Second Public Edition
Reasonable Control: Verification and Documentation of Machine-Assisted Work in Architectural Practice
A voluntary practice framework for licensed architects and architectural firms
Second Public Edition · Version 2 · October 5, 2026
This is the October 5, 2026 text. Read the current edition.
Part I The Condition Observed§
1.1 Existing Conditions§
The architect remains responsible for the work issued, including content produced with AI. This paper explains how to check that work and document the review.
Artificial intelligence has entered the ordinary work of architectural practice. Large language models draft specification sections from a firm’s master, summarize code provisions, screen submittals, and prepare responses to requests for information. They also draft the design narratives and construction-phase correspondence that may later become important in a dispute. Practitioners have taken up these tools task by task, often under the same deadline pressure that governs the rest of their work. Professional institutions have had to respond while that adoption was already under way.
AIA has issued professional guidance and a firm toolkit. NCARB has published an architectural regulatory position and model provisions; ICOR has issued cross-profession regulatory principles; and the NSPE Board of Ethical Review has addressed AI in an advisory engineering ethics opinion. Despite their different legal effect and professional scope, they share a practical concern: AI does not displace professional judgment or responsibility, and its output needs qualified human review appropriate to the work. The publications from AIA, NCARB, ICOR, and NSPE do not establish one nationally binding verification method for architects.
Insurance adds an immediate business reason to establish these controls. Professional liability insurers are examining how design firms use AI and manage its risks. A firm may be asked to explain how machine-assisted work is checked and provide evidence supporting that account. Firms should also review coverage with their brokers, including any exclusions affecting AI-assisted services. Verification and documentation can support the underwriting discussion; the policy’s terms govern coverage (§6.5).
For the architect reviewing a code study or specification, several questions remain. What constitutes verification? What should the check establish? What should the project record contain?
A defined method can answer those questions. A firm can evaluate it against its own jurisdictions, contracts, services, and risk profile before deciding whether and how to adopt it.
The concern is straightforward:
Artificial intelligence has not altered the architect’s standard of care—it has created new ways to breach it. When production outruns review, a firm can issue material machine-assisted content without having verified it or recorded how it was checked.
1.2 The Inspection Before the Failure§
Forensic practice begins after something has gone wrong. A forensic architect works through the project record to reconstruct how a deficiency entered the instruments of service, who had the duty to catch it, and what a reasonably prudent professional would have done differently. The documents may have looked complete when they were sealed, but what matters later is how they were prepared and reviewed.
The same discipline can guide the architect’s review before work is issued. This paper moves from the risks of machine-assisted work to practical methods for managing them. Part I identifies the risks. Part II sets out seven principles. Part III examines research on AI and professional judgment. Part IV applies the principles to architectural tasks. Part V explains the verification record. Part VI considers its role in disputes. Part VII addresses implementation in firms of different sizes. Part VIII defines the Guide’s scope and use.
1.3 What the Seal Attests§
The measure of an architect’s conduct is the standard of care: the skill and diligence that a reasonably prudent architect would exercise under similar circumstances. It is a technology-neutral measure. It does not ask what instrument produced a drawing; it asks whether the professional responsible for it exercised the judgment the public is entitled to rely upon. The seal is that reliance made physical: a licensed individual’s personal attestation of responsible control over the instruments of service, given under the authority of a license the state can revoke.
Licensing jurisdictions define responsible control differently. Across the provisions discussed here, the architect needs both authority over the work and enough professional knowledge to direct, evaluate, coordinate, and take responsibility for it. This paper uses Reasonable Control to name a proposed method of verification and documentation for machine-assisted architectural work. The method is intended to help architects exercise and demonstrate responsible control, the professional obligation described in applicable licensing law. Its requirements vary by jurisdiction, and adopting this method does not by itself establish compliance with those requirements or satisfaction of the standard of care. It does not require the architect to perform every task personally or understand every internal operation of a tool. The architect should be able to test the output, recognize its limits, and withhold approval when confidence is not justified. The extent of review depends on how difficult the output is to check and what could happen if it is wrong. Licensing rules may require the architect to direct the work as it is produced, rather than review it only at the end. Accepting the output without evaluating it does not establish responsible control.
1.4 The Anatomy of a Failure§
Consider a code study bound into a sealed permit set. It cites a building-code provision for the required fire-resistance rating of the structural frame. The provision does not exist in the adopted edition: the LLM has combined the base code with another jurisdiction’s amendment and presented the result confidently. The study is accepted under deadline. No protocol assigns anyone to trace the citation to the adopted edition, and no one does. The architect who seals the set sees the conclusion but never reads the provision. The set is permitted with the unverified conclusion still in the documents.
Months later, a plans examiner reviewing a revision, a contractor pricing a correction, or an expert investigating a dispute discovers the citation problem. The inquiry then follows a familiar course: how did the error enter the set, what review took place, and did the architect exercise reasonable care? In this example, no one traced the citation to the adopted code.
The missing procedure matters because it left that check unassigned. The evidence of the missed check, rather than the absence of a written procedure alone, establishes what happened.
The same problem can arise in a specification that cites a withdrawn standard, a submittal response issued under a reviewer’s stamp without qualified review, or a hastily drafted email that later becomes central to a dispute. These are familiar failures of professional review. Machine assistance changes how quickly the underlying work can be produced and released, making it more important to assign the check before the document leaves the office.
1.5 The Questions§
Think about the last permit set your firm sealed. Which portions were machine-assisted? Who verified them, and against which adopted code edition, current standard, or product data? If a plans examiner asked for that record, could you produce it? The same question may come from your carrier at renewal or, after a dispute, from opposing counsel with the set on the table.
An architect may have reviewed the work carefully and still be unable to answer from the project file. A general instruction to review AI output leaves each person to decide what the review entails and what to retain. The firm needs a defined method for both.
If a dispute leads to a deposition, the questions become specific: What method did the firm use? Who applied it? What shows that the review occurred? A firm that adopted, followed, and documented a written method can answer from the record. Otherwise, staff may have to reconstruct decisions long after the work was issued, with missing records becoming another subject of inquiry.
A defined method helps a firm connect its account of responsible control to the work actually performed. It does not provide a safe harbor, guarantee against liability, or establish that professional obligations were satisfied.
A published method may become relevant when a firm adopts it, incorporates it into an agreement or policy, or when professional practice or a properly qualified witness recognizes it. Publication alone does not establish custom or the standard of care. Its significance depends on the jurisdiction, project, and evidence of implementation.
1.6 What Reasonably Prudent Now Means§
An LLM can draft a specification section quickly. The architect still has to decide whether it belongs in this project, whether it works with adjacent systems, and whether its claims can be verified. A code summary presents the same problem: the adopted edition, local amendments, and project facts determine whether the conclusion is useful. As drafting becomes faster and less costly, that work of evaluation and coordination remains central to the architect’s contribution.
For a firm choosing to conform to this Guide, the questions are practical. Are machine-assisted tasks defined? Does an appropriately qualified professional verify material contributions against authoritative sources before reliance? Is confidential information protected? Can the project record show the decisions and checks that mattered? The method applies familiar elements of responsible control to the tools now in use; it does not propose new professional duties.
Verification tests whether the work is reliable; documentation shows how it was checked. A missing record does not prove that no review occurred, but it leaves the firm dependent on memory and reconstruction. Recording the contribution, test, source, verifier, and result as the work proceeds provides evidence proportionate to the work.
Part II Seven Principles§
The seven principles apply familiar architectural practices—directing work, checking drawings and specifications, protecting client information, and keeping project records—to machine-assisted work. Each states the proposed practice, explains its use, and identifies supporting authority. The sources include applicable licensing laws, proposed model rules, professional guidance, and NSPE ethics opinions. The legal weight for each differs (§ 8.4).
2.1 Responsible Control§
The architect should exercise responsible control over every material machine-assisted contribution to an instrument of service. Generated output is an unverified draft. A qualified professional should evaluate it, verify its material assertions, and decide whether it is suitable for incorporation into the work.1
What it means. When a project architect directs a wall-section detail, responsible control involves more than checking the finished drawing. The architect establishes the design intent, directs its development, and decides whether the detail works with the rest of the building. An AI-assisted detail calls for the same direction and judgment.
Illinois requires control over the content and detailed professional knowledge during preparation; a final review alone is insufficient. California likewise defines responsible control through control over content during preparation. NCARB’s model provisions require ultimate authority and the knowledge and ability to oversee, delegate, and integrate design and technical decisions.2
The 2025 NCEES Model Law similarly describes authority to review, change, reject, or approve work, knowledge of project limitations, the ability to explain decisions, and acceptance of responsibility.3
Architectural sealing provisions address work prepared by the architect, individuals under the architect’s responsible control, or another architect whose work is reviewed and coordinated or integrated.4 AI qualifies as none of those participants. Its output requires qualified review, integration, and verification before incorporation.
What it requires.
– Treat AI output as unverified draft material. Before a material contribution enters sealed work, a qualified professional should understand the content, integrate it into the work, and verify it under § 2.2.
- Do not adopt AI output merely because it reads well, seems plausible, agrees with expectations, or has received a general review. Apply the control and verification required for the content.
- Record the check as it occurs: what the machine contributed, what was checked, against which sources, by whom, and with what result.S1
2.2 Verification§
Under this Guide, material AI contributions to sealed work are verified before reliance. For output outside the sealed set, § 4.G determines whether verification is required. Verification is complete only when three elements are present: a stated criterion, an authoritative source, and a recorded result.
What it means. For an AI-assisted egress analysis, the criterion is whether the proposed route satisfies the governing requirements. The architect checks the adopted code and project drawings, then records the result and any correction. A plausible narrative does not establish that the route complies.
AIA recommends review and validation by qualified professionals.5 ICOR states that human oversight should not be automated.6 NCEES calls for critical assessment, independent checks, and documented methods and data.7 In the NSPE ethics case, the board concluded on the facts presented that the engineer acted unethically by sealing AI-assisted work without responsible charge.8 None of these sources sets out the complete three-part test.
The NSPE case illustrates the difference between testing and skimming: the engineer retained responsible charge of the document he verified thoroughly, but not of the one he merely skimmed.
What it requires.
- No material machine-assisted contribution enters sealed work, or a gated material professional communication, untested.
- The test is against the primary document; a second AI’s agreement is not a source.
- Record the result during the review in the linked project records described in Part V.
- Verification addresses the proposition relied upon, not merely whether a quoted sentence or cited source exists. Where material, it tests applicability to project facts, completeness, relevant exceptions, and coordination with dependent information.
- Match the check to the consequence and use of the assertion. Existing code analyses, specification reviews, and coordination checks may supply the test and record. Grouping and sampling follow § 5.3.3. An adequate check need not be repeated or entered on a separate form merely because AI was used.S2
2.3 Source Identification§
The architect should be able to identify the material machine-assisted content relied upon in sealed work or gated professional output and the sources used to verify it. Identification may cover a drawing, schedule, specification section, or defined group of items when the scope and checks remain clear (§ 5.3.3).
What it means. A specification may contain an AI-supplied performance value without identifying the product data that supports it. The architect needs that connection to check whether the value applies to the product and assembly specified.
ICOR calls for the origin and history of data to be tracked and documented.9 In the NSPE ethics case, the omission of citations to technical authority was deficient on the facts presented even apart from whether the AI-drafted conclusions were correct.10
What it requires.
– Every material assertion relied upon traces to its source: the code conclusion to the adopted edition and section, the standard to its status, the product to current data, the contract statement to the document and section.S3
2.4 Competence§
The architect should not use an AI tool to prepare an instrument of service without competence in that tool: knowledge of its capabilities, its limitations, and its typical errors, sufficient to evaluate its output.
What it means. For an AI-assisted code analysis, competence includes recognizing an incorrect occupancy classification or a code exception the project does not qualify for. Prompting skill alone is not enough. Applicable licensing rules govern competence; NCARB’s model rule requires knowledge and skill in the technical areas involved.11 Allied engineering ethics opinions treat production tools as aids to professional judgment; ICOR describes tool competence in terms of capabilities and limitations.12
In one study, AI legal research tools gave false or unsupported answers 17 to 33 percent of the time; a general-purpose model did so 43 percent of the time. Errors included made-up citations and outdated or inapplicable sources. Tools may also accept a mistaken premise. These findings describe the tools tested, not architectural work or later versions.13
NCARB encourages transparency about how AI tools operate14 while cautioning regulators against unnecessarily limiting technological advances.15 These sources inform tool competence; they do not impose a uniform rule in every jurisdiction.
What it requires.
- Evaluate tool suitability using representative tasks and known failure modes; do not treat a software provider’s accuracy claim as proof of suitability for the project.
- Maintain the firm’s knowledge of tool capabilities, limitations, and typical errors through its competence process; review this process under § 7.5.S4
2.5 Confidentiality§
The architect should not submit confidential, privileged, proprietary, personal, or security-sensitive information to an AI tool unless the submission is authorized and the tool, account, connection, and settings have been approved for that type of information. An open interface should not be treated as confidential merely because access to it requires an account.
What it means. A client’s unpublished plans, security layouts, or project correspondence may carry restrictions on use or disclosure. Asking AI to summarize a file, or connecting it to a project folder, can give the service access to that information.
In Case 24-2, the NSPE Board of Ethical Review found that uploading a client’s information to an open AI interface effectively made it public without the client’s consent. 16 AIA guidance advises firms to review AI systems before uploading confidential information, including how those systems store data and use it for training. 17
Before approving that use, the firm should check what the system can access, how it handles the information, and whether the arrangement meets applicable law, contracts, client restrictions, and professional duties. Review includes privilege, data protection, service terms, and settings. Approval for public product research does not by itself authorize uploading a confidential drawing set.
What it requires.
- A written register identifying approved tools, connections, uses, information types, and settings, with ownership, service terms, review dates, and approval status. The full register requirements are in § 4.F and Appendix A, § A.8.
- A defined boundary between each approved account or connection and any open or unapproved interface, enforced through access controls, settings, training, and periodic review.S5
2.6 The Record§
A verification record shows what the architect checked, how it was checked, and what the review established. It identifies the project and document, the machine-assisted content, the sources, the reviewer, the date, and any correction or unresolved issue. The record is made during the work and remains retrievable. It is required for uses classified as gated under § 4.G.
What it means. Marked-up drawings, code analyses, and review checklists already document how architectural work was checked and corrected. This Guide applies that practice to machine-assisted work: identify the contribution, the person checking it, the source consulted, and the result. A later reviewer should be able to follow how the architect evaluated the work. Part V specifies what to retain.18
The record also supports the firm’s insurance discussions. It allows a principal to substantiate statements about the firm’s review procedures with evidence of checks actually performed (§6.5).
NCARB Model Law § 403 proposes records adequate to demonstrate responsible control, including when submissions integrate others’ work. It becomes binding only through jurisdictional adoption.19
What it requires.
