Accountability Decision Record
The framework tells you who should be accountable. This turns that into the artifact your organization keeps: a one-page record that names a single accountable party for each SRF layer of one specific deployment, captures the residual gaps, and carries a sign-off. Fill it in, resolve every "shared" to one name, and export. A reviewer can approve a deployment once they can see who owns each part.
All tools run in your browser. No data leaves your device. Names, vendors, and accepted-risk notes stay local and are never sent anywhere. Working in an air-gapped or locked-down environment? Download the offline template (DOCX) and fill it in with no browser at all.
This Decision Record applies the CoSAI AI Shared Responsibility Framework's core rule: exactly one accountable party per activity. The per-layer default split is derived from the framework's operating-model matrix; you assign the named owner. The record is a governance artifact, not legal advice, and does not transfer liability by itself. Verify named owners against your contracts and internal delegations of authority.