AI Implementation Lawyer

Hire a lawyer for AI implementation — before procurement asks the questions you can’t answer.

AI Use Addendum + DPA. Vendor contract review for OpenAI, Anthropic, Replicate, Perplexity. Training-data and CCPA audit. Flat-fee packages so you can ship AI features without enterprise customers blocking the deal at security review.

EU AI Act-aware CCPA + GDPR Vendor markup support Procurement-ready

AI legal packages

Pick the package that matches what your AI feature actually does. Most SaaS companies need #1 first.

AI Vendor Contract Review

$1,500 flat fee
5 business days

Before integrating OpenAI, Anthropic, Replicate, Perplexity, or any other AI vendor, get the contract reviewed for the clauses that hurt you.

  • Review of one major AI vendor agreement
  • Indemnification scope and IP risk analysis
  • Training-data carve-outs and customer data protections
  • Liability cap analysis and material-deal-killer flags
  • Recommended addendum language to push back with
  • Negotiation strategy memo
Order vendor review

AI Training-Data Audit

$2,500 flat fee
10 business days

For companies building or fine-tuning models. Review what your AI is being trained on and flag IP, privacy, and contractual exposure.

  • Training data source inventory and license review
  • Public-web scraping risk analysis
  • Customer-data usage audit (was it permitted?)
  • Open-source dataset license review (CC-BY, Apache, restrictive)
  • CCPA / GDPR / EU AI Act alignment
  • Written audit memo with prioritized remediation list
Order audit

Who this is for — and who it isn't

This is for you if:

  • B2B SaaS adding AI features (chat, summarization, generation)
  • Companies integrating OpenAI, Anthropic, or Perplexity into customer-facing products
  • Teams hitting "no AI / explain AI usage" questions in enterprise procurement
  • AI startups training or fine-tuning their own models
  • Vertical SaaS (healthcare, fintech, legal) where AI features have regulatory implications

This isn't for you if:

  • Pure consumer-facing AI apps (different liability and ToS regime)
  • Companies that need ongoing AI compliance (use the Fractional CLO Hub)
  • EU-AI-Act high-risk system designers (specialty firm work)
  • AI deepfake / generative content platforms (different liability frame)

My approach

AI legal work changes weekly. I keep up with the new guidance so you don’t have to.

Step 1

Send your stack

Existing customer agreement, current DPA if any, the AI vendor contract, and a one-paragraph description of what your AI feature does (input, output, retention).

Step 2

I draft and review

Within 5-10 business days I deliver the addendum, the vendor markup, or the training-data audit memo — depending on package.

Step 3

Roll out

You wire the addendum into your signup flow or send the markup back to the AI vendor. I support enterprise procurement questions for 30 days post-delivery at no extra cost.

Recent client results

"Microsoft procurement asked for our AI Use Addendum by name in security review. We had it. Deal closed."
— AI startup, $2,000 package enterprise deal closed
"Sergei flagged that our OpenAI agreement had a training-data clause that would have killed our enterprise pitch. We pushed back, OpenAI removed it."
— AI vendor review client
"Training-data audit caught two licensed datasets we were using outside the license terms. Saved us a future copyright suit."
— AI infrastructure startup remediated $50K+ in exposure

Why work with me

Sergei Tokmakov, Esq.

Sergei Tokmakov, Esq.

California State Bar #279869 · Licensed since 2011 · 1,800+ projects · 700+ five-star reviews

I have been a California-licensed business attorney since 2011 and have spent the last three years deep in AI legal work — both as outside counsel for SaaS companies and as the operator of an AI-driven legal-content platform (Terms.Law) that uses GPT and Claude in production.

I track the EU AI Act, CCPA AI rulemaking, NY State AI bills, and federal copyright/training-data developments week by week, so the addendums I deliver reflect what procurement teams are actually asking for right now.

Frequently asked questions

What’s the difference between the AI Use Addendum and a normal DPA?

A standard DPA covers data processing, subprocessors, security, and breach notification. The AI Use Addendum specifically addresses AI-feature behaviors: training data, output ownership, hallucination risk, human review, and the customer’s responsibility for AI-assisted outputs. Most enterprise procurement teams now require both.

Do I need this if I’m only using OpenAI on the back end?

Yes. The fact that your customer’s data hits OpenAI’s API is itself a procurement question. The addendum covers the subprocessor disclosure, the training-data opt-out (OpenAI does honor this for API customers but you have to flow it through), and the customer’s right to know what AI is doing with their data.

How does this interact with the EU AI Act?

The EU AI Act categorizes AI systems by risk. Most B2B SaaS AI features are minimal-risk or limited-risk and require disclosure obligations rather than registration. The addendum I draft satisfies those disclosure obligations and flags any high-risk classification that might apply.

Can I get just the vendor contract review without the addendum?

Yes. The vendor review is a standalone $1,500 engagement. Most companies hit the addendum question first because procurement asks for it before vendor integration even comes up.

What about California’s SB 1047 / pending AI bills?

California’s AI rulemaking is in flux. The addendum is built to be forward-compatible with the most likely outcomes (disclosure, training-data restrictions, audit rights). When a California bill passes, I update the template and offer existing clients a free re-issue.

My AI vendor sent me terms. Can you redline them?

Yes — that’s the AI Vendor Contract Review package, $1,500. Includes redline + negotiation strategy memo.

Related resources I've written

Ship AI features without procurement blocking the deal.

AI Use Addendum + DPA $2,000. Vendor review $1,500. Training-data audit $2,500. Pick the one that matches what you’re actually shipping.