- Open the project-level record when machine assistance is first used for a gated purpose. Record the project and instrument context once, and update it whenever the scope, tool, source set, or intended use materially changes.
- Make verification entries during the review. Marked-up drawings, code worksheets, submittal logs, and other existing project records may provide the entry when they identify the content checked, method, source, verifier, date, result, and action or status. Add missing information rather than duplicate the check in a separate AI log.
- Do not mistake a prompt history, model output, or system-generated activity log for a verification record. Those materials may support the record, but they do not establish that a qualified professional tested the content against appropriate authority.
- Preserve the record with the project files, protect it against unauthorized alteration or loss, and retain it for the period established by governing requirements and the firm’s applicable retention policy.S6
2.7 Decisions Reserved for the Architect§
For conformance to this Guide, compliance determinations and professional review actions rest on independent professional judgment. Using AI as the sole or primary basis for a compliance determination, or to select or issue a review action, is outside this Guide’s permitted uses. Machine-assisted content requires qualified professional review, integration, and verification before entering sealed work.
What it means. When a tool flags a difference between a submittal and a specification, the architect decides what review action to take. Identifying the difference does not resolve its significance for the project. AI may then draft the wording (§ 4.C). These are this Guide’s proposed restrictions. The cited NCARB model rule concerns reliance on qualified persons, not AI.20 Applicable law still governs.
What it requires.
- Base each compliance conclusion on the governing requirements and project facts, with any necessary interpretation made by a qualified professional (§ 4.A).
- Select the review action before asking AI to draft its wording. A later check or signature does not replace that decision (§ 4.C).
- Treat unclassified uses as gated under § 4.G. Verification does not authorize a use that assigns a reserved decision to AI.S7
Part III Artificial Intelligence and Professional Judgment§
Architects need to review machine-assisted work without allowing a plausible answer to displace professional judgment. Medicine offers a useful comparison: physicians also make consequential decisions from complex information and remain responsible when AI assists them. Research in medicine and human factors shows how automated advice can influence that judgment. Those findings inform this Guide’s controls, but do not establish the architect’s standard of care or validate the controls for architectural practice.
3.1 Reliance on Automated Advice§
Automation bias occurs when people accept automated advice without adequately checking it. In their 2017 systematic review of 40 studies, Lyell and Coiera examined how this risk varied with the task and the difficulty of checking the advice. Bias appeared during multitasking even when individual checks were simple; with single tasks, it appeared when verification was more demanding.21 Romeo and Conti describe the broader pattern: as verification becomes more difficult, reviewers are more likely to accept automated output without adequate independent evaluation.22 An easy task is not necessarily free from automation bias.
A 2024 review of 106 experiments found that people working with AI performed, on average, worse than the better-performing of the human or the system alone.23 In terms of task types, decision tasks showed average losses and creation tasks showed average gains; the difference was statistically significant.24
In architectural practice, this concern arises when a convincing explanation takes the place of checking the underlying requirement. An AI-generated code analysis may contain consistent calculations while relying on a provision that does not govern the project. The architect’s review should therefore test the governing premise as well as the calculations.
3.2 Training and Incorrect Advice§
Automation bias was not significantly reduced by the training interventions reviewed by Lyell and Coiera. The interventions included extra practice without automation, examples of automation failures, and instruction on recognizing and avoiding the bias.25
A later randomized trial involved 44 licensed physicians who had completed a twenty-hour AI-literacy course covering LLM capabilities, prompt engineering, and critical evaluation of generated output. Each diagnosed six clinical vignettes with optional LLM recommendations. The control group received error-free recommendations; the experimental group received deliberately erroneous recommendations in three cases.
Compared with the control group, the experimental group's adjusted diagnostic-reasoning score was 14.0 percentage points lower and its adjusted first-choice diagnostic accuracy was 18.3 percentage points lower.26
Because every participant had completed the course, the trial cannot establish the course's effect. It shows that trained physicians remained susceptible to incorrect advice. Education therefore needs to be accompanied by a check capable of detecting a plausible error.

Figure 1. All 44 physicians had completed the same twenty-hour AI-literacy course. The comparison is erroneous versus error-free LLM recommendations, not trained versus untrained physicians. Endpoints are unadjusted percentages; the labeled decreases are adjusted estimates. Data: Qazi et al., NEJM AI (2026).
An earlier study measured how often professionals changed a correct answer to an incorrect answer after reviewing automated advice.

Figure 2. The switching rate. Data: Goddard, Roudsari and Wyatt (2014).
Professionals reviewing automated advice changed a correct answer to an incorrect one in 5.2 percent of all cases. The less experienced the reviewer, the more often it happened.27
An architect might identify a discrepancy between a submittal and the specification, then reconsider after receiving a persuasive AI explanation. Before changing the review action, the architect should resolve that disagreement against the governing project documents. Training in AI use supports this process but does not replace the check.
3.3 Information Provided During the Task§
The prior review found no significant reduction in automation bias from the tested training interventions.28 A separate randomized trial tested information provided during the task: 72 AI-trained physicians completed 432 case evaluations with information about the model's benchmark accuracy and a case-specific confidence signal. Compared with an LLM recommendation alone, the two cues improved diagnostic-reasoning accuracy by 7.6 percentage points and first-choice accuracy by 10.9 percentage points.29

Figure 3. The panels report separate evidence: a prior review of training interventions and a separate randomized trial of a dual behavioral nudge. The trial did not test authoritative-source verification. Data: Lyell and Coiera (2017); Qazi et al., medRxiv preprint (2026).
The benefit was larger among less experienced physicians, a subgroup finding.30 The trial suggests that information supplied during a task can change reliance behavior, but it did not test authoritative-source verification.
For an architect reviewing an AI-drafted specification clause, the relevant source needs to be available while the clause is being evaluated, before it enters the project specification. The Guide therefore places verification at that decision: the reviewer checks the proposed requirement against the governing source and records the result before relying on it. Whether this procedure improves architectural outcomes or works under deadline pressure remains untested.
Part IV Reasonable Control by Area of Practice§
These controls form the Guide’s method of Reasonable Control: a documented approach to maintaining responsible control over machine-assisted work. Verification should fit the work. A zoning conclusion, a firestopping specification, and a submittal decision can fail in different ways and require different checks.
The scenarios illustrate possible failures; they are not accounts of decided cases. The controls apply the Guide’s criteria and recommendations (§ 8.5). External requirements are identified only where an applicable enacted law, adopted rule, or contract is specified. Where the work has a defined document structure, the check follows that structure.
4.A Code, Zoning, and Regulatory Analysis§
A machine-assisted feasibility study for a mixed-use tower can produce consistent calculations from the wrong zoning premise. It calculates floor-area ratio, height, parking, gross area, and yield from the base district, but misses an overlay, a condition on combining parcels, or the local definition of floor area. The numbers agree because they share the same error. A code study can do the same thing with a real provision from an unadopted edition or with model text that omits a controlling local amendment. Evaluation of AI-assisted legal research has documented both unsupported authority and real but inapplicable authority on directly verifiable questions.31 For a project code analysis, the governing requirement is ordinarily the edition adopted by the authority having jurisdiction, as locally amended.32 Finding a real citation is only the beginning of the check; the architect should establish that it governs this project.
Controls. The architect should not rely on machine output as the sole or primary basis for a compliance determination (§ 2.7). Before a material machine-assisted regulatory claim is incorporated into an instrument of service or relied upon in a gated professional communication, verification should establish the governing sources and their applicability: the jurisdiction and adopting authority; the adopted edition and effective date; applicable local amendments and administrative criteria; incorporated standards; and the project facts, definitions, exceptions, and dependencies that determine applicability. The verifier should read the cited provision and each material cross-reference on which the conclusion depends.
Where the conclusion requires interpretation, a qualified professional should make that judgment. The record should identify the claim tested, governing sources, material applicability facts, method, verifier, date, disposition, and affected later calculations, drawings, or decisions.S8
4.B Specifications§
A penetration-firestopping section names a current product and cites ASTM E814 or UL 1479. The product and test method are real, but that does not establish protection for the proposed condition. The controlling evidence is a listed system—or, where appropriate and accepted, a project-specific judgment with a justifiable technical basis—whose conditions match the rated wall or floor, penetrating item, material and size, opening and annular space, sleeve condition, packing, sealant depth, and required rating.33 A check limited to the product can miss the assembly problem. Withdrawn standards, discontinued products, and obsolete manufacturer data present simpler versions of the same concern: the section looks complete before its claims have been verified.
Controls. Review machine-assisted specification sections before incorporation, focusing on technical content AI introduced or changed, its project applicability, and affected requirements elsewhere in the section. Previously checked master content may rely on that check where its source, applicability, and meaning remain current and unchanged. For changed content, trace the requirement through Parts 1, 2, and 3: confirm governing references, current product data, assembly performance, and installation conditions. Review affected interfaces, related sections, and drawing coordination. Where performance belongs to an assembly, product data alone is insufficient. Record the scope, sources, findings, and corrections as one section review, distinguishing different results where needed (§ 5.3.3). Unsupported material content should be corrected, removed, or escalated for resolution before reliance.S9
4.C Submittal and Shop Drawing Review§
Suppose a machine compares a resubmitted electrified-door-hardware submittal package with the specification and the architect’s prior comments. It reports that every comment has been resolved and proposes “approved as noted.” Elsewhere in the package, an unmarked revision changes an electrified lock from the specified fail-safe function to fail-secure. The comparison may have answered the question it was given. It has not established that every revision was disclosed, that deviations from the Contract Documents were identified, or that the architect intended to approve this particular change. The problem is the scope of the review behind the disposition.
Submittals are not Contract Documents. They show how the contractor proposes to conform to the information and design concept expressed in those documents, and the architect’s review has a correspondingly limited purpose. Under commonly used general conditions, approval of a submittal does not approve an undisclosed deviation; the contractor must specifically identify deviations and, on resubmittal, revisions other than those requested by the architect.34 Machine comparison can accelerate screening. It cannot determine what the architect has knowingly accepted.
Controls. Machine assistance may compile the specification requirements relevant to the submittal, compare submitted data against those requirements, track responses to prior comments, and flag apparent changes. Before taking action, the architect should determine that the submittal has received the contractor’s review required by the governing Contract Documents; that the package is sufficient for the review action sought; that stated deviations have been isolated for express decision; and that revisions outside the architect’s prior comments have been identified and reviewed. The architect should understand the scope of any machine comparison, including pages, fields, criteria, prior versions, and related submittals omitted from it, and should obtain review by affected consultants where required. A machine may draft the wording of a review action only after the architect has selected the review action through independent professional judgment; it should not select or issue the review action. The record should identify the version reviewed, comparison scope, prior comments tested, disclosed deviations, material additional revisions, reviewer, and final disposition. S10
4.D Drawing Production, Coordination, and QA/QC§
A parametric facade revision changes the module, floor-to-floor zone, or panel geometry and updates the elevations, schedules, quantities, and fabrication geometry. The updated views agree, yet the revision can still fail at a slab-edge embed, perimeter fire-containment condition, movement joint, maintenance-equipment clearance, or construction tolerance that the automated update does not address. A cross-sheet check may find no discrepancy because the sheets share the same input. The architect has to check both the input and the affected interfaces; agreement among the outputs cannot establish either.
Controls. Check machine-generated or propagated changes before reliance or issuance, with review proportionate to their extent and consequence. Identify the governing input, affected outputs, and interfaces outside the automated update. For repeated content, verification may combine a check of the input and propagation method with representative output checks under § 5.3.3. Review unique material conditions and affected interfaces directly; agreement among outputs alone does not establish correctness. A coordinated review may cover a defined set of changes and be recorded in the existing model issue log or drawing markup. The record identifies its scope, sources, method, verifier, date, findings, and corrections.S11
4.E Construction-Phase Correspondence§
An RFI asks whether a smoke-control duct can shift through a rated shaft wall to avoid a structural beam. A machine finds a similar response and drafts an instruction that sounds workable. The answer, however, should reconcile the smoke-control sequence, structural constraint, shaft protection, damper and access conditions, and applicable firestop system. It should also distinguish an interpretation of the existing Contract Documents from a change to the Work, cost, or time. Without those decisions, an apparently practical response can leave a life-safety issue unresolved and authorize a change through the wrong instrument.
The form of the response matters because the contract assigns different effects to different instruments. Common general conditions separate interpretations and RFI responses from Supplemental Instructions, minor changes, Change Orders, and Construction Change Directives; the standard AIA RFI form states that neither the request nor the response authorizes work that increases cost or time.35 Before issuing the draft, the architect should decide what professional action it represents and which project instrument is authorized to carry that action.
Controls. A machine-assisted RFI response, field directive, or other project correspondence is gated outside the sealed set when it could materially affect life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination. Before issuance, the architect should verify the material factual premises, implicated Contract Documents, contractual authority, affected disciplines, and known effects on related work. The architect should determine whether the matter can be answered as an interpretation or requires a Supplemental Instruction, minor change, Change Order, Construction Change Directive, proposal request, or other instrument authorized by the governing Contract Documents. Review by affected consultants should be obtained where the response crosses their scope. Routine minor confirming correspondence remains permitted under § 4.G and does not require the Part V record. A machine should not issue correspondence under the architect’s authority without the required professional review. The record should identify the question, sources reviewed, affected work and disciplines, contractual classification, reviewer, date, and disposition.S12
4.F Confidentiality and Data Handling§
A team connects a cloud-based assistant to the combined project model for a courthouse, data center, health facility, or other security-sensitive project to ask one coordination question. The prompt contains no confidential detail. The connector nevertheless indexes geometry, room names, security zones, equipment, issue history, metadata, and linked consultant models. Its account, organizational setup, retention rules, processing location, or service providers may differ from what the team assumed. By the time the answer appears, protected information may already have been exposed. The resulting drawing or specification may give no indication that this happened.
Professional guidance calls for qualified review, approved systems and uses, protection of confidential information, and an understanding of how platforms store, reuse, or train on submitted data. These safeguards also matter when AI is embedded in modeling, specification, code-checking, or document-management software.36 Approval should therefore address everything the connected system can access and the specific account, connection, and settings.
Controls. Before protected information becomes accessible to a machine-assisted system, the firm should classify the data and confirm that the specific provider, tool, user and organizational accounts, interface, connections, and settings are approved for that class and consistent with client restrictions, privilege obligations, contract, and applicable law.
Approval should establish the system’s access to project information, including indexed files, linked models, and connected services. Use available provider documentation, service terms, settings, and qualified advice to evaluate material risks: access controls, storage and processing, retention and deletion, model training, incident response, and intellectual-property terms. The depth of review should reflect the data’s sensitivity and client restrictions; it does not require an independent audit of the provider’s entire infrastructure. Where required protection cannot be established, restrict access or use an approved alternative.
Qualified legal, security, privacy, and technology procurement specialists may perform or advise on these reviews. The designated professional should ensure that the reviews and approvals occur and are documented; the architect remains accountable for professional use of the output.
