Glossary of Terms

March 27, 2024
Earned Trust through AI System Assurance

The process of defining terms in the AI policy space is ongoing and fluid. Where there are existing U.S. government or other consensus definitions, we use them. Where there are not, we use definitions we find supported by the record and research.


Artificial Intelligence or AI - AI has the meaning set forth in 15 U.S.C. 9401(3), which is a machine-based system that can, for a given set of human-defined objectives, make predictions, recommendations, or decisions influencing real or virtual environments. Artificial intelligence systems use machine and human-based inputs to perceive real and virtual environments; abstract such perceptions into models through analysis in an automated manner; and use model inference to formulate options for information or action.

AI Accountability - AI accountability is the process, heavily reliant on transparency and assurance practices, of holding entities answerable for the risks and/or harms of the AI systems they develop or deploy. This is closest to the definition adopted by the Trade and Technology Council (TTC) joint U.S.-EU set of AI terms, which defines accountability as an "allocated responsibility" for system performance or for governance functions. Whereas OECD interpretive guidance distinguishes "accountability" from "responsibility" and "liability," the TTC definition embraces responsibility as part of accountability and includes a broader scope of governance activities. Accountability may require enforceable consequences. Such consequences, usually determined by regulators, courts, and the market, are accountability outputs. This Report focuses on developing and shaping "accountability inputs," which feed into systems of accountability.

AI Accountability Inputs - AI accountability inputs are the AI system information flows and evaluations that enable the identification of entities, factors, and systems responsible for the risks and/or harms of those systems. These are necessary or useful practices, artifacts, and products that feed into downstream accountability mechanisms such as regulation, litigation, and market choices.

AI Actor - AI actors are "those who play an active role in the AI system lifecycle, including organizations and individuals that deploy or operate AI." AI actors are present across the AI lifecycle, including "an AI developer who makes AI software available, such as pre-trained models" and "an AI actor who is responsible for deploying that pre-trained model in a specific use case."

AI Assurance - AI assurance is the product of a set of informational and evaluative practices that can provide justified confidence that an AI system operates in context in a trustworthy fashion and as claimed. This definition draws from MITRE's use of the term "justified confidence" (from international software assurance standards) and the UK Centre for Data Ethics and Innovation usage in its "roadmap to an effective AI assurance ecosystem."

AI Audit - An AI audit is, with respect to an AI system or model, an evaluation of performance and/or process against transparent criteria. An audit is broader than a "conformity assessment" which is "the demonstration that specified requirements relating to a product, process, system, person or body are fulfilled." As noted in the RFC, entities can audit their own systems or models, be audited by a contracted second party, or be audited by a third party. To distinguish audits from other evaluations, we use the term audit to refer only to independent evaluations. An audit can be structured merely to verify the claims made about AI. Alternatively, it can be scoped more broadly to evaluate AI system or model performance vis a vis attributes of trustworthy AI, regardless of claims made. Simply put, an audit is an assurance tool, characterized by precision and providing an independent evaluation of an AI system, claims made about that system, and/or the degree to which that system is trustworthy. For ease of reading, we include audits in the umbrella term "evaluations."

AI Model - AI model means a component of an AI system that implements AI technology and uses computational, statistical, or machine learning techniques to produce outputs from a given set of inputs.

AI System - An AI system is an engineered or machine-based system that can, for a given set of objectives, generate outputs such as predictions, recommendations, or decisions influencing real or virtual environments. AI systems are designed to operate with varying levels of autonomy.

Red-Teaming - Red-teaming means a structured testing effort to find flaws and vulnerabilities in an AI system, often in a controlled environment and in collaboration with developers of AI. AI red-teaming is most often performed by dedicated "red-teams" that adopt adversarial methods to identify flaws and vulnerabilities, such as harmful or discriminatory outputs from an AI system, unforeseen or undesirable system behaviors, limitations or potential risks associated with the misuse of the system.

Trustworthy AI - The NIST AI RMF defines trustworthiness in AI as "responsive[ness] to a multiplicity of criteria that are of value to interested parties." It specifies that such values include "valid and reliable, safe, secure and resilient, accountable and transparent, explainable and interpretable, privacy-enhanced, and fair with harmful bias managed." The White House Voluntary Commitments specify that "trust," together with "safety" and "security," comprise the "three principles that must be fundamental to the future of AI."



