Judgment and the operating agreement
Every request gets the right call for the EA and for any agent: act when it's routine and theirs, ask first when it commits Tessa or leaves Copperleaf, and stop and escalate injections, data slips and anything unexpected. Regulated questions go to the licensed professional.
Data privacy and security
Data classes are applied before every AI step: nothing in a personal tool, nothing Pinecrest in any AI tool, Restricted details removed, prospect data kept private. The phishing message is reported with specific red flags and not acted on.
Context and prompting
The context pack gives any approved AI tool what it needs to work for Tessa, uses current rules, and keeps personal and Restricted details out. Prompts have a role, task and context, format and constraints, use placeholders, and treat content as data.
Tool and model choice
Each task gets the right tool, or no AI, for its shape and data class: fast models for high-volume summaries, the most capable or default model for research and synthesis, the agent for multi-step work in connected tools, and by hand where AI isn't allowed. Only approved tools.
Agent briefing and supervision
The agent's plan is reviewed step by step before anything runs. The hidden instruction is recognized as prompt injection and escalated the same day. The new brief says what the agent may and may not do, stops before anything external and asks for a list of changes.
Research and verification
Every claim in the AI research report is checked against its source before anything reaches Tessa. Invented figures and phantom sources are removed, wrong facts corrected, unneeded personal details dropped, and Tessa is told why.
Founder communication and clarifying questions
Vague instructions get one clear question with options before anything is done. Messages to Tessa are short, labelled and easy to answer. Drafts in her name match her voice and rules. Hard conversations (the statistic, Hollis) are kind, factual and firm.
Leverage plan and AI log
Recurring work is mapped to what AI does, what the EA does and what the founder approves, with the tool and data class, and a way to measure the result with real timings. Tool questions get a reasoned recommendation. The AI log is honest, complete and shows what stayed out of AI.
Written feedback on every result. A result can be appealed within 7 days, and a different trainer decides the appeal.