The firm should maintain the tool register specified in Appendix A, § A.8. A firm-wide entry may cover repeated uses within the same approved account, configuration, data classes, and access scope. Identify the tool and provider, responsible person, approved uses and restrictions, required settings, approval and review dates, and status; link supporting terms and security reviews instead of copying them into every project file. Record material unknowns and how they limit use. A different interface or a change affecting protection requires review; suspend or narrow use when the approval no longer applies.
4.G Task Classification§
Every use of machine assistance in practice falls into one of three tiers.
- A permitted task produces no material machine-assisted contribution to sealed work and no material professional communication outside the sealed set. Routine internal drafting, formatting, indexing, administrative work, and minor confirming correspondence are ordinarily permitted; the Guide’s verification record is not required, although ordinary professional, contractual, confidentiality, and quality-control duties still apply.
- A gated task produces output that may materially enter sealed work, or a professional communication outside the sealed set that could materially affect life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination. It is permitted only with the applicable verification under § 2.2 and record under Part V.
- A prohibited use replaces the architect’s judgment with an AI decision about whether a design meets code or a submittal should be approved. It also includes putting AI-generated content into sealed documents without a qualified professional checking it and integrating it into the work (§ 2.7).
- An unclassified use is gated until classified.
The same software and project information can support all three tiers. Indexing photographs and room labels for an internal existing-conditions survey log is ordinarily permitted.
Extracting dimensions or observed conditions into a plan that may enter sealed work is gated. Allowing the machine to resolve ambiguous geometry, infer a concealed condition, or represent survey accuracy without the required professional judgment and verification is prohibited. The product name and apparent simplicity of the prompt do not settle the classification. The intended use, material consequence, and role of professional judgment do.
Classify a recurring task once for its intended use, material consequence, and role of professional judgment; revisit the classification when these change. Content that may materially enter sealed work is at least gated. Outside the sealed set, only material professional communications within the stated categories are gated. A use that assigns a reserved professional determination to the machine is prohibited. For a gated task, the likely error determines the verification protocol.
These proposed categories reflect professional guidance that leaves judgment and responsibility with the licensed practitioner and calls for closer review of unclear or consequential uses.37 They are neither research findings nor a nationally uniform legal rule.
The gated category allows AI to assist with a task while the architect retains professional judgment and responsibility. Delegated design offers a limited comparison. Under the governing Contract Documents, the architect states the performance and design criteria, and reliance is tied to an appropriately licensed professional’s services, certifications, and approvals.38 AI output carries no such seal or responsibility. This explains the need for qualified verification without determining the output’s legal status.
For a gated use, verification covers the material assertions relied upon. The extent of checking depends on consequence and intended use; linked records, grouped checks, and sampling of repeated content may be used as provided in §§ 2.2 and 5.3.3.S13

Figure 4. Sealed work is the primary trigger. Outside the sealed set, the limited gate applies only to a professional communication that could materially affect a § 4.G consequence category. Reserved professional judgment closes the use to AI. Derived from § 4.G.
Part V The Record§
The record should be practical to keep and clear to someone who was not present for the check. It should show what was checked, when and how, and with what result. Retention and client disclosure are separate questions.
5.1 What a Complete Record Establishes§
For this Guide, a complete record establishes, for any gated use, which content or defined group of items was machine-assisted; the project, instrument, version, and tool context; what test was performed before reliance; who performed it and any required approval; and the result, status, exceptions, corrections, and further verification where applicable.
NCARB Model Law § 403 proposes records adequate to demonstrate responsible control over submissions prepared by the architect or through integration of others’ work.
NCARB’s Model Regulations and Illinois law contain related provisions, each within its own scope and legal status.39 The fields, grouping rules, sampling limits, and further-verification triggers below are proposed practice requirements, not requirements attributed to those sources.
5.2 Recording Checks When They Occur§
Under this Guide, a timely record is made at or near the verification, in the ordinary course of practice. A record assembled after a claim has been asserted does not meet this criterion.
Records made during the work may assist later authentication and hearsay analysis, but admissibility is not automatic. Federal Rule of Evidence 803(6) requires each condition of the business-record exception. The timing, knowledge, regularly conducted activity, and regular-practice elements must be supported by qualifying testimony or certification, and the opponent may show that the source, method, or circumstances indicate a lack of trustworthiness. Rule 902(11) can provide a method of self-authentication when its requirements and notice provisions are met; it does not decide relevance, hearsay, trustworthiness, or evidentiary weight.40 State proceedings may apply different rules.
Preservation, spoliation, and adverse-inference questions arise under separate jurisdiction-specific law and depend on the facts; no general adverse-inference rule is proposed.
When reviewing implementation, ask whether the firm can retrieve the record without rebuilding it from staff memory or file metadata. That tests the record system. It is not a legal test of when the record was made.
5.3 Minimum Record Content§
A complete record links project context to the checks performed. Context, sources, routine criteria, tool information, and reviewer qualifications may be recorded once and referenced by later entries while still applicable. Existing project files may supply either part; the record need not be a separate form or software system.
A notation such as “checked” does not identify the test or its result. The fields below provide the detail needed to understand the review.
For evaluated third-party documents, New York requires a record identifying the project and documents, source, party for whom the evaluation was conducted, date, and evaluator’s seal and signature.41 The proposed two-part record is broader than that rule.
The NSPE ethics opinion found AI-drafted content deficient on its stated facts when citations to pertinent technical authority were omitted, regardless of whether the conclusions were correct.42 It supports recording the connection to authority, but does not prescribe the full record.
5.3.1 Project and Instrument Context§
The context record contains the following information for the project, instrument, issuance, or other defined body of work to which verification entries link:
- project identifier; deliverable or instrument title; revision or version; and issue date or status;
- the task classification and governing verification protocol;
- the tool and provider; product, model, and version to the extent known; and any configuration material to the output or review; and
- a retrievable reference to the relevant input and output where needed to identify what was checked, such as a saved file, drawing revision, or project-record identifier.
Keep only the information needed for this part of the record, without indiscriminately retaining prompts, privileged communications, confidential project data, personal information, or proprietary material. When full input or output retention is inappropriate, the firm should retain a controlled reference or description sufficient to identify the content and verification without unnecessarily duplicating protected material.
5.3.2 Verification Entry§
An entry identifies, directly or by reference:
- the content, assertion, item, or defined group of items verified, with its location in the instrument or communication;
- the pass criterion—the proposition the content must satisfy;
- the authoritative source or other governing evidence, with jurisdiction where applicable, edition or version, date, and exact section or page;
- the verification method and evidence sufficient to show how the criterion was tested;
- the verifier’s identity, role, qualification relevant to the subject, and verification date or timestamp;
- the disposition: confirmed, corrected, removed, escalated, or unresolved; and
- corrections, further verification, approvals where required, and unresolved items or exceptions, if any.
Illustrative completed record (fictional project and tool).
Context: Project 2604, office renovation.

5.3.3 Grouped Entries, Sampling, and Further Verification§
One entry may cover a drawing review, specification section, schedule, or batch of similar checks. Identify its scope, criteria, sources, and methods; distinguish differing reviewers, results, corrections, and exceptions. State whether review was complete or sampled. Grouping changes the record, not the scope of verification.
Sampling may be used for repeated content with its scope and risk basis noted in the record. Sampling does not replace verification of a unique material assertion affecting life safety, code compliance, building performance, contractual rights, or another professional determination. A failed sample calls for broader review appropriate to the error and a record of correction or escalation.
Further verification addresses changes to content, sources, or project facts that could affect the prior result, including consequences for dependent work. It may rely on unchanged portions of a still-applicable check. Link the new entry to the earlier review, identify the scope rechecked and current result, and keep unresolved items visible until closed or expressly carried into the release decision.
5.4 Retention§
The record is identifiable within the project files and retained under a written schedule approved for the firm’s work and jurisdictions. The schedule should cover applicable licensing requirements, contract duties, limitation and repose periods and their triggering events, insurer guidance, privacy and data-minimization duties, and legal holds. No universal retention period, trigger, or safe harbor is established.
A firm should first identify which retention requirements govern its work. NCARB Model Law § 403 proposes at least five years for records adequate to demonstrate responsible control; Texas and New York have adopted requirements of their own, within their stated scope.43 Retaining a file for the required period does not answer a separate question: whether its contents adequately show responsible control.
Limitation and repose rules vary by jurisdiction, claim, duration, and triggering event. Substantial completion is relevant in some regimes but is not a universal trigger.44 Some jurisdictions may lack a construction-specific statute of repose, and risk-management recommendations should be read within their stated assumptions.45 A firm may use a documented project- or jurisdiction-specific schedule, or a uniform schedule shown to be adequate for all work it covers. The selection should be reviewed with qualified counsel and the firm’s broker or insurer as appropriate; neither a board minimum nor a single risk-management rule can be assumed sufficient nationwide.
The verification record should not be treated as a disposable draft. The written schedule should state how it is classified, where it is stored, and how secure disposition occurs when the schedule expires. A legal hold suspends routine destruction for the affected records regardless of the ordinary schedule. The policy should identify who may issue and release a hold, the systems, backups, and provider-held copies within scope, and the documented process for disposition after the hold is released. Retention of full prompts or protected source material is required only when appropriate under the schedule, data-minimization rule, and legal hold.
5.5 Client Disclosure, Verification, and Recordkeeping§
When this Guide requires verification, conformance depends on both performing the check and recording its result. Client disclosure is a distinct question governed by contract, applicable law or rule, and the circumstances. These duties are not substitutes for one another.
To assess whether an AI-assisted task calls for client disclosure, architects can look to guidance from their own profession and, for comparison, allied professions. In the NSPE advisory engineering ethics opinion, the board found no disclosure obligation absent a contractual requirement on the facts presented, while noting that ethical principles favor transparency when the tool plays a substantial role.46 ICOR calls for tracking and documenting data origins and history.47 AIA recommends telling clients and stakeholders when and how the tools are used.48 These sources address different duties and differ in legal effect and professional scope; the firm should identify what it owes to whom, and under which authority.
Client disclosure depends first on the governing agreement and independently applicable law or rule. A contractual disclosure requirement governs. Without one, the architect may disclose and generally should consider doing so when machine assistance played a substantial role.
A licensing-board record duty, where applicable, remains separate from the client’s knowledge or the terms of the client agreement. The jurisdiction determines its scope and relationship to the seal. An agreement that client disclosure is unnecessary cannot resolve an independently applicable board requirement.
The duty to verify the work may arise from the applicable standard of care, a licensing rule, a contract, or a firm’s own conformance commitment. Client consent does not by itself make unverified content reliable or relieve independently applicable duties. NCARB’s position identifies whether, when, and how AI use should be declared as an open regulatory question, so firms should monitor jurisdiction-specific developments.49
Part VI When the Record Is Examined§
A written method and project records help a firm explain its conduct. For architects, code analyses, drawing markups, and meeting notes can show what was checked and why decisions were made, supporting assessment of the architect’s conduct against the applicable standard of care. Their relevance, admissibility, and weight depend on the governing law and facts. The discussion that follows considers legal sources from an architect’s perspective on professional practice and project records; it is not legal advice (§ 8.6).
6.1 What Conformance Can and Cannot Show§
Adoption of this Guide may provide evidence that a firm selected a stated method. Project records and other evidence may help show whether that method was followed. Neither adoption nor conformance establishes that the standard of care was met, and non-adoption does not establish that it was breached.
After a claim, counsel will ask what review procedure was in place, whether it was followed, and whether the file supports the architect’s account. Records can answer those questions. The standard-of-care inquiry also asks what a reasonably prudent architect would have done in the same circumstances.
Evidence of professional custom can help with that inquiry, but it is not conclusive.50 A firm’s written method shows the process the firm chose; it does not, by itself, establish what the profession customarily does. The baseline remains the skill and knowledge ordinarily brought to the work by members of the profession in good standing.51 Even a customary practice may be unreasonable in the circumstances of a particular case.52
The American Law Institute’s approved Restatement position on medical malpractice illustrates the limit. Compliance with a guideline issued by an authoritative body may support a finding of due care without compelling it, while a guideline alone does not establish breach without qualified expert testimony.53 That position concerns authoritative medical guidelines and does not establish the status of a private architectural practice method.
When Voluntary Guidance May Be Relevant
Guidance may be considered with other evidence when adopted by a firm, incorporated into an agreement, recognized in professional practice, or used by a qualified expert with an adequate foundation. Publication alone establishes none of those conditions.
6.2 The Seal§
The legal effect and wording of a seal are jurisdiction-specific. Sealing marks the licensed architect’s acceptance of the professional responsibility required by the governing jurisdiction; machine assistance does not displace that responsibility.
NCARB’s model law proposes one formulation of what a seal represents.54 NCARB’s regulatory position and ICOR’s public statement emphasize that sealing remains a licensed act and human oversight remains essential, whatever the tools.55 Those sources do not make their formulation binding nationwide.
NCARB model provisions and Illinois law describe circumstances in which an architect may seal work prepared by others.56 NCARB’s model conduct rule also addresses reliance on information from outside parties; the cited provisions attach conditions such as review, coordination, integration, professional knowledge, or reasonable trust.57 In delegated design, the architect specifies governing criteria and the work arrives under another design professional’s seal.58 The NCEES Model Law likewise connects responsible charge to professional knowledge and control.59 These sources neither classify generative AI output nor establish that every outside source supplies a warranty. Treating AI output as an unverified draft requiring qualified review, integration, and verification under §§ 2.1 and 2.2 is a proposed control, not a nationwide legal classification.
6.3 The Deposition§
The firm’s method should enable it to answer, from the record made during the work and without reconstruction, the questions a competent examiner will ask about machine assistance in a sealed instrument.
The examiner’s questions can be quite ordinary. Was AI used to prepare the instrument, and for which portions? Who checked the content, with what qualifications, against which source, and when? What did the check establish? Was there a written method at the time, and did the project team follow it? The architect should be prepared for the next request as well: produce the record.
Without a defined method or record, a witness may have to reconstruct the review and explain why that account should be accepted. That does not establish inadequate review; it makes the account harder to connect to a particular check, source, verifier, and result.
Expert testimony, if offered, is governed independently by Rule 702 and controlling jurisdictional law.60 Those authorities do not validate any particular private verification method and do not shift any party’s burden of proof.
6.4 Firm Conduct and Personal Exposure§
Responsibility for the firm’s method should be assigned at principal level.
NCARB’s Model Rules propose accountability for an architect in charge when the firm violates those rules.61 Application depends on the rules adopted in the jurisdiction and the facts. To perform a Part IV check, staff need assigned responsibilities and a working method, tool register, and record system. Conformance requires principal-level responsibility for those arrangements.
6.5 Insurance Renewal§
The firm should be able to describe its method, its verification protocol, and its record system to a professional liability underwriter and support the description with evidence.
