Choosing Legal AI Software: A Practical Buyer's Guide
A practical guide to evaluating legal AI tools before you commit. The right questions to ask vendors about data handling, client confidentiality, and professional responsibility.
The Core Concerns with Legal AI
- Data training: Is your input used to train or improve the vendor's model?
- Data residency: Where does your client's data go when processed?
- Third-party access: Does the vendor share data with sub-processors?
- Accuracy and hallucination: Can the AI invent case citations or legal authorities?
Security Evaluation Criteria
- Is client data encrypted in transit and at rest?
- Does the tool process data outside your jurisdiction?
- Is your data used for model training without explicit consent?
- Does the vendor have access to documents processed through the tool?
- Has the vendor published a sub-processor list?
Cloud AI vs. Local AI for Legal Work
Cloud AI: Useful for general research, scheduling, and non-sensitive drafting. Data leaves your network for processing. Vendor has access. Training policies vary.
Local AI: Can process document content on user-controlled or organisation-managed hardware rather than sending it to a cloud AI provider. Evaluate website, activation, update, support and order data separately.
10 Questions to Ask Any Legal AI Vendor
- Is my input data ever used to train or fine-tune your models?
- Where is my data processed, and in which jurisdiction?
- Can your staff or contractors access my documents?
- Do you use sub-processors? Can you provide a complete list?
- How do you prevent AI hallucination in legal citations?
- What happens to my data if I cancel my subscription?
- Can I run your tool in an air-gapped environment?
- Have you completed a formal DPIA for legal document processing?
- Is the tool covered by your professional indemnity insurance?
- What is your data breach notification process and SLA?
myAffidavit AI Policy
myAffidavit for Law Firms
Pre-order myAffidavit for £99