What's inside — the exact file
This is the complete template, not a sample. The rows are worked examples — replace them with your data (and delete them before any platform import).
Tools — Template Library · AI · Checklist
Fourteen pre-launch guardrails for any customer-facing AI agent — scope, escalation, safety, audit, and the kill switch.
This is the complete template, not a sample. The rows are worked examples — replace them with your data (and delete them before any platform import).
| guardrail | category | in_place | owner | notes |
|---|---|---|---|---|
| Written list of topics the agent handles | scope | no | Everything else escalates | |
| Explicit escalation triggers (refunds over X, legal, cancellation, anger) | scope | no | ||
| Agent discloses it is AI when asked | transparency | no | ||
| Human handoff preserves full conversation context | escalation | no | Nothing worse than repeating yourself to a human | |
| Handoff SLA defined (how fast a human appears) | escalation | no | ||
| Answers grounded in approved knowledge only | accuracy | no | No improvising policy | |
| Uncertainty behavior defined (say so + escalate) | accuracy | no | ||
| PII handling rules (what it may ask for and store) | safety | no | ||
| Prompt-injection resistance tested | safety | no | Try 'ignore your instructions' before launch | |
| Rate limits per user and per hour | safety | no | ||
| Every conversation logged and searchable | audit | no | ||
| Weekly review cadence with owner named | audit | no | ||
| Customer feedback loop (thumbs down routes to human) | audit | no | ||
| One-click disable documented and tested | safety | no | Know who flips the switch at 2am |
Deploying a customer-facing AI agent without guardrails isn't bold, it's negligent — and it's also unnecessary, because the guardrails are knowable in advance. This is the fourteen-point pre-launch checklist we run before any AI agent touches customers: scope boundaries, escalation paths, safety behaviors, audit logging, and the kill switch.
Every row is pre-filled with a specific guardrail across five categories. The in_place column makes launch a checklist decision — fourteen yeses, or documented reasons — instead of a hope. It applies to support AI agents (Zendesk AI agents, Claude-based agents) and any assistant acting on customer conversations.
| guardrail | The specific control — fourteen pre-filled. |
|---|---|
| category | scope / escalation / safety / audit / kill switch. |
| in_place | yes / no / partial — the launch-decision column. |
| owner | Who implemented it and re-verifies it. |
| notes | Implementation details, test dates, waivers. |
For customer-facing deployment, yes — the checklist is the floor, not the ceiling. Internal-facing agents can defensibly waive some rows (documented, in notes). The pattern to avoid is waiving by omission: every guardrail either exists or has a written reason it doesn't.
Yes — platform AI agents give you many of these controls as configuration (scope by help-center content, escalation rules, conversation logs), but configuration only counts as a guardrail once someone has deliberately set and tested it. The checklist is how you verify the platform's defaults match your intent.
One accountable owner for the sheet, with rows delegated — typically support ops for scope and escalation, IT/security for audit and kill switch. Committees own nothing; the owner column forces names. It's the same discipline as our go-live checklist, applied to AI.
This is a Market Disrupt worksheet, not a vendor file. Import-format templates follow each platform's documented layout as of July 2026 — platforms evolve, so validate against current documentation before a large import.
Related templates: AI Use-Case Prioritization Matrix · Zendesk Go-Live Checklist · Zendesk Bulk User Import · Browse all 31
Go deeper: ai agent guardrails · ai customer service agents guide · Try the Zendesk Plan Finder
We design, deploy, and guard-rail AI agents on Zendesk and Claude — scoped use cases, human review plans, and kill switches included.
Talk to our AI teamEnter your work email once — every download after this one, here or in the library, is instant. We'll occasionally send new templates worth having; unsubscribe anytime.