A 2026 broker survey reports that professional liability insurers have begun addressing design-firm AI adoption, with governance, controls, transparency, and accountability potentially affecting underwriting discussions.62 Checks, records, competence, and disclosure are subjects the firm may be asked about. The proposed method is not an insurer requirement or an underwriting benchmark.S14
Project records can support the firm’s account of its controls. An underwriter may consider that evidence alongside its practices, services, claims experience, tools, and requested coverage. Insurance coverage terms are also changing: standardized generative-AI exclusion endorsements took effect in general liability in January 2026, and the professional lines have begun to follow, with at least one carrier introducing an absolute AI exclusion across its errors-and-omissions, directors-and-officers, and fiduciary products while others have signaled they will underwrite and price the exposure instead.63 A firm should read its current policy for exclusions addressed to AI or automated systems, ask its broker in writing about coverage for AI embedded in ordinary software, and substantiate its method rather than merely describe it.S15
Part VII Implementation and Conformance§
Implementation should fit the firm’s existing quality-control and project-record systems. A qualified person may both prepare and verify the work; this Guide does not require a second reviewer for every task. Assign additional review when the work’s complexity or consequences, or applicable requirements, call for it.
7.1 The Sole Practitioner§
A sole practitioner may combine the firm procedure, task classifications, approved-tool register, and review arrangements in a short working document, using existing project files for the verification record. Shared criteria and source lists can serve repeated checks. Apply the same substantive controls within that simpler arrangement, including confidentiality, competence and version review, retention, and legal holds. Seek outside advice where the project or tool raises issues beyond the practitioner’s competence. A conformance statement is optional and remains subject to § 7.4.
7.2 The Small and Midsize Firm§
In a small or midsize firm, assign responsibility for the method and tool approvals to a named person and incorporate checks into existing project reviews. Specialist advice should address the legal, security, privacy, or technical questions the proposed use actually raises. Review the tool register at intervals appropriate to the uses and risks, and when material changes occur. Verification records may remain in linked drawing, specification, submittal, and correspondence systems, provided the project file identifies where they are kept. The firm may choose the platform. It should still provide complete records made during the work, controlled access, and reliable retrieval.
7.3 The Multi-Office Firm§
Across several offices, use common core procedures with documented adaptations for project types, services, jurisdictional requirements, and local workflows. Identify who maintains the common method and who is responsible for implementation in each office. The same person may fill more than one role. Apply the retention requirements and schedule options in § 5.4 consistently across the work they cover. Differences in procedure should reflect the work and remain clear to the people using them.
7.4 The Conformance Statement§
A firm may state conformance to this Guide only by version, in writing, and after a documented review supports the statement for the stated scope, date, and exceptions. The statement is the firm’s own statement about its method and implementation; it is not an author-issued certification or a warranty of work.
The statement identifies the Guide version and effective date, offices and services reviewed, review date, and exceptions or unresolved items. It confirms that the firm maintains the required method, verification protocols, task classification, tool register, competence process, record system, and retention and legal-hold controls. Review implementation periodically and when changes affect the stated scope. The statement covers only its stated scope and is supported by the review evidence.
7.5 Review of Implementation§
An architectural firm should periodically review whether its procedures for machine-assisted work are being followed. The review should use a representative selection of project records to check that applicable verification occurred before reliance and that the supporting records are complete and retrievable.
Significant gaps should be documented, assigned to a responsible person, and followed up to confirm correction. The review should reflect the firm’s work, the consequences of error, and changes in its tools or procedures.
A review supporting a conformance statement (§ 7.4) identifies the Guide version, work examined, date, limitations, and unresolved gaps. The firm’s statement is limited to the scope supported by that evidence. Review does not confer certification or author approval.
Part VIII Scope and Use of the Guide§
This part establishes scope, definitions, source distinctions, and limitations, together with requirements for conformance, version references, and author disclosure.
Reading Rule. The practice framework is voluntary. It does not create legal obligations, define the standard of care, or represent consensus or endorsement by the cited organizations. Conformance refers only to this Guide’s voluntary practice framework. External duties arise, if at all, from the applicable jurisdiction, contract, engagement, or firm policy. The source-status distinctions in § 8.4 apply throughout.
8.1 Purpose and Scope§
The proposed framework applies to machine assistance whose output may enter instruments of service and, in the circumstances defined at § 4.G, material professional communications outside the sealed set. It defines how to verify material machine-assisted contributions, record the checks, and put the controls into practice.
The choice of tools and the decision to adopt them remain with the firm. The proposed controls draw on the cited authorities and guidance to address professional practice rather than technology instruction.
8.2 Audience§
The intended audience is the licensed architect in responsible control of instruments of service and the principals of architectural firms. Practitioners in engineering, landscape architecture, and interior design may find parts of the framework relevant, but the requirements do not necessarily transfer to those professions without modification. Their governing laws, rules, contracts, and professional terminology should be evaluated independently.
8.3 Defined Terms§
- Responsible control; responsible charge. Related professional duties sharing a common requirement: the professional must possess the knowledge and authority required to direct, evaluate, approve or reject, and take responsibility for the work. Architectural provisions commonly use responsible control; engineering provisions commonly use responsible charge. The governing definition remains profession- and jurisdiction-specific. The shared requirements apply only within each source’s stated scope.64
- Machine assistance. The contribution of content, analysis, or disposition to professional work product by an artificial intelligence (“AI”) system, usually a large language model (“LLM”), whose output is generated rather than retrieved or calculated by fixed rules, whether the system stands alone or is embedded in ordinary production software. Computation by fixed rules is not machine assistance: building information modeling, parametric propagation, and analysis run to a stated method produce computed content, not generated content. Content a system propagates (a dimension, quantity, or reference carried by fixed rules across a document set from a governing change) is governed by § 4.D alone.
- Verification. A test with a stated condition for passing, performed against an authoritative source, yielding a recorded result. Defined at § 2.2.
- Authoritative source. The primary document that governs an assertion: the code edition adopted by the authority having jurisdiction as locally amended; the current published standard; the manufacturer’s current data; the governing contract document. An AI’s restatement of a source is not a source.
- The record. The two-part documentation made during the work specified in Part V: project and instrument context recorded once, with a verification entry for each check or documented group of items checked together. Relevant federal terminology comes from NIST AI 600-1, Artificial Intelligence Risk Management Framework: Generative Artificial Intelligence Profile (July 2024), including confabulation (plausible but false generated content), data provenance (the origin and history of data), and human–AI configuration (how people and AI systems are arranged to work together).
- Instrument of service. As defined in the governing agreement; ordinarily, the drawings, specifications, and other documents prepared by the architect for the project.
- Material; materiality. Capable, in context, of materially affecting life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination. Materiality depends on consequence and intended use; it is not a generalized label for every professional communication.
- Professional representation. A communication issued under the architect's authority that states or interprets a professional or contractual determination. Outside the sealed set, only a material professional representation requires verification under § 4.G (a gated use); routine internal drafting, administrative work, and minor confirming correspondence remain permitted.
8.4 Relationship to Existing Authority§
The cited authorities give architects a starting point: responsible control, qualified review, independent verification, source identification, confidentiality, recordkeeping, and accountability at sealing. NCEES Position Statement 6.10 calls for independent checks and documented methods, data sources, and assumptions. NCARB Model Law § 403 proposes records adequate to demonstrate responsible control over original and integrated work.
Those provisions and the other cited sources inform a method a firm can use on a project. It specifies which tasks require verification, what the check involves, which source governs, and what to record. Firm policy, task classification, protocols for particular failures, and pre-sealing review put the method into practice. The table below distinguishes what each source contributes from the proposed additions.
| Source | Foundation established by the source | Operational question left open | This Guide’s answer |
|---|---|---|---|
| AIA, Guidance for the Responsible Use of AI (2025) American Institute of Architects | AI output should be reviewed and validated by qualified professionals before reliance. | What qualifies as review and validation, and what demonstrates that they occurred? | Section 2.2 defines verification as a test with a stated criterion, an authoritative source, and a recorded result. Part V and Appendix D specify the contemporaneous record. Appendix C applies the test to the principal failure surfaces of architectural practice. |
| AIA, AI Firm Toolkit (2026) American Institute of Architects | Responsible implementation requires governance, verification, firm policy, standardized workflows, and increasing organizational maturity. | Which uses require controls, where is the gate, and what firm process follows once the gate is crossed? | Section 4.G and Appendix B classify uses as permitted, gated, or prohibited. Section 2.2 establishes the verification required at the gate. Part V and Appendix D establish the record, and Appendix A converts the complete system into an adoptable firm policy. |
| NCARB, Position on AI (2024, revised 2026) National Council of Architectural Registration Boards | Professional judgment, sealing responsibility, and accountability remain with the licensed architect regardless of the tools used. | How does an architect exercise responsible control over machine-assisted content, and what should be established before sealing? | Section 2.1 defines responsible control over every material machine-assisted contribution. Section 5.5 reconciles verification, recordkeeping, and disclosure. Section 6.2 carries those requirements to the seal, and Appendix E converts them into a pre-sealing decision. |
| NCARB, Model Law § 403 (2024) National Council of Architectural Registration Boards | An architect should maintain records adequate to demonstrate responsible control over original work and work produced by integrating the contributions of others. | What should a machine-assistance record contain, when should it be created, and how should it address aggregation, sampling, reverification, and retention? | Section 2.6 and §§ 5.1–5.4 define the record’s purpose, timing, content, aggregation rules, reverification triggers, and retention framework. Appendix D supplies the working record specification, and Appendix A, §§ A.6–A.7, installs it within firm policy. |
| NCEES, Model Law § 110.20(E) (2025) National Council of Examiners for Engineering and Surveying | Responsible charge rests on professional knowledge and control, supported by identifiable professional responsibilities rather than nominal supervision. | How do professional knowledge and control operate when material content originates through a machine rather than another professional? | Section 2.1 translates knowledge and control into an architecture-specific rule for material machine-assisted contributions. Section 2.2 requires verification before reliance. Section 6.2 and Appendix E apply both requirements at sealing. |
| NCEES, Position Statement 6.10 (2025) National Council of Examiners for Engineering and Surveying | Professionals should critically assess AI output, perform independent checks, and produce verifiable results supported by documented methodologies, data sources, and assumptions. | What constitutes an independent check, what makes its result verifiable, and what documentation should the project record preserve? | Section 2.2 defines the criterion-source-result test. Sections 5.2–5.3 and Appendix D establish the documentation required to demonstrate it. Appendix C supplies the architecture-specific protocols by which the test is performed. |
| ICOR, Joint Statement (2026) Interorganizational Council on Regulation | Human responsibility and oversight cannot be automated, and the provenance of information should be tracked and documented. | How is provenance traced from a material assertion to its controlling authority, when is that chain required, and how is it preserved? | Section 2.3 calls for identifying material machine-assisted content and the sources used to verify it. Section 4.G and Appendix B determine when the control attaches. Part V and Appendix D preserve the chain in the project record. |
| NSPE BER, Case 24-2 (2024) National Society of Professional Engineers, Board of Ethical Review | Responsible professional use of AI implicates verification before sealing, responsible charge, confidentiality, technical authority, and disclosure. | What makes verification comprehensive in the production and sealing of architectural instruments of service? | Section 2.2 and Appendix C establish a repeatable architecture-specific verification method. Sections 2.3–2.5 integrate source identification, competence, and confidentiality. Appendix E carries the method through the final pre-sealing review. |
Note: The cited materials differ in legal status and professional scope. Model provisions become binding only through applicable jurisdictional adoption; professional guidance, regulatory positions, implementation resources, public statements, and advisory ethics opinions have the effect assigned by governing law and context. Engineering and surveying materials are used as allied-profession sources, not as statements of architectural law. The proposed procedures draw on these sources without treating them as legally equivalent, altering governing law, or independently determining the standard of care.
8.5 Requirements and Recommendations§
Should identifies a recommendation, and may identifies permission. These verbal conventions are adapted from the ISO/IEC Directives, Part 2 (9th ed. 2021), clauses 7.3–7.4. Definitions and conditions for verification, records, permitted uses, and conformance state this Guide’s core criteria. A should statement is a recommendation. Neither creates law or an external professional requirement. References should identify the version as well as the section. Reorganization and renumbering will be documented in the public change log so that earlier provisions can be traced.
8.6 Status, Reliance, and Limitations§
The professional-practice framework is voluntary. It is not a law, licensing-board rule, consensus standard, insurer requirement, or determination of the legal standard of care, and it has not been issued or endorsed by the organizations whose materials it cites. Publication alone imposes no obligation to follow it. A firm may voluntarily adopt some or all of its provisions, and obligations may arise independently through applicable law, a licensing rule, a contract, an engagement, or the firm’s own policy. Conformance means only that the firm’s practice meets this Guide’s criteria for the version and scope covered by its review.
Conformance does not establish that the standard of care was met, and non-adoption does not establish that it was breached. The relevance or weight of the framework in any dispute depends on governing law, the facts, professional acceptance, and the basis on which it is offered. The author discusses legal sources as an architect, not an attorney. These sources provide context for the Guide’s recommendations; the discussion is not legal advice. Readers should consult qualified counsel about how the law applies to a particular project or dispute. The Guide does not warrant error-free work.
8.7 About the Author and Disclosure§
Daniel Hutchins is a licensed architect practicing in forensic architecture, retained in construction disputes to examine how deficiencies enter instruments of service. He may provide educational instruction and implementation support to architecture firms related to the subject matter of this paper. The Guide is published without charge, and its use or conformance does not require retaining him or any other consultant. No fee payable to him is contingent on a finding of conformance, and he issues no certification, registration, mark, or statement of conformance.
This is a single-author work. Unless separately identified, the cited organizations have not reviewed or endorsed the Guide’s interpretations or proposed controls. Sources cited in this edition were reviewed through September 9, 2026.
The Guide at a Glance§
The seven principles (Part II):
- Responsible control—Treat generated output as an unverified draft. A qualified professional should understand, integrate, and verify each material contribution before reliance or sealing (§ 2.1).
- Verification—Test material contributions to sealed work and gated professional communications before reliance. Where material, check applicability, completeness, exceptions, and coordination as well as the assertion itself (§ 2.2).
- Source identification—Trace every material machine-assisted assertion relied upon in sealed work or a gated professional communication to an authoritative source (§ 2.3).
- Competence—A professional should know what the tool does reliably, where it fails, and how to recognize its errors (§ 2.4).
- Confidentiality—Protected information may be submitted only when the submission is authorized and the specific tool, account, integration, and configuration are approved for the applicable data class (§ 2.5).
- The record—Record each check during the work so that the content or group checked, method, authority, verifier, date, and result can be reconstructed (§ 2.6).
- Decisions reserved to the architect—AI may support compliance analysis and draft review wording after the architect has decided the action. It may not select or issue that action, supply the sole or primary basis for compliance, or bypass review, integration, and verification of sealed content (§ 2.7).
