From AI provenance

See where AI-generated content spreads across the org's work — each passage traced back to the response it came from, hallucinations and all.

An AI-origin figure, reused across the org

verbatim + near-verbatim

A figure from one Claude response was reused — verbatim or lightly edited — into 5 destinations across 3 users — one of them client-facing. Zeflin matched it to the captured response, so a human can verify it before it ships again.

The 2025 SaaS Benchmark Report found that 73% of mid-market firms breached an AI usage policy in the past year

Matched against the captured AI response · Zeflin proves origin, not truth

Whether the figure is true is a human call. Zeflin flags AI origin and where it spread; claim-level fact-checking is on the roadmap. We never assert a hallucination.

5 destinations
3 users
Anchor · AI responseClaudegenerated by derek.salaberry@acme.com · Jun 15, 2:10 PM

Here's a tightened version of the Q3 board narrative. Over the past two quarters, mid-market software organizations have moved generative AI from isolated experiments into everyday workflows. Adoption is now broad enough that informal, team-by-team norms no longer provide adequate coverage, and the board should treat AI governance as a standing agenda item rather than a one-time review. The strategic upside remains real: teams using AI-assisted drafting and analysis report meaningfully faster cycle times on customer-facing work, and several functions have absorbed headcount-equivalent gains without new hiring. The corresponding risk is that the same tools quietly move sensitive data outside sanctioned systems, and that unverified AI output is pasted into decisions without attribution. The 2025 SaaS Benchmark Report found that 73% of mid-market firms breached an AI usage policy in the past year, underscoring the urgency of formal controls and board-level oversight. To translate that urgency into action, we recommend three priorities for the quarter: (1) ratify an acceptable-use policy for AI tools, (2) establish a monitoring baseline for sensitive-data exposure, and (3) report adoption and incident metrics to the audit committee on a recurring basis. Finally, we suggest designating an executive owner for AI governance so that policy, monitoring, and reporting share a single point of accountability heading into the next fiscal year.

response_hashsha256:9f3c…a17b
Spread to 5 destinations across 3 users
Q3 Board Narrative — Google DocsExact
surfaced by derek.salaberry@acme.com· Jun 16, 9:02 AM
Attested· manual-copy corroborated
#leadership — SlackShingle
surfaced by farah.idris@acme.com cross-user· Jun 17, 11:26 AM
Cross-user spreadAttestation pending· no copy event (button-copy)
ACME-1421 · Board prep — JiraShingle
surfaced by farah.idris@acme.com cross-user· Jun 18, 3:21 PM
Cross-user spread Attested· no copy event (button-copy)
Scientific research advances through careful observation, experimentation, and peer review. Researchers formulate hypotheses, co - Reddit Search!Exact
surfaced by derek.salaberry@acme.com· Jun 18, 4:05 PM
Attestation pending· manual-copy corroborated
European ISPs Want Rightsholders Held Accountable for Overblocking of Legitimate Websites | Hacker NewsShingle
surfaced by alicia.chen@acme.com cross-user· Jun 18, 5:05 PM
Attestation pending· manual-copy corroborated
Where the content spread
Google Docs2
Slack1
Jira1
Scientific research advances through careful observation, experimentation, and peer review. Researchers formulate hypotheses, co - Reddit Search!1
European ISPs Want Rightsholders Held Accountable for Overblocking of Legitimate Websites | Hacker News1
Gmail1

Destinations are work apps (Gmail, Docs, Slack, Jira, Notion). From-AI is monitor + warn + attest only — never blocked.

Attestation queue

5 awaiting acknowledgement · attest only, never a block

Surfaced byDestinationAgeWhy flaggedAction
tomas.vega@acme.comGmail1d ago
AI-origin reuse
alicia.chen@acme.comEuropean ISPs Want Rightsholders Held Accountable for Overblocking of Legitimate Websites | Hacker News3d ago
AI-origin reuse
derek.salaberry@acme.comScientific research advances through careful observation, experimentation, and peer review. Researchers formulate hypotheses, co - Reddit Search!3d ago
AI-origin reuse
farah.idris@acme.comSlack4d ago
Cross-user spread
alicia.chen@acme.comGoogle Docs6d ago
AI-origin reuse
All from-AI matches
TimeGenerated bySurfaced byDestinationRiskAttestation
Jun 20, 11:05 AMtomas.vega@acme.comtomas.vega@acme.comGmail
Pending
Jun 18, 5:05 PMderek.salaberry@acme.comalicia.chen@acme.com crossEuropean ISPs Want Rightsholders Held Accountable for Overblocking of Legitimate Websites | Hacker News
Pending
Jun 18, 4:05 PMderek.salaberry@acme.comderek.salaberry@acme.comScientific research advances through careful observation, experimentation, and peer review. Researchers formulate hypotheses, co - Reddit Search!
Pending
Jun 18, 3:21 PMderek.salaberry@acme.comfarah.idris@acme.com crossJira
Cross-user spread
Attested
Jun 17, 11:26 AMderek.salaberry@acme.comfarah.idris@acme.com crossSlack
Cross-user spread
Pending
Jun 16, 9:02 AMderek.salaberry@acme.comderek.salaberry@acme.comGoogle Docs
Attested
Jun 15, 11:05 AMalicia.chen@acme.comalicia.chen@acme.comGoogle Docs
Pending