| Tool inventory | Tool names, purpose, owner, department and estimated renewal month. | Login credentials, API keys, admin screenshots or vendor portals. | Who owns renewal, removal and policy decisions? | No owner can approve disable, renew or consolidate decisions. |
| Usage signals | High-level usage description, known duplicate workflows and owner observations. | User-level activity logs, employee files, private chats or prompt history. | Which workflows depend on the tool? | Usage may affect HR, clinical, legal, finance or regulated decisions. |
| Data boundary | Plain-language data categories such as public, internal, customer, employee or regulated. | Customer records, patient data, employee data, contracts, source code or confidential documents. | What data might enter the tool now or later? | Personal, regulated or confidential data may be processed without owner approval. |
| Spend boundary | Approximate monthly/annual spend band and billing owner. | Invoices containing payment details, tax IDs, banking data or vendor credentials. | Which spend needs renewal, pause or consolidation review? | Contract lock-in, auto-renewal or cancellation penalties may exist. |
| Decision path | Current approval route, blockers and desired next decision. | Legal opinions, private board papers or procurement documents before scope. | Who must approve keep, consolidate, replace or govern? | Any recommendation would require legal, privacy, security, procurement or compliance advice. |