Verification has three elements (§ 2.2): a criterion that can pass or fail, an authoritative source against which it is tested, and a result recorded as the test is performed. An AI restatement is not an authoritative source.
The record has two linked parts (§ 5.3; Appendix D): reusable project context and verification entries. A markup, worksheet, or log may identify the content or group checked, criterion, source and location, method, verifier, date, and result, directly or by reference.
Record corrections, required approvals, and unresolved items where applicable; avoid duplicating information already retrievable in the project file.
Task tiers (§ 4.G; Appendix B). Permitted uses produce no material contribution to sealed work or material professional communication outside it. Gated uses may produce either and require verification and the Part V record. Prohibited uses assign reserved professional judgment to AI or otherwise violate § 2.7. Routine minor confirming correspondence remains permitted; unclassified uses are treated as gated.
Retention (§ 5.4). The firm keeps the verification record as an identifiable part of the project files under a written schedule that addresses applicable licensing and contractual duties; statutes of limitation and repose, including their triggering events; insurer guidance; privacy and data-minimization duties; and legal holds. No universal retention period or trigger is established.
System test (§ 5.2; § 7.5; Appendix D, § D.4). For a named instrument or material professional communication, the system passes when the firm can retrieve the linked context and verification entries, including status, exceptions, corrections, and further verification, without reconstructing the process from staff memory or file metadata.
Implementation and conformance (Part VII; Appendices A–G). The appendices provide the model firm policy (Appendix A), task classification (Appendix B), verification protocols (Appendix C), record specification (Appendix D), pre-sealing checklist (Appendix E), illustrative conformance, proposal, and renewal language (Appendix F), and glossary (Appendix G). The same substantive requirements apply at every firm size. Conformance is self-declared; the author does not issue certifications (§ 8.7; § 7.4).
Daniel Hutchins, AIA, NCARB
Source notes and cross-references
- 1NCARB Model Law § 103(16) (July 2024), at 8; NCEES Model Law § 110.20(E) (Aug. 2025), at 4.
- 2225 ILCS 305/14; Cal. Bus. & Prof. Code § 5535.1; NCARB Model Law, supra note 1, § 103(16), at 8.
- 3NCEES Model Law, supra note 1, § 110.20(E)(1–4), at 4; see also NSPE Position Statement No. 10-1778, Responsible Charge, as quoted in NSPE Board of Ethical Review, Case 24-2, Use of Artificial Intelligence in Engineering Practice (July 18, 2024), at 7.
- 4NCARB Model Regulations R401.1(1)(a)–(d) (July 2024), at 39.
- 5AIA, Guidance for the Responsible Use of AI by Architecture and Design Firms (updated Oct. 22, 2025), at 2.
- 6ICOR, Public Statement on the Role of Artificial Intelligence in the Design Professions (Jan. 2026), Human Oversight Is Essential.
- 7NCEES, Manual of Policy and Position Statements (Aug. 2025), PS 6.10, Responsible Use of Artificial Intelligence in Engineering and Surveying, at 42.
- 8NSPE Board of Ethical Review, Case 24-2, Use of Artificial Intelligence in Engineering Practice (July 18, 2024), conclusion 2, at 8.
- 9ICOR, Public Statement, supra note 6, Data Quality and Integrity.
- 10NSPE BER Case 24-2, supra note 8, conclusion 1, at 8.
- 11NCARB Model Rules of Conduct (rev. July 2023), Rule 1.3, at 6.
- 12NSPE BER Case 90-6, Use of CADD System (Nov. 9, 1990), at 2; accord NSPE BER Case 98-3 (Jan. 22, 1999), at 4; ICOR, Public Statement, supra note 6, Professional Competence and Continuing Education.
- 13Varun Magesh, Faiz Surani, Matthew Dahl, Mirac Suzgun, Christopher D. Manning and Daniel E. Ho, Hallucination-Free? Assessing the Reliability of Leading AI Legal Research Tools, 22 J. Empirical Legal Stud. 216 (2025), at 216, 223, 225, 230–31.
- 14NCARB, Position on the Use of Artificial Intelligence in the Architectural Profession (updated Apr. 2026), AI tools should provide transparency.
- 15NCARB, Position on AI, supra note 14, Regulators should not limit technological advances.
- 16NSPE BER Case 24-2, supra note 8, at 6.
- 17AIA, Guidance for the Responsible Use of AI, supra note 5, item 3, at 2.
- 18AIA Best Practices, Quality control: Preparation of working drawings; Keys to classifying project files (both Nov. 30, 2023).
- 19NCARB Model Law, supra note 1, § 403, at 18; 225 ILCS 305/14.
- 20NCARB Model Rules of Conduct, supra note 11, Rule 1.2, at 6.
- 21David Lyell and Enrico Coiera, Automation bias and verification complexity: a systematic review, 24 J. Am. Med. Informatics Ass’n 423 (2017), at 423, 426, 429.
- 22Giuseppe Romeo and Daniela Conti, Exploring automation bias in human–AI collaboration: a review and implications for explainable AI, 41 AI & Soc’y 259 (2026), at 259, 262.
- 23Michelle Vaccaro, Abdullah Almaatouq and Thomas Malone, When combinations of humans and AI are useful: a systematic review and meta-analysis, 8 Nature Human Behaviour 2293 (2024), at 2293, 2295.
- 24Vaccaro et al., supra note 23, at 2295.
- 25Lyell and Coiera, supra note 21, at 430.
- 26Ihsan Ayyub Qazi, Ayesha Ali, Asad Ullah Khawaja, Muhammad Junaid Akhtar, Ali Zafar Sheikh and Muhammad Hamad Alizai, Automation Bias in Large Language Model–Assisted Diagnostic Reasoning among Physicians Trained in AI Literacy—A Randomized Clinical Trial, 3 NEJM AI No. 5 (2026), at 6–7, doi:10.1056/AIoa2501001.
- 27Kate Goddard, Abdul Roudsari and Jeremy C. Wyatt, Automation bias: empirical results assessing influencing factors, 83 Int’l J. Med. Informatics 368, 370 (2014).
- 28Lyell and Coiera, supra note 21, at 430.
- 29Ihsan Ayyub Qazi, Ayesha Ali, Asad Ullah Khawaja, Muhammad Junaid Akhtar, Ali Zafar Sheikh and Muhammad Hamad Alizai, Mitigating Automation Bias in Physician-LLM Diagnostic Reasoning Using Behavioral Nudges: A Randomized Controlled Trial, medRxiv 10.64898/2026.06.01.26354596 (June 2, 2026), at 2, 5–6.
- 30Qazi et al., Behavioral Nudges, supra note 29, at 15.
- 31Magesh et al., Hallucination-Free?, supra note 13, at 223, 225, 230–31, doi:10.1111/jels.12413.
- 32International Code Council, Code Adoption Resources (accessed Sept. 2, 2026).
- 33ASTM International, ASTM E814-26, Standard Test Method for Fire Tests of Penetration Firestop Systems § 5.1 (2026); ASTM International, ASTM E3157-25, Standard Guide for Understanding and Using Information Related to Installation of Firestop Systems §§ 1.4, 1.9 (2025); UL Solutions, Firestop and Joint Application Guide, at 2, 8–12 (2024).
- 34AIA Document A201-2017, General Conditions of the Contract for Construction §§ 3.12.4–.9, 4.2.7. The project-specific contract and modifications govern.
- 35AIA A201-2017, supra note 34, §§ 4.2.8, 4.2.11–.14, 7.4; AIA Contract Documents, Instructions: G716-2004, Request for Information (RFI). The project-specific contract governs.
- 36AIA, Guidance for the Responsible Use of AI, supra note 5, at 2–3; AIA AI Task Force, AI Firm Toolkit (Aug. 2026).
- 37NCARB, Position on AI, supra note 14; AIA AI Task Force, AI Firm Toolkit, supra note 36.
- 38AIA A201-2017, supra note 34, § 3.12.10.1. The project-specific contract governs.
- 39NCARB Model Law, supra note 1, § 403, at 18; NCARB Model Regulations, supra note 4, at 39; 225 ILCS 305/14.
- 40Fed. R. Evid. 803(6), 901(a), 902(11) (rules current through Dec. 1, 2025).
- 418 NYCRR § 29.3(a)(3).
- 42NSPE BER Case 24-2, supra note 8, conclusion 1, at 8.
- 43NCARB Model Law, supra note 1, § 403, at 18; 22 Tex. Admin. Code § 1.103(c); 8 NYCRR § 29.3(a)(3).
- 448 NYCRR § 29.3(a)(3); Tex. Civ. Prac. & Rem. Code § 16.008(a); accord Tex. Civ. Prac. & Rem. Code § 16.009; 22 Tex. Admin. Code § 1.103(c).
- 45ACEC Risk Management Committee and NSPE Professional Liability Committee, Document Retention Guidelines—A Risk Management White Paper (2016), at 3, 5, 6.
- 46NSPE BER Case 24-2, supra note 8, conclusion 3, at 8.
- 47ICOR, Public Statement, supra note 6, Data Quality and Integrity.
- 48AIA, Guidance for the Responsible Use of AI, supra note 5, item 4, at 2.
- 49NCARB, Position on AI, supra note 14, areas for further exploration.
- 50Restatement (Third) of Torts: Liability for Physical and Emotional Harm § 13 (Am. L. Inst. 2010).
- 51Restatement (Second) of Torts § 299A & cmt. b (Am. L. Inst. 1965).
- 52Restatement (Second) of Torts § 295A & cmt. c (Am. L. Inst. 1965).
- 53Restatement of the Law Third, Torts: Medical Malpractice § 6(b) & cmt. f (Am. L. Inst., Tentative Draft No. 2, 2024), at 39, 44.
- 54NCARB Model Law, supra note 1, § 401(2), at 17.
- 55NCARB, Position on AI, supra note 14, AI is a tool, not a replacement for professional judgment; ICOR, Public Statement, supra note 6, Human Oversight Is Essential.
- 56NCARB Model Regulations, supra note 4, R401.1(1)(a)–(d), at 39; 225 ILCS 305/14.
- 57NCARB Model Rules of Conduct, supra note 11, Rule 5.2, at 7.
- 58AIA A201-2017, supra note 34, § 3.12.10.1, at 16.
- 59NCEES Model Law, supra note 1, § 110.20(E), at 4.
- 60Fed. R. Evid. 702 (amended Dec. 1, 2023).
- 61NCARB Model Rules of Conduct, supra note 11, Guiding Principle F, at 5.
- 62Ames & Gough, 2026 A/E Professional Liability Survey Results, amesgough.com (survey of 15 insurers) (as of July 25, 2026).
- 63Matthew Lerner, Insurers, Brokers Adjust as AI Exclusions Emerge, Business Insurance (Apr. 7, 2026); Don Jergler, Insurer Interest in AI Exclusions Growing as Risk Becomes Omnipresent, Insurance Journal (July 22, 2026).
- 64NCARB Model Law § 103(16) (July 2024), at 8; NCEES Model Law § 110.20(E) (Aug. 2025), at 4.
- S1See §§ 4.A–4.E for the controls, § 6.2 for the seal analysis, and Appendix E for the pre-sealing checklist.
- S2See Appendix C for verification protocols by task, Part V for the record, and Part III for the evidence supporting a defined verification test.
- S3Section 5.3 identifies the project context and verification-entry fields used to document machine-assisted content and the sources used to verify it. Appendix D provides the record specification.
- S4See Appendix A, § A.9, for the competence provision and Part IV for typical errors by area of practice.
- S5See § 4.F for the confidentiality controls and Appendix A, § A.8, for the tool register and boundaries on approved use.
- S6Part V specifies the record; Appendix D provides the working specification. Section 6.3 explains how the record supports answers to questions under oath.
- S7See § 4.G for the three tiers, Appendix B for the full classification, and Appendix A, § A.4, for the corresponding firm-policy provision.
- S8These controls apply §§ 2.2 and 2.7 to regulatory analysis. See Appendix C.2 for the verification procedure and Appendix A, § A.5.2, for the corresponding firm-policy provision.
- S9See Appendix C.3 for the verification procedure and Appendix A, § A.5.3, for the corresponding firm-policy provision.
- S10These controls apply § 2.7 within the review scope established by the governing Contract Documents. See Appendix C.5 for the verification procedure and Appendix A, § A.5.5, for the corresponding firm-policy provision.
- S11These controls apply the responsible-control and verification requirements in §§ 2.1–2.2 to propagated content as defined in § 8.3. See Appendix C.4 for the verification procedure and Appendix A, § A.5.4, for the corresponding firm-policy provision.
- S12See Appendix C.6 for the verification procedure and Appendix A, § A.5.6, for the corresponding firm-policy provision.
- S13See Appendix B for the full task classification and Appendix A, § A.4, for its adoption in firm policy.
- S14For checks and records, see § 2.2 and Part V; for competence, § 2.4; for disclosure, § 5.5.
- S15The Conformance Statement in § 7.4 provides a way to describe the firm’s practice and the scope of its claim, supported by the underlying evidence.
How to Use the Appendices§
These appendices convert Parts II through VII of the Guide into firm procedures and project records. They may be maintained as one manual or integrated into an existing policy, quality-control system, project-management platform, or document-management system. The platform is not prescribed. The substance, timing, links, status, access controls, and retrievability of the required records are.
What a Firm Produces§
Firm methodology. The policy or addendum, use classification, protocols, tool register, competence process, retention and legal-hold rules, and review cycle.
Project verification record. Project and instrument context linked to contemporaneous verification entries, evidence, status, exceptions, corrections, and reverification.
Release decision. The completed pre-sealing checklist for the instrument to be issued.
Assessment and communications. The assessment findings memorandum and, when supported, optional conformance, proposal, and renewal language.
A firm need not create a separate bound manual if its existing systems contain these elements. A claim of conformance, however, is made only by Guide version and only after a documented assessment supports the statement for its stated scope, date, limitations, and exceptions. Conformance is the firm's self-attestation. It is not author certification, assurance, or a warranty of error-free work.
Appendix Map§
| App. | Function | Result |
|---|---|---|
| A | Adopt or graft the firm policy and maintain the tool register | Firm policy and approved-tool record |
| B | Classify recurring and proposed uses | Firm task classification |
| C | Select the test for each gated failure surface | Verification protocol |
| D | Open and maintain the two-layer project record | Context record, verification entries, and log |
| E | Confirm the record and controls before sealing | Release decision and signoff |
| F | Assess and accurately describe the firm's practice | Findings memorandum, Conformance Statement, and optional external language |
| G | Apply defined terms consistently | Reference glossary |
Implementation Sequence§
- Adopt and configure. Complete Appendix A, assign responsibility, approve tools and data classes, and establish competence, retention, legal-hold, and review processes.
- Classify. Use Appendix B to classify the output, destination, consequence, and role in professional judgment. An unclassified use remains gated.
