AI governance · automated decisions

A machine decided.Did you tell them?

A credit denial. An insurance tier. A tenant score. A benefits cut. A growing set of laws imposes different transparency, explanation, correction, opt-out, appeal, and human-review duties for certain automated decisions. Grade every automated decision system against a composite set of those controls before a regulator or a person asks.

Get the Scorecard — $79one-time · instant download · yours to keep

Not legal advice. This is a readiness aid that grades your transparency process from your own marks. It is date-agnostic and people-blind: it encodes no statute’s deadline, grades a decision system rather than any person, files nothing, and renders no compliance ruling. Automated-decision duties (the CCPA ADMT rules, Colorado SB 26-189, GDPR Article 22, ECOA/FCRA adverse-action) vary by jurisdiction and change often — confirm which apply to you and every deadline with qualified counsel.

Five deliverables · runnable
Transparency-scoring engine
runnable
Workbook that reproduces it
.xlsx
Disclosure Mapping Playbook
.docx
Transparency-Remediation Runbook
.docx
6-system worked sample
sample
The other half
Hiring decisions? See the AEDT Deployer Dossier

Correction notice — version 1.1.0 (2026-09-23). This package replaces version 1.0 of the Automated-Decision Transparency & Disclosure Scorecard. Version 1.0 contained a scoring-logic defect: a system marked with no human appeal and no opt-out was forced to UNDISCLOSED even where the person had been told an automated system was used. In 1.1.0 the no-notice condition is the only one that returns UNDISCLOSED; a missing appeal and opt-out raise a recourse-gap flag that does not change the score or verdict; and a score below 50 without the no-notice condition reads MATERIAL TRANSPARENCY GAPS. If you graded systems with version 1.0, re-grade them with this version. Existing buyers: the download link in your original purchase email now serves version 1.1.0.

01.The Problem

“The system decided” is not an answer a regulator accepts.

The person was never told

A person who was never told an automated system decided cannot ask for an explanation or an appeal. Regimes differ on timing and content — some require notice before the system is used, some require an explanation after an adverse outcome, and some require both.

There’s no one to appeal to

A denial with no human who can reconsider it, and no way to opt out, leaves the person no recourse at all. A human-review path and an opt-out are not universally interchangeable. Confirm which recourse rights and conditions apply before relying on either one.

The rules keep moving

Colorado delayed its AI law, then replaced it outright before the original ever took effect. A checklist pinned to one statute’s text is wrong the moment it changes. So grade a composite set of controls drawn from several regimes, not one statute’s text.

02.See It Work

Grade a decision system. Read whether you could defend it.

This is the live scoring logic from the engine. The insurance premium-tier preset scores 74 and still reads UNDISCLOSED — the person is never told an automated system decided. The tenant-screening preset reads GAPS and carries the recourse flag: no appeal and no opt-out.

Grade a decision system:
⚡ Use of automation disclosed to the person20

No notice of automated processing is provided

A top mark records the user’s assessment against the mapped rule; it is not a certification that the notice is legally sufficient.

Meaningful-logic & adverse-reason explanation20

Meaningful logic/inputs/outputs + a specific reason

Human review / appeal with authority to overturn18

A trained reviewer can overturn and weighs what the person submits

Opt-out and data-correction paths offered16

Clear path offered and operationally honored

Scope & “significant decision” mapping14

Mapped to domain, jurisdictions, and the duties owed

Notice retention & decision recordkeeping12

Some records, not per-decision or not retained

UNDISCLOSEDscore 74/100

Disclosure gate fired: the person was never told an automated system made the decision. The score alone would read GAPS.

Fix first: Use of automation disclosed to the person

Weighted to 100. The gate forces UNDISCLOSED when the person was never told it was automated (⚡ disclosure). No human appeal AND no opt-out raises the recourse flag, which does not change the verdict. A human-review path and an opt-out are not universally interchangeable. Confirm which recourse rights and conditions apply before relying on either one. Date-agnostic and people-blind — it grades your process, never a person. Not legal advice.

Diagram of the Automated-Decision Transparency & Disclosure Scorecard: disclosure controls scored to 0-100 and a disclosure gate forcing UNDISCLOSED.
Shareable diagram

How the gate works, in one image

How the Automated-Decision Transparency & Disclosure Scorecard scores disclosures and forces UNDISCLOSED when the subject isn't told — the same math the demo runs, as a diagram you can share or embed anywhere.

View & embed the full diagram
03.The Engine

The same verdicts, from the runnable engine.

Verbatim output from the included Python engine on the six-system sample. The workbook reproduces these byte-for-byte.

==========================================================================
AUTOMATED-DECISION TRANSPARENCY & DISCLOSURE SCORECARD
==========================================================================

Credit-line approval model
  verdict: DISCLOSED   (score 100/100)

Tenant-screening score
  verdict: GAPS   (score 66/100)
  Recourse-gap flag: Based on the user’s marks, neither a human-review
  path nor an applicable opt-out path is shown. This flag does not
  change the score or verdict and does not determine which form of
  recourse applicable law requires.
  fix first: Human review / appeal with authority to overturn

Same screening after adding a human appeal
  verdict: DISCLOSED   (score 84/100)

Insurance premium-tier model
  verdict: UNDISCLOSED   (score 74/100)
  gate: UNDISCLOSED — the person was never told an automated system made the decision
  fix first: Use of automation disclosed to the person

Dynamic pricing eligibility engine
  verdict: GAPS   (score 60/100)
  fix first: Meaningful-logic & adverse-reason explanation

