy pack · 16 integrations · Covers ISO 42001, EU AI Act, NIST AI RMF

AIUC-1 Compliance — UC Berkeley's AI Use Case Checklist, Enforced as Code - Aguardic