- Open the record. At the first gated use, create the Appendix D context and identify the applicable Appendix C protocol.
- Verify before reliance. Apply the protocol using a stated pass criterion, an authoritative source, and a recorded result.
- Resolve and release. Link corrections and reverification, keep exceptions visible, and complete Appendix E before sealing.
- Assess and represent. Review documentary and project evidence under § 7.5 before using Appendix F language.
Firms With Existing Policies§
A firm with an existing artificial-intelligence policy may adopt §§ A.4 through A.9 as an addendum. Reconcile definitions, the responsible-person designation, retention, and legal holds rather than create competing provisions.
If the existing policy destroys working drafts at closeout, it shall exclude the verification record governed by §§ A.6 and A.7. The definitions in § A.2 govern the addendum. An existing responsible person may serve as the § A.3 designee.
Appendix A Model Firm Policy for Verification and Records§
This appendix supplies a complete, adoptable policy for a firm that has none. A firm with an existing policy may use the guidance above to adopt the operative provisions as an addendum. The policy is written in the firm's voice and shall be completed, reviewed, and executed under the firm's own name. Bracketed values are firm-specific and shall be completed before adoption.
This policy implements the conditions of conformance stated in Parts II through V. It states what the firm does and does not substitute for installing, following, and documenting the practices it describes.
A.1 Purpose and Scope§
This policy governs machine assistance whose output may materially enter instruments of service that a licensed professional of [FIRM] will seal, and material professional communications outside the sealed set as defined in § A.4. It applies from the moment such content is a candidate for professional reliance.
Routine internal drafting, formatting, indexing, administrative work, and minor confirming correspondence that neither enters sealed work nor materially affects the consequence categories in § A.4 are permitted. They are not subject to §§ A.5 through A.7, although ordinary professional review, confidentiality, contract, and quality-control duties remain.
This policy takes no position on which tools [FIRM] adopts. It governs how the output of an approved use is treated before professional reliance.
A.2 Definitions§
Terms used in this policy carry the meanings assigned in § 8.3 of the Guide. Four are restated because they are operative throughout this policy:
- Machine assistance. The contribution of content, analysis, or disposition to professional work product by an artificial-intelligence system whose output is generated rather than retrieved or deterministically computed, whether the system stands alone or is embedded in ordinary production software. Deterministic computation is not machine assistance. Content propagated deterministically from a governing change is governed by § A.5.4 alone.
- Verification. A test with a stated pass criterion, performed against an authoritative source, yielding a recorded result.
- Authoritative source. The primary document that governs an assertion, such as the code edition adopted by the authority having jurisdiction as locally amended, the current published standard, the manufacturer's current data, or the governing contract document. An AI's restatement is not a source.
- The record. The contemporaneous, two-layer documentation specified in Part V and § A.6: project and instrument context recorded once, with an entry for each verification or documented verification population.
A.3 Designation of Responsibility§
[DESIGNATED PROFESSIONAL] is accountable for maintaining this policy, assigning qualified professional and specialist reviews, maintaining the tool register at § A.8.2, and ensuring the competence process at § A.9. The designee shall be a licensed professional but need not personally perform legal, security, privacy, procurement, insurance, or provider review where qualified advice is used and documented.
Responsibility for an individual verification is not transferred to the designee. Each verification is performed by a professional qualified to evaluate the content, and the professional who seals an instrument remains in responsible control of every material machine-assisted contribution to it.
[FOR A MULTI-OFFICE FIRM: Name a designated professional for each office and one firm-level designee responsible for the whole. State any jurisdiction-specific supplements.]
A.4 Classification of Uses§
[FIRM] maintains a written classification of its recurring uses of machine assistance, organized as permitted, gated, or prohibited. The classification includes assistance embedded in ordinary production software and is reviewed on the cycle at § A.10. Appendix B supplies the classification method and register.
- Permitted. Uses producing no material contribution to sealed work and no material professional communication outside the sealed set. Routine internal drafting, formatting, indexing, administrative work, and minor confirming correspondence are ordinarily permitted. No verification record under this policy is required.
- Gated. Uses whose output may materially enter sealed work, or constitutes a professional communication outside the sealed set that could materially affect life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination. Gated uses require the applicable § A.5 verification and § A.6 record.
- Prohibited. Uses closed to machine assistance under § 2.7. A machine shall not be the sole or primary basis of a compliance determination, shall not originate a professional review action issued under a seal, and shall not supply sealed content without qualified professional review, integration, and verification.
An unclassified use is treated as gated until it is classified.
A.5 Verification§
A.5.1 General Requirement§
Every material machine-assisted contribution that will be relied upon in sealed work, and every material professional communication outside the sealed set identified in § A.4, shall be verified before reliance. The test states its pass criterion, uses an authoritative source, and yields a recorded result under § A.6. Verification addresses the proposition relied upon and, where material, its applicability, completeness, exceptions, and coordination. Its depth is proportionate to consequence and use, but no material assertion entering sealed work is left unverified.
A.5.2 Code, Zoning, and Regulatory Analysis§
Every material regulatory proposition supplied by a machine and relied upon in gated work shall be verified against the governing-source stack: jurisdiction and adopting authority; adopted edition and effective date; applicable local amendments and administrative criteria; incorporated standards; and the material project facts, definitions, exceptions, and dependencies that determine applicability. The verifier shall read each cited provision and material cross-reference. Appendix C.2 supplies the working protocol.
Where a compliance conclusion depends on interpretation rather than text, the interpretation is professional judgment. Machine output may assist but shall not supply the sole or primary basis for that conclusion.
A.5.3 Specifications§
A machine-assisted specification section shall receive section-level professional review before incorporation. Part 1 references shall be verified against the issuing body's current record; Part 2 products and manufacturers against current manufacturer data; and material Part 3 installation and system-performance requirements against the applicable listed, tested, evaluated, or otherwise accepted assembly and its conditions. Product data alone does not verify performance that belongs to an assembly. The review shall address material compatibility, drawing coordination, related sections, availability or current status, and conditions of performance. Appendix C.3 supplies the working protocol.
A designation, product, assembly, performance claim, or coordination premise that cannot be verified against an appropriate current source shall not remain in sealed work.
A.5.4 Drawing Production, Coordination, and QA/QC§
For a machine-generated or machine-propagated change, verification shall identify the governing input, intended dependent outputs, and interfaces not governed by the automation. The test shall confirm both lineage within the dependency chain and coordination at its boundaries. Quantities, dimensions, classifications, keyed references, and schedules shall be verified against the governing project source before issuance. Agreement among outputs generated from the same source is evidence of propagation, not by itself evidence that the source or resulting construction is correct. Appendix C.4 supplies the working protocol.
Verification shall be paced to the rate and reach of generated change and not limited to milestone review.
A.5.5 Submittal and Shop Drawing Review§
Machine assistance may inventory specified criteria, compare submitted data, track responses to prior comments, and flag apparent changes. Before taking action, the architect shall confirm the contractor's required review, the package's sufficiency for the action sought, specifically disclosed deviations, revisions outside prior comments, the scope and limits of the machine comparison, and required consultant review. The architect shall select the disposition through independent professional judgment. A machine may draft disposition language only after that selection; it shall not select or issue the disposition. Appendix C.5 supplies the working protocol.
A.5.6 Construction-Phase Correspondence§
A machine-assisted RFI response, field directive, or other project correspondence is gated outside the sealed set only when it could materially affect the consequence categories in § A.4. Before issuance, the architect shall verify material factual premises, implicated Contract Documents, contractual authority, affected disciplines, and known effects on related work. The architect shall determine whether the response is an interpretation or requires a Supplemental Instruction, minor change, Change Order, Construction Change Directive, proposal request, or other instrument authorized by the governing Contract Documents. Required consultant review shall be obtained. Routine minor confirming correspondence remains permitted. Appendix C.6 supplies the working protocol.
A.6 The Record§
A.6.1 What the Record Establishes§
For each gated use, the record shall be sufficient to establish which content or defined population was machine-assisted; the project, instrument, version, and tool context; what test was performed before reliance; who performed and approved it; and the result, status, exceptions, corrections, and reverification where applicable.
A.6.2 Project and Instrument Context§
The following context is recorded once for each bounded project, instrument, issuance, or material professional communication:
- project identifier; deliverable or instrument title; revision or version; and issue date or status;
- task classification and governing verification protocol, for example, gated code analysis under Appendix C.2;
- tool and provider; product, model, and version to the extent known; and any configuration material to the output or review; and
- a durable input and output reference where appropriate, such as a controlled-repository identifier, file reference, hash, or sufficient description.
Protected data is minimized. Full prompts, privileged communications, confidential project data, personal information, and proprietary material are not retained indiscriminately. A controlled reference or description may identify the content without unnecessarily duplicating protected material.
A.6.3 Verification Entries§
Each verification entry states:
- the content, assertion, item, or defined population verified, with its location in the instrument or communication;
- the pass criterion;
- the authoritative source or governing evidence, with jurisdiction where applicable, edition or version, date, and pinpoint;
- the verification method and evidence sufficient to show how the criterion was tested;
- the verifier's identity, role, relevant qualification, and verification date or timestamp;
- the disposition: confirmed, corrected, removed, escalated, or unresolved; and
- any correction and reverification, approval or status, and linked exception or unresolved item.
A.6.4 Aggregation Sampling and Reverification§
[FIRM] aggregates entries only for a defined population sharing the same task type, criterion, source and version, method, required verifier qualification, and disposition. The entry identifies the population and whether review was complete or sampled.
Sampling follows a documented, risk-based plan and does not bypass verification of a unique material assertion affecting life safety, code compliance, building performance, contractual rights, or another professional determination. A failed sample triggers an expanded review appropriate to the failure and a record of correction or escalation.
A change to the content, authoritative source or edition, material project facts, or a dependent instrument triggers reverification when it could affect the prior result. The original entry is preserved and linked to the superseding entry. Exceptions and unresolved items remain visible until closed by an identified person or carried expressly into the release decision.
A.6.5 Contemporaneity§
The record shall be made at or near the time of the verification it documents, in the ordinary course of practice. It is created as part of the work and not assembled after a claim has been asserted or once the work is questioned.
A.6.6 Location and Status§
[FIRM] maintains the linked context and verification entries at [NAMED LOCATION OR SYSTEM]. The record owner is [ROLE]. Status values are [STATUS VALUES, such as open, corrected, reverified, approved, unresolved, superseded, and closed]. Access controls and links shall permit retrieval for a named instrument or material professional communication without reconstruction from staff memory or file metadata. The record is a distinct project-record category governed by § A.7.
A.7 Retention§
The record is retained under a written schedule approved for [FIRM]'s work and jurisdictions. The schedule addresses applicable licensing requirements, contracts, limitation and repose periods and their triggering events, insurer guidance, privacy and data-minimization duties, and legal holds. The selection is reviewed with qualified counsel and the firm's broker or insurer as appropriate. This policy states no universal period, trigger, longest-period rule, or safe harbor.
[FIRM] retains the record under [RETENTION PERIOD OR SCHEDULE], on the following documented basis: [JURISDICTIONS, SERVICES, CONTRACTS, CLAIMS PERIODS AND TRIGGERS, INSURER GUIDANCE, AND PRIVACY BASIS]. [FIRM] uses [PROJECT-SPECIFIC, JURISDICTION-SPECIFIC, OR DOCUMENTED UNIFORM] rules and reviews them on the cycle at § A.10.
A legal hold suspends routine destruction for affected records. [FIRM] identifies who may issue and release a hold; the repositories, backups, and provider-held copies in scope; notice and acknowledgment procedures; and secure disposition after release and expiration of the applicable schedule.
A.8 Confidentiality and Tool Vetting§
A.8.1 The Rule§
No confidential, privileged, proprietary, personal, or security-sensitive information shall become accessible to a machine-assisted system unless the data class is authorized and the specific provider, tool, account, tenancy, interface, integration, and configuration are approved for it. Approval shall account for client restrictions, privilege, contract, applicable law, the full accessible data path, access controls, storage and processing, retention and deletion, provider model development, incident terms, and intellectual-property and output-use rights.
A.8.2 The Tool Register§
[FIRM] maintains one entry for each approved account, tenancy, or integration. A vendor or product name alone is not an approval. The register is reviewed on the cycle at § A.10 and upon material change.
| Field | Firm or project entry |
|---|---|
| Accountable owner | [NAME OR ROLE] |
| Approved system | [PROVIDER, TOOL, ACCOUNT OR TENANCY, INTERFACE, INTEGRATION] |
| Approved uses | [TASKS AND PURPOSES] |
| Approved data classes | [AUTHORIZED DATA CLASSES AND EXPRESS EXCLUSIONS] |
| Accessible data scope | [FILES, MODELS, METADATA, LOGS, EXTENSIONS, CONNECTED SOURCES] |
| Provider and subprocessors | [NAMES OR CONTROLLED REVIEW REFERENCE] |
| Required configuration | [IDENTITY, ACCESS, ENCRYPTION, TENANCY, LOGGING, AND OTHER CONTROLS] |
| Storage and processing | [KNOWN LOCATIONS AND MATERIAL TERMS] |
| Retention and deletion | [TERMS AND FIRM SETTINGS] |
| Provider model development | [TRAINING OR OTHER USE OF SUBMITTED INFORMATION] |
| Incident provisions | [NOTICE, RESPONSE, AND ESCALATION] |
| Intellectual property and output | [MATERIAL TERMS AND RESTRICTIONS] |
| Review and approval | [PROFESSIONAL, LEGAL, SECURITY, PRIVACY, PROCUREMENT, INSURANCE, PROVIDER REVIEWERS] |
| Dates and status | [APPROVAL DATE, NEXT REVIEW DATE, CURRENT STATUS] |
A.8.3 The Boundary§
[FIRM] defines the boundary between each approved account, tenancy, or integration and any open or unapproved interface, and enforces it through access control, configuration, training, and monitoring. Approval of one instance does not approve every interface bearing the same product name.
A.8.4 Qualified Review and Approval§
The designated professional ensures that professional, legal, security, privacy, procurement, insurance, and provider reviews are assigned to persons qualified for the question. Specialist review may be internal or external and shall be documented. The licensed professional remains accountable for professional reliance on the output but is not presumed to be the sole expert in every review discipline.
A.8.5 Change and Incident Response§
A material change to provider terms, configuration, sub-processors, data scope or location, retention, provider model development, deletion, incident handling, intellectual-property terms, or integration triggers review before continued protected-data use. A suspected unauthorized disclosure or material incident triggers [INCIDENT PROCESS], preservation of relevant records, and suspension or narrowing of use as appropriate.
A.9 Competence§
A professional shall not employ a machine tool in producing an instrument of service without practical competence in that tool: knowledge of its capabilities, limitations, and characteristic failure modes sufficient to evaluate its output. This does not require knowledge of the system's internal construction. It requires knowledge of what the tool does reliably, where it fails, and how its failures present.
