Vannus Concierge Audit · Composite Example

Acme Operations — AI Stack Audit

A 75-employee B2B SaaS running 11 AI subscriptions at $32K annual spend. This document mirrors the format of a real Vannus Concierge audit deliverable.

Engagement type: Fixed-price, $7,500 Delivered in: 11 business days (within the 14-day commitment; see §9) Audit period: Composite, Q2 2026 Author: Vannus team — PRAXIS AI LLC
Contents
1. Executive summary 2. Stack inventory 3. Per-tool scorecards (sample) 4. Sovereignty & compliance map 5. Keep/Replace/Drop verdicts 6. Annualized savings table 7. Replacement shortlists 8. 30/60/90-day action plan 9. Caveats & assumptions
SECTION 01

Executive summary

Acme Operations is paying for 11 AI subscriptions across 6 functions (engineering, content, support, ops, sales, design). The team uses 4 of them daily. Three are paid for and not used at all. The remaining 4 see intermittent or duplicate-purpose usage. Total spend is $2,684/mo  ($32,208/yr).

This audit recommends dropping 3 subscriptions outright, replacing 2 with stronger Sovereign/Durable alternatives, and keeping 6 with a small consolidation pass. The projected annualized savings is $11,160 (a 34.7% reduction in AI line items) without any reduction in the team's actual AI capacity — in some cases, an increase.

The biggest single opportunity is the wrapper subscription pair: two