Appropriate Non-Use & Managed Use
Why It Matters
The constraint is human review capacity, not AI capability. Opsera data shows regulated industries appropriately calibrate: insurance (50% acceptance), banking (55%), healthcare (60%) vs. startups (75%). High-stakes code requires calibrated processes—extra review time, expertise matching—not blanket prohibitions.
Assessment Questions (7)
○ Q1 single choice 5 pts
Are there specific types of code where you deliberately avoid or limit Copilot use?
Note: Updated for 2025: 'Managed use with specialized tools' scores higher than blanket avoidance
○ Q2 multi select 8 pts
How does your team handle code review for high-stakes changes?
Note: Process over prohibition: the bottleneck is human review capacity, not AI capability. An auth expert can use AI for auth code—with appropriate review depth.
○ Q3 single choice 5 pts
If you work in healthcare or with PHI: Are you aware of the HIPAA implications?
Note: The compliance concern is PHI in prompts, not code that handles PHI. GitHub doesn't sign BAAs for Copilot, so actual patient data in prompts creates exposure.
○ Q4 single choice 5 pts
Do you work in a regulated industry, and if so, how mature is your AI compliance?
Note: Combines industry classification with policy maturity. Regulated industries (SOX, FedRAMP, HIPAA, EU AI Act, etc.) face heightened AI compliance requirements. EU AI Act enforcement begins 2025.
○ Q5 single choice 5 pts
Do you work on safety-critical systems where AI code errors could cause physical harm?
Note: Safety-critical systems (automotive, medical devices, aviation) require highest verification or AI prohibition.
○ Q6 single choice 4 pts
How well do you understand Copilot's limitations for your specific tech stack and work?
○ Q7 multi select 6 pts
How do you ensure your coding skills don't atrophy from AI reliance?
Note: Addy Osmani identifies skill atrophy as a real risk—but one that's preventable with deliberate practice.
Practice Conversations (1)
Learn through simulated conversations that demonstrate key concepts.