[FIRM] maintains that knowledge through [TRAINING, TESTING, SUPERVISION, OR OTHER PROCESS] on the cycle at § A.10 and when a material new tool, configuration, or failure mode is introduced. The firm retains [LOCATION OR EVIDENCE] sufficient for an assessment under § 7.5 to examine competence maintenance.
A.10 Review and Amendment§
This policy, the classification at § A.4, the record design at § A.6, the retention and legal-hold schedule at § A.7, the tool register at § A.8.2, and the competence process at § A.9 are reviewed not less than [FREQUENCY, recommended annually], and upon a material new tool or configuration; a provider-term, subprocessor, data-scope, location, retention, provider-development, deletion, incident, or intellectual-property change; a new Guide edition; a material change in jurisdictional, contractual, privacy, or licensing requirements; or an insurance change addressed to machine assistance.
Amendments are made to this document and reissued with an incremented version number. [FIRM] retains superseded versions under § A.7.
Adopted [DATE]. Version [N]. [DESIGNATED PROFESSIONAL].
Appendix B Task Classification§
This appendix implements § 4.G. Sealed work supplies the primary destination gate. Outside the sealed set, only a professional communication that could materially affect life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination is gated. The role of professional judgment may close a use to machine assistance. For a gated use, the characteristic failure selects the protocol.
B.1 How to Classify§
Classify the exact use by answering four questions:
- What exact output will the machine produce?
- Where can that output go or be relied upon?
- What material consequence can it have?
- Would reliance on it supply or displace professional judgment reserved by § 2.7?
If material machine-assisted content will enter or become a candidate to enter a sealed instrument, the use is at least gated. Outside the sealed set, it is gated only when it is a material professional communication within the defined categories. If the use would assign reserved professional judgment to the machine, it is prohibited. An unclassified use remains gated until classified. Reclassify permitted draft material when its destination or use changes.
| Field | Firm or project entry |
|---|---|
| Use and exact output | [DESCRIBE THE RECURRING OR PROPOSED USE] |
| Destination | [SEALED INSTRUMENT, MATERIAL PROFESSIONAL COMMUNICATION, OR OTHER] |
| Material consequence | [CATEGORY OR NONE] |
| Professional judgment | [ROLE OF THE MACHINE AND RESERVED DETERMINATION, IF ANY] |
| Characteristic failure | [PRIMARY FAILURE MODE] |
| Tier | [PERMITTED, GATED, OR PROHIBITED] |
| Protocol and record | [APPENDIX C SECTION AND APPENDIX D LOCATION, IF GATED] |
| Owner and review | [OWNER, APPROVAL DATE, NEXT REVIEW DATE, STATUS] |
B.2 Model Classification§
| Task | Destination | Characteristic failure | Tier | Controls |
|---|---|---|---|---|
| Formatting, indexing, file organization | No sealed instrument | Recoverable omission | Permitted | § 4.G |
| Internal drafting scaffolds; research summaries for professional use | No sealed instrument | Confabulated content caught before reliance | Permitted | § 4.G |
| Administrative and minor confirming correspondence | Outside sealed set; no material determination | Tone or minor fact error | Permitted | § 4.G; B.1 |
| Meeting transcription or internal notes before approval | Internal working record; not issued or relied upon | Omission or misattribution | Permitted until issued or relied upon | § 4.G; B.1 |
| Massing studies, renderings, early design exploration | Not yet an instrument | Plausible but wrong geometry | Permitted until incorporated | § 4.G; B.1 |
| Existing-conditions indexing for an internal survey log | Internal working record | Omission or mislabeling | Permitted until incorporated | § 4.G |
| Code and regulatory research | Sealed instrument or gated representation | Fabricated citation or inapplicable authority | Gated | § 4.A; C.2 |
| Zoning analysis | Sealed or submitted instrument | Wrong jurisdiction, overlay, definition, or edition | Gated | § 4.A; C.2 |
| Specification drafting and revision | Sealed instrument | Unverified standard, product, assembly, or performance | Gated | § 4.B; C.3 |
| Product and manufacturer research | Sealed instrument | Discontinued product or superseded data | Gated | § 4.B; C.3 |
| Drawing, quantity, schedule, or existing-condition generation | Sealed instrument | Wrong governing premise or quantity | Gated | § 4.D; C.4 |
| Machine propagation of changes across a set | Sealed instrument | Unmanaged dependent output or interface | Gated | § 4.D; C.4 |
| Submittal and shop-drawing review support | Professional review workflow | Missed deviation or incomplete comparison scope | Gated | § 4.C; C.5 |
| Material RFI response or field directive | Material professional communication | Wrong premise, instrument, authority, or effect | Gated | § 4.E; C.6 |
| Design narratives and basis-of-design statements | Sealed or submitted instrument | Confabulated performance claim | Gated | § 2.2; C.1 |
| Compliance determination based solely or primarily on machine output | Reserved professional act | Professional determination displaced | Prohibited | § 2.7; § 4.A |
| Machine selection or issuance of a submittal disposition | Reserved professional review action | Judgment no professional made | Prohibited | § 2.7; § 4.C |
| Resolution of ambiguous or concealed existing conditions without required professional judgment | Professional determination | Unsupported inference represented as fact | Prohibited | § 2.7; § 4.G |
| Machine-assisted content proposed for sealing without qualified review, integration, and verification | Sealed instrument | Responsible-control boundary not satisfied | Prohibited | § 2.1; § 2.7 |
The table states ordinary cases. A firm's completed classification governs its practice and shall preserve the sealed-work gate, limited material-communication gate, and reserved-judgment boundaries.
B.3 Boundary Cases§
Three boundary cases recur. An internal draft becomes gated when it is a candidate for incorporation into sealed work. Generated content from an embedded feature is classified like the same task performed in a stand-alone tool. An unsealed communication is not gated merely because an architect sends it; it becomes gated only when the machine-assisted content is a material professional communication within the defined consequence categories.
Appendix C Verification Protocols§
This appendix supplies the working protocols for the gated tier. Each protocol implements the test in § 2.2 at the moment of reliance and adds the task-specific controls in Part IV. These are conditions of conformance proposed by the Guide; a cited source imposes an external duty only where independently applicable.
C.1 General Protocol§
For any material machine-assisted contribution within the gated tier:
- Identify the proposition relied upon, the content or defined population under test, and its location in the instrument or communication.
- State a pass criterion that can pass or fail. An impression of reasonableness is not a criterion.
- Open the authoritative source in the applicable edition or version as of a stated date. An AI restatement or a second AI's agreement is not the source.
- Test the proposition actually relied upon. Where material, address project applicability, completeness, exceptions, and coordination with dependent information.
- Scale the depth and granularity of the test to consequence and use without leaving a material assertion entering sealed work unverified.
- Reach a disposition: confirmed, corrected, removed, escalated, or unresolved. Record corrections, approvals, exceptions, and reverification where applicable.
- Create the linked Appendix D context and verification entry as the test is performed.
A contribution that cannot be located, tied to an authoritative source, or tested against a stated criterion shall not remain in the instrument.
C.2 Code, Zoning, and Regulatory Analysis§
- Criterion. The proposition uses the correct jurisdiction, adopting authority, adopted edition, effective date, local amendments, administrative criteria, incorporated standards, and material project facts. Each cited and dependent provision exists and supports the proposition relied upon.
- Source. The adopted code, ordinance, regulation, administrative criterion, and incorporated standard identified by jurisdiction, edition, adoption or effective date where material, and amendment status.
- Test. Trace each machine-supplied citation to the governing text. Read the provision and material cross-references, amendments, exceptions, definitions, and project facts that determine applicability. Identify affected downstream calculations, drawings, and decisions.
- Reserved judgment. Where the conclusion depends on interpretation rather than text, the interpretation is made by a qualified professional and does not rest solely or primarily on machine output.
- Task-specific record additions. Jurisdiction, adopting authority, edition and dates, amendment status, provisions read, applicability facts and exceptions tested, and affected downstream work. All Appendix D.2 fields also apply.
C.3 Specifications§
- Criterion for Part 1. Each standard designation is current or intentionally specified to an identified edition, and its status and material requirements match the section as of issuance.
- Criterion for Part 2. Each named product and manufacturer is current as specified, and material performance, compatibility, availability or status, and coordination premises agree with current manufacturer data and related Contract Documents.
- Criterion for Part 3 and system performance. The applicable listed, tested, evaluated, or otherwise accepted assembly and its installation conditions support the stated performance. Product data alone does not verify performance that belongs to an assembly.
- Source. The issuing body's current record, current manufacturer data, the applicable assembly listing or evaluation, and related Contract Documents.
- Test. Review the complete machine-assisted section. Trace Part 1 references and Part 2 names to current sources; test material assembly and installation conditions; and check compatibility, drawing coordination, and related sections.
- Task-specific record additions. Section and item, designation or product, assembly or performance condition, current-status date, related documents, and coordination result. All Appendix D.2 fields also apply.
- Fail state. A designation, product, assembly, performance claim, or coordination premise that cannot be verified against an appropriate current source shall not remain in the sealed instrument.
C.4 Drawing Production, Coordination, and QA/QC§
- Criterion. Each generated or propagated value agrees with its governing source; each intended dependent output reflects the governing change; and material interfaces outside the automation have been coordinated.
- Source. The governing model, calculation, document, or approved project input from which the value or change derives, together with the information governing affected interfaces.
- Test. Identify the governing input, intended dependent outputs, and excluded or unmanaged interfaces. Confirm lineage through the dependency chain and coordination at its boundaries. Perform the check at a rate appropriate to the reach and frequency of generated change.
- Task-specific record additions. Governing input, affected outputs, excluded or unmanaged interfaces, propagation result, boundary-coordination result, and corrections. All Appendix D.2 fields also apply.
C.5 Submittal and Shop Drawing Review§
- Boundary. Machine assistance may inventory, organize, compare, track, and flag. The architect selects the review action through independent professional judgment. The machine may draft disposition language only after that selection and shall not select or issue the disposition.
- Criterion. The contractor's required review occurred; the package is sufficient for the action sought; machine-flagged comparisons trace to specified requirements; stated deviations are isolated; revisions outside prior comments are identified; the machine-comparison scope and omissions are understood; and required consultant review is obtained.
- Source. The governing Contract Documents, specified requirements, prior reviewed version and comments, current submittal, disclosed deviations, and affected consultant documents.
- Test. Establish the pages, fields, criteria, prior versions, and related submittals included and omitted from machine comparison. Independently review every item within the architect's contractual scope, not only machine-flagged items, and decide the final action.
- Task-specific record additions. Version reviewed, comparison scope and omissions, prior comments tested, disclosed deviations, material additional revisions, affected consultants, named professional, and final disposition. All Appendix D.2 fields also apply.
C.6 Construction-Phase Correspondence§
- Criterion. Material factual premises are accurate; the architect has authority for the response; implicated Contract Documents support it; affected disciplines have been addressed; and known material effects on cost, time, rights, performance, safety, code, and related work have been evaluated.
- Source. The governing project record and Contract Documents identified by document and section, together with affected consultant information.
- Test. Trace each material premise and interpreted requirement to the governing record or provision. Determine whether the response is an interpretation or requires a Supplemental Instruction, minor change, Change Order, Construction Change Directive, proposal request, or other authorized instrument. Obtain required consultant review and evaluate known effects before issuance.
- Task-specific record additions. Question, correspondence item, sources and provisions, affected work and disciplines, contractual classification, consultant review, known effects, and final disposition. All Appendix D.2 fields also apply.
- Boundary. Routine minor confirming correspondence remains permitted. A machine shall not issue correspondence under the architect's authority without the required professional review.
Appendix D Verification Record Specification and Forms§
This appendix implements Part V through two linked layers: project and instrument context recorded once, and a verification entry for each test, documented population, or approved sample. A firm may use the forms below or map every field to an existing controlled system. The platform is not prescribed; completeness, contemporaneity, status, access control, links, and retrieval are.
D.1 Project and Instrument Context§
Open this record when machine assistance is first used for a gated purpose. Update it whenever the scope, tool, source set, or intended use materially changes.
| Field | Firm or project entry |
|---|---|
| Project identifier | [PROJECT NUMBER OR CONTROLLED IDENTIFIER] |
| Deliverable or instrument | [TITLE AND TYPE] |
| Revision and issue | [REVISION OR VERSION; ISSUE DATE OR STATUS] |
| Classification | [PERMITTED, GATED, OR PROHIBITED; GATED USES CONTINUE] |
| Task and protocol | [TASK TYPE AND APPENDIX C SECTION] |
| Tool context | [PROVIDER, TOOL, PRODUCT, MODEL, VERSION, MATERIAL CONFIGURATION] |
| Durable input reference | [CONTROLLED REPOSITORY IDENTIFIER, FILE REFERENCE, HASH, OR DESCRIPTION] |
| Durable output reference | [CONTROLLED REPOSITORY IDENTIFIER, FILE REFERENCE, HASH, OR DESCRIPTION] |
| Record system and owner | [NAMED LOCATION OR SYSTEM; RESPONSIBLE ROLE] |
| Access and status | [ACCESS CLASSIFICATION; CURRENT STATUS] |
D.2 Verification Entry§
D.2.1 Detailed Entry Form§
Complete one entry for each verification, documented population, or approved sample as the test is performed.
| Field | Firm or project entry |
|---|---|
| Entry identifier | [UNIQUE ID AND LINK TO PROJECT CONTEXT] |
| Content or population | [ASSERTION, ITEM, OR DEFINED POPULATION] |
| Location | [SHEET, SECTION, PARAGRAPH, ITEM, OR COMMUNICATION] |
| Pass criterion | [PROPOSITION THAT CAN PASS OR FAIL] |
| Authority or evidence | [SOURCE, JURISDICTION IF APPLICABLE, EDITION OR VERSION, DATE, PINPOINT] |
| Method and evidence | [TEST PERFORMED AND DURABLE EVIDENCE REFERENCE] |
| Verifier | [IDENTITY, ROLE, RELEVANT QUALIFICATION] |
| Verification time | [DATE OR TIMESTAMP] |
| Disposition | [CONFIRMED, CORRECTED, REMOVED, ESCALATED, OR UNRESOLVED] |
| Correction and reverification | [ACTION, LINKED SUPERSEDING ENTRY, OR NOT APPLICABLE] |
| Approval and status | [APPROVER IF REQUIRED; OPEN, APPROVED, SUPERSEDED, OR CLOSED] |
| Exception or unresolved item | [LINK, RESPONSIBLE PERSON, RELEASE TREATMENT, OR NONE] |
D.2.2 Summary Log§
The summary log is an index to the detailed entries. It does not replace the fields or evidence above.
| ID | Item and location | Protocol | Source | Verifier and date | Disposition and status | Evidence or link |
|---|---|---|---|---|---|---|
| [ID] | [ITEM; LOCATION] | [C.#] | [SOURCE; PINPOINT] | [NAME; DATE] | [DISPOSITION; STATUS] | [ENTRY OR EVIDENCE LINK] |
| V-014 | Egress width; Sheet A-101 | C.2 | Adopted code and local amendments; controlled pinpoint | Project architect; 2026-09-04 | Corrected; superseded by V-014R1 | Controlled calculation and comparison |
| V-014R1 | Egress width; Sheet A-101 | C.2 | Same governing source; current issue | Project architect; 2026-09-04 | Confirmed; approved | Corrected drawing and reverification entry |
D.2.3 Worked Example§
This fictional example shows the level of specificity expected. It does not state the code requirement for any actual jurisdiction or project.
| Field | Firm or project entry |
|---|---|
| Context | Project 24-017; Permit Set v6; issue date 2026-09-04 |
| Classification | Gated code analysis; Appendix C.2 |
| Tool context | Firm-approved assistant; provider, model, version, and material configuration recorded in the project context and tool register |
| Item and location | Required egress width shown on Sheet A-101 |
| Criterion | The stated width complies for the project's documented occupant load and egress component under the governing adopted code and local amendments |
| Authority | Adopted code edition and local amendments for the project jurisdiction; applicable section and table recorded in the controlled entry |
| Method and evidence | Recalculated the occupant load and required width; read the governing provision, definitions, exceptions, and dependent references; compared the result with the drawing dimension; retained controlled calculation and comparison |
| Initial result | Corrected. The first entry is preserved as V-014 and linked to the corrected drawing |
| Reverification | V-014R1 repeated the test against the same governing source after correction; disposition confirmed; project architect approved; no open exception |
D.3 Aggregation Sampling and Reverification§
Aggregate only a population sharing the same task type, pass criterion, authoritative source and version, verification method, required verifier qualification, and disposition. Identify the population and state whether review was complete or sampled. Sampling follows a documented, risk-based plan and does not bypass a unique material assertion affecting life safety, code compliance, building performance, contractual rights, or another professional determination. A failed sample expands review. Reverify when content, source or edition, material project facts, or a dependent instrument changes in a way that could affect the result; preserve and link the original and superseding entries.