Benefits-eligibility auto-decision
  verdict: MATERIAL TRANSPARENCY GAPS   (score 23/100)
  note: Based on the user’s marks, multiple transparency or recourse
        controls are missing or incomplete. This result does not mean
        the person received no notice; UNDISCLOSED is reserved for the
        separate no-notice condition.
  Recourse-gap flag: Based on the user’s marks, neither a human-review
  path nor an applicable opt-out path is shown. This flag does not
  change the score or verdict and does not determine which form of
  recourse applicable law requires.
  fix first: Meaningful-logic & adverse-reason explanation

--------------------------------------------------------------------------
PORTFOLIO: REVIEW BEFORE CONTINUED USE   (1 of 6 undisclosed · 1 with material transparency gaps · exposure 33.3%)
One or more systems read UNDISCLOSED or MATERIAL TRANSPARENCY GAPS under
this instrument. Determine whether the missing controls are applicable and
whether continued use is appropriate before relying on the portfolio
result. This result does not itself direct suspension or establish a legal
violation.
--------------------------------------------------------------------------

Grades a composite set of transparency and recourse controls drawn from
multiple regimes, never a specific statute or deadline; it does not mean that
every regime requires every control. It grades a deployer’s process,
never a person, and renders no compliance ruling. A readiness aid, not legal
advice. Confirm which regimes apply, and every deadline, with counsel.
04.The Standard

Six controls, weighted to 100. Disclosure is non-tradeable.

20

⚡ Use of automation disclosed to the person

Were they told an automated system made or substantially drove the decision? Regimes differ on timing and content — some require notice before the system is used, some require an explanation after an adverse outcome, and some require both. Mark what your process actually does; confirm what yours requires with counsel.

20

Meaningful-logic & adverse-reason explanation

Can the person get meaningful information about the logic and a specific reason for an adverse outcome — not “the system decided”?

18

Human review / appeal with authority to overturn

A trained reviewer who can actually overturn the outcome and weighs what the person submits.

16

Opt-out and data-correction paths offered

A real way for the person to opt out of the automated processing, or to correct the data that drove it. Mark what the process actually offers. Whether either path is legally required depends on the applicable jurisdiction, decision, data, and organizational role and is not determined by this scorecard.

14

Scope & “significant decision” mapping

Have you determined — with counsel where the answer is not obvious — whether this is a significant or consequential decision under the regimes that reach you, in which domains and jurisdictions? This aid does not make that determination. It records whether you have made it.

12

Notice retention & decision recordkeeping

Notices, explanations, and decisions logged per person and retained, so you can produce them later.

⚡ = the gate control. The gate forces UNDISCLOSED if the person was never told it was automated, and it worsens only — it never promotes a verdict. No human appeal AND no opt-out raises the recourse flag, which does not change the verdict. A human-review path and an opt-out are not universally interchangeable. Confirm which recourse rights and conditions apply before relying on either one.

05.What It Is — And Isn’t

A readiness aid, not a compliance ruling.

It is

  • A grade of your transparency process, from your own marks.
  • Date-agnostic — it grades practices, not any statute’s deadline.
  • People-blind — it grades a decision system, never a person.

It isn’t

  • Legal advice, a certification, or a safe harbor.
  • A ruling on whether a specific law applies to a decision.
  • A score or ranking of any person or group.

Not legal advice. This is a readiness aid that grades your transparency process from your own marks. It is date-agnostic and people-blind: it encodes no statute’s deadline, grades a decision system rather than any person, files nothing, and renders no compliance ruling. Automated-decision duties (the CCPA ADMT rules, Colorado SB 26-189, GDPR Article 22, ECOA/FCRA adverse-action) vary by jurisdiction and change often — confirm which apply to you and every deadline with qualified counsel.

06.Who It’s For

Whoever deploys AI that decides things about people.

  • Privacy, compliance, and risk leads governing automated decisions.
  • Lenders, insurers, landlords, and platforms making consequential calls with AI.
  • Product and data teams who need to show disclosure, explanation, and recourse.
  • Not for hiring tools — use the AEDT Deployer Dossier for those.
  • Not a ruling on what’s in scope — confirm that with counsel.
  • Not a content-labeling tool — that’s the Disclosure & Labeling Kit.
08.Common Questions

Answers before you buy.

It grades whether each of your automated decision systems meets six transparency and recourse practices drawn from several automated-decision regimes — system by system. For each one you mark six controls 0/1/2: whether the use of automation is disclosed to the person, whether there’s a meaningful-logic and adverse-reason explanation, whether there’s a human review/appeal with authority to overturn, whether an opt-out or data-correction path is offered, whether the decision’s scope and jurisdictions are mapped, and whether notices and decisions are retained. The six are weighted to a 0–100 score banded DISCLOSED, GAPS, or MATERIAL TRANSPARENCY GAPS; UNDISCLOSED is reserved for the separate no-notice condition, and the portfolio rolls up to ALL TRANSPARENT, CONDITIONS OUTSTANDING, or REVIEW BEFORE CONTINUED USE, a prompt to check whether the missing controls apply and whether continued use is appropriate, not a direction to suspend a system. It grades the deployer’s process, never a person.

Find the decision you
couldn’t defend — first.

One purchase, lifetime access, 12 months of updates. $79, once.

Not legal advice. This is a readiness aid that grades your transparency process from your own marks. It is date-agnostic and people-blind: it encodes no statute’s deadline, grades a decision system rather than any person, files nothing, and renders no compliance ruling. Automated-decision duties (the CCPA ADMT rules, Colorado SB 26-189, GDPR Article 22, ECOA/FCRA adverse-action) vary by jurisdiction and change often — confirm which apply to you and every deadline with qualified counsel.

Sold by RedHub AI LLC · Secured by Stripe · redhub.ai