What they did
Summarized a client contract
What actually happened
Confidential terms now sit on a third-party server.
Your team already uses AI every day — quietly, and with company data. Five minutes per employee turns that invisible risk into certified, auditable competence.
what you can't see today
Move your cursor across the dark.
Five minutes of training turns this into daylight.
What they did
Summarized a client contract
What actually happened
Confidential terms now sit on a third-party server.
What they did
Drafted a patient report faster
What actually happened
Health data left the EU.
What they did
Fixed a spreadsheet formula
What actually happened
The payroll went with it.
Blocking AI tools doesn't stop this — it moves it to personal phones. Training does. And EU law now agrees.
EU AI Act, Article 4 — every company using AI must ensure its staff are AI-literate. Applicable since 2 February 2025.
NIS2, Article 20 — management must follow cybersecurity training — and entities are expected to extend it to their employees.
Auditors won't ask if you trained people. They'll ask you to prove it.
Not a participation trophy — an audit artifact. Every completion generates evidence you can put in front of an auditor, mapped to the exact clauses they check.
ISO 27001, A.6.3 — covers the awareness and training control in your next audit.
EU AI Act, Article 4 — documents the AI-literacy duty, in force since February 2025.
NIS2, Article 20 — evidence of the training the directive expects entities to extend to their employees.
Verifiable serial — every certificate carries a number an auditor can check against our registry.
noshadow.ai
Training recordCertificate of AI-Literacy Training
This certifies that
María Fernández Ruiz
has completed the noshadow.ai Shadow-AI training programme, supporting the AI-literacy duty under Regulation (EU) 2024/1689, Article 4, and the training controls of ISO/IEC 27001 A.6.3 and Directive (EU) 2022/2555, Article 20.
Advisory firm? White-label the whole course for your clients — your brand, our engine.
€0 no card, no signup
Try it now€29 / employee / year
Start rolloutCustom volume pricing for portfolios
Talk to usFor AI literacy, yes. Article 4 of the EU AI Act (Regulation (EU) 2024/1689) requires providers and deployers of AI systems to take measures ensuring a sufficient level of AI literacy of their staff — applicable since 2 February 2025. NIS2 (Directive (EU) 2022/2555, Article 20) additionally requires the members of management bodies of essential and important entities to follow cybersecurity training, and expects those entities to offer similar training to employees on a regular basis.
Blocking doesn't stop Shadow AI — it moves it to personal phones and private accounts, where you have zero visibility. It also doesn't discharge your AI Act literacy duty: your team still deals with AI embedded in the tools they use every day. Training changes behaviour where blocking can't reach, and produces the evidence blocking never will.
No. The course is hosted at noshadow.ai — employees just need a work email to start, on any device. If you run a corporate LMS, SCORM export is coming so you can deliver the same course inside it.
About 35 minutes end to end, on any device, and it can be done in short sittings. The first module is free and takes 5 minutes — try it before rolling anything out.
Yes. The Partner tier puts the whole course under your brand — your logo on the course and the certificates, our engine underneath, volume pricing across your client portfolio. Write to info@montevive.ai and we'll set you up.
It's a named, dated training record with a serial number an auditor can verify against our registry. It supports your evidence for ISO 27001 control A.6.3 (awareness, education and training), the AI-literacy duty of EU AI Act Article 4, and the training expectations of NIS2 Article 20. No certificate makes you compliant by itself — this one is built to slot into the evidence file that does.