D.4 The Production Test§
For a named instrument or material professional communication, the firm can retrieve the linked context and entries, including population or sample status, method, evidence, approvals, exceptions, corrections, and reverification, without reconstructing them from staff memory or file metadata. A need for reconstruction indicates that the system did not preserve the retrievable record required for conformance. It does not by itself establish the legal timing, admissibility, or weight of an underlying note.
D.5 Retention§
Classify the verification record as a distinct project-record category and apply the written schedule adopted under § A.7. The project context identifies the applicable schedule or rule and the controlled storage location. Legal holds override routine destruction. This Guide states no universal period, trigger, longest-period rule, or safe harbor.
D.6 What the Record Is Not§
The record is not an ordinary draft, client disclosure instrument, warranty, certification, or proof of perfection. A prompt history, model output, or provider activity log may support the record but does not establish that a qualified professional tested the content against governing authority. Protected material need not be duplicated when a controlled reference sufficiently identifies it. A record should preserve corrections, removals, escalations, and unresolved items, not confirmations alone.
Appendix E Pre-Sealing Checklist§
Complete this checklist before sealing an instrument that contains or relies on a gated machine-assisted contribution. Each answer is supported by the Appendix D record. If the record does not support an item, answer No. A No answer blocks release until the issue is resolved and the record is updated.
| Project and instrument | Revision and issue | Record location | Sealing architect |
|---|---|---|---|
| [PROJECT; INSTRUMENT] | [REVISION; DATE OR STATUS] | [SYSTEM; CONTEXT ID] | [NAME; JURISDICTION] |
| Control | Status | Record reference | Exception or disposition |
| Identification. Machine-assisted content or populations are identified from the record (§ 5.1). | [ ] Yes [ ] No [ ] N/A | [ENTRY OR EVIDENCE] | [NONE OR RESOLUTION] |
| Classification and boundaries. Each use was classified; no prohibited use or unreviewed sealed content remains (§ 2.7; App. B). | [ ] Yes [ ] No [ ] N/A | [CLASSIFICATION] | [NONE OR RESOLUTION] |
| Verification. Every material gated contribution was tested before reliance under the applicable protocol (§ 2.2; App. C). | [ ] Yes [ ] No [ ] N/A | [ENTRIES] | [NONE OR RESOLUTION] |
| Provenance. Each material assertion traces to its governing source and pinpoint (§ 2.3). | [ ] Yes [ ] No [ ] N/A | [ENTRIES] | [NONE OR RESOLUTION] |
| Responsible control. The sealing architect reviewed, integrated, and verified each material contribution and has the knowledge required by the jurisdiction (§§ 2.1, 6.2). | [ ] Yes [ ] No [ ] N/A | [REVIEW RECORD] | [NONE OR RESOLUTION] |
| Confidentiality. Protected data used an approved system and configuration; changes and incidents were addressed (§ 4.F; § A.8). | [ ] Yes [ ] No [ ] N/A | [TOOL REGISTER] | [NONE OR RESOLUTION] |
Release decision. I reviewed the items above and the linked record. [ ] Ready for sealing and issue [ ] Not ready. Sealing architect: ____________________ Date: __________ Unresolved items carried into the decision: [NONE OR IDENTIFY].
Appendix F Conformance and Communications§
This appendix supplies illustrative language for a firm to adapt in its own voice and under its own signature. It is not executable without fact-specific completion, documentary assessment, and appropriate legal and insurance review.
F.1 Use and Limits§
The Conformance Statement is the firm's self-attestation that, as of a stated assessment date and within a defined scope, limitations, and exceptions, its documented practice supports the statement. The firm shall state conformance only by Guide version and only after an assessment under § 7.5 supports the statement.
- The author maintains no registry of conforming firms and does not countersign, acknowledge, approve, audit, or certify a firm's statement.
- No mark, seal, logo, badge, or certificate accompanies conformance, and none may be represented as available from the author.
- A statement shall not represent that conformance warrants error-free work, satisfies the legal standard of care, or proves project-level implementation outside its evidence and scope.
- A firm shall not state conformance for an unidentified version, unsupported scope, or assessment date, and shall state known limitations, exceptions, and unresolved items accurately.
F.2 Assessment Evidence§
To document the review described in § 7.5, this appendix proposes a findings memorandum with an executive statement of scope and limitations, detailed findings, exceptions, and a corrective-action record. The memorandum should identify the Guide version and date; organizational and service scope; assessor and qualifications; independence and conflicts; privilege, confidentiality, recipients, and distribution; population and sampling method; evidence threshold; and known limitations.
The assessment examines the written methodology, actual recurring and embedded uses, classification, tool register, verification protocols as performed, record completeness and retrievability, retention and legal holds, and competence maintenance. Interviews may orient the work but do not replace documentary and project evidence. Significant gaps should be documented, assigned for correction, and followed up in accordance with § 7.5. The conformance statement should disclose limitations and unresolved items affecting its stated scope (§ 7.4).
F.3 Model Conformance Statement§
Statement of Conformance
[FIRM OR ENTITY], covering [OFFICES OR ORGANIZATIONAL SCOPE], states that it operates to [GUIDE TITLE], [VERSION], effective [GUIDE EFFECTIVE DATE], in producing instruments of service sealed by its licensed professionals.
[FIRM OR ENTITY] states that, within the assessed scope and exceptions, it maintains the elements that version specifies: a written methodology; classification of uses; applicable verification protocols; confidentiality governance and a tool register; competence maintenance; a two-layer contemporaneous record; and retention and legal-hold controls.
Assessment scope, basis, and exceptions. Assessed as of [ASSESSMENT DATE] for [SERVICES, PROJECT TYPES, OFFICES, SYSTEMS, AND TIME PERIOD], using [ASSESSMENT METHOD AND SAMPLE]. Assessor and qualifications: [IDENTIFY]. Independence and conflicts: [STATE]. Limitations, exceptions, and unresolved items: [NONE OR LIST].
This statement attests to the stated methodology and scope. It is not a warranty that any instrument of service is free of error and does not cover any project, service, system, or office outside the scope above.
[NAME], [LICENSE], [TITLE AND AUTHORITY TO SIGN]
For [FIRM OR ENTITY] Date signed [DATE] Next review or renewal [DATE]
F.4 Proposal Language§
Short form for a qualifications statement or cover letter:
[FIRM] states that, as of [ASSESSMENT DATE] and within [SCOPE, LIMITATIONS, AND EXCEPTIONS], its practice was assessed against [GUIDE TITLE], version [N] ([YEAR]). Our current Statement of Conformance is available on request.
Long form where a proposal requests the firm's quality-control procedure:
Machine assistance and verification. [FIRM] uses machine assistance in defined production tasks under a written methodology assessed against [GUIDE TITLE], version [N] ([YEAR]), within the scope and exceptions stated in our Conformance Statement. Material machine-assisted content that may enter sealed work, and material professional communications gated outside the sealed set, are verified before reliance by a qualified professional against the governing authority. Uses reserved by § 2.7 remain prohibited.
[FIRM] maintains contemporaneous project records under Part V and uses protected project information only through accounts, integrations, and configurations approved for the applicable data class. Retention follows [FIRM]'s written schedule and legal-hold process.
F.5 Renewal and Underwriting Language§
The responses below describe the Guide's methodology. Adapt them to the firm's actual practice, current policy, services, coverage, assessment scope, and known exceptions. They are addressed to no carrier and are not statements by the author.
Who reviews machine-assisted output
Material machine-assisted content within the gated tier is verified before reliance by a professional qualified for the subject under the applicable task protocol. Routine permitted uses are not represented as receiving the same protocol.
What documentation exists
[FIRM] maintains linked project and instrument context and contemporaneous verification entries under Part V, including the criterion, governing source and pinpoint, method and evidence, verifier and qualification, timestamp, disposition, approval or status, exceptions, corrections, and reverification. The applicable record can be retrieved without reconstruction and is retained under [RETENTION PERIOD OR SCHEDULE] and the firm's legal-hold process.
Whether use is disclosed
[FIRM] discloses machine assistance where the governing agreement, applicable law, or rule requires disclosure. [IF APPLICABLE: The firm additionally discloses in its professional-services agreements that machine assistance may be used in defined production tasks under a written verification methodology.]
Ask the firm's broker in writing how its policy treats AI, automated systems, and machine assistance embedded in ordinary production software.
Appendix G Glossary§
Terms defined at § 8.3 govern. This glossary collects those terms and operative terms introduced elsewhere for reference.
- Authoritative source. The primary document that governs an assertion: the code edition adopted by the authority having jurisdiction as locally amended; the current published standard; the manufacturer's current data; or the governing contract document. An AI's restatement is not a source (§§ 8.3, 2.2).
- Automation bias. The tendency to accept an automated aid's output in place of adequate independent evaluation, including changing a correct judgment to an incorrect one after receiving erroneous automated advice (§ 3.1).
- Confabulation. Confidently stated erroneous or false generated content. The Guide adopts this federal vocabulary from NIST AI 600-1 (§ 8.3).
- Conformance Statement. The firm's version-specific written self-attestation that a documented assessment supports the statement for its identified scope, date, limitations, and exceptions. It is not author certification or a warranty (§ 7.4; App. F).
- Contemporaneous record. A record made at or near the time of the verification it documents as part of the firm's regular project workflow (§ 5.2).
- Data provenance. The origin and history of the information supporting an assertion. The record reconnects each material machine-assisted assertion to governing authority (§§ 8.3, 2.3).
- Destination. The place where machine-assisted output will go or be relied upon. A sealed instrument is the primary classification gate; a narrower gate applies to material professional communications outside the sealed set (§ 4.G).
- Gated task. A task producing material output that may enter sealed work, or a material professional communication outside the sealed set within the consequence categories in § 4.G. It requires the applicable verification and Part V record.
- Human-AI configuration. The arrangement in which people interact with and review a machine-assisted system. The Guide adopts this federal vocabulary from NIST AI 600-1 (§ 8.3).
- Inapplicable authority. A real source that does not govern the matter because it comes from the wrong jurisdiction, edition, date, or factual context. A source can be authentic and still be inapplicable (§§ 2.4, 4.A).
- Instrument of service. As defined in the governing agreement; presumptively, the drawings, specifications, and other documents prepared by the architect for the project (§ 8.3).
- Machine assistance. The contribution of content, analysis, or disposition to professional work product by an AI system whose output is generated rather than retrieved or deterministically computed, whether the system stands alone or is embedded in ordinary production software. Deterministic computation is not machine assistance; deterministic propagation is governed by § 4.D alone (§ 8.3).
- Material and materiality. Capable, in context, of materially affecting life safety, code compliance, building performance, construction cost or time, contractual rights, or a professional determination. Materiality depends on consequence and intended use (§ 8.3).
- Permitted task. A task producing no material contribution to sealed work and no material professional communication outside the sealed set. The Guide's verification record is not required, although other professional, contractual, confidentiality, and quality-control duties remain (§ 4.G).
- Pinpoint. The section, article, table, page, or other specific location within an authority at which another person can repeat the verification (§ 5.3).
- Professional representation. A communication issued under the architect's authority that states or interprets a professional or contractual determination. Outside the sealed set, only a material professional representation is gated (§§ 8.3, 4.G).
- Prohibited task. A task or use that falls within a boundary in § 2.7 and is therefore closed to machine assistance under the Guide's classification (§§ 2.7, 4.G).
- The record. The contemporaneous documentation specified in Part V. It has two linked layers: project and instrument context recorded once, and an entry for each verification or documented verification population. Together the layers show what was tested, against what source, how, by whom, when, and with what disposition and status (§§ 8.3, 5.3).
- Responsible control and responsible charge. Related professional duties requiring the knowledge and authority to direct, evaluate, approve or reject, and take responsibility for the work. The governing definition and legal effect remain profession- and jurisdiction-specific (§§ 8.3, 2.1).
- Seal. A licensed individual's attestation of the professional responsibility required by the governing jurisdiction for the instrument being sealed (§§ 1.3, 6.2).
- Statute of repose. A jurisdiction-specific time limit that may bar a claim after a legislatively defined period and triggering event. Duration, trigger, scope, and interaction with other rules require jurisdiction-specific analysis (§ 5.4).
- Tool register. The firm's written record of each approved account, tenancy, or integration, including owner, approved uses and data classes, provider and material subprocessors, required configuration, accessible data scope, data handling and location terms, retention and provider-development terms, deletion and incident provisions, intellectual-property and output terms, reviewers, dates, and status (§§ 2.5, 4.F; § A.8.2).
- Verification. A test with a stated pass criterion, performed against an authoritative source, yielding a recorded result (§§ 8.3, 2.2).
- Verification complexity. The difficulty of independently confirming automated output. The Guide uses it as a risk factor, not as a threshold below which automation bias is absent (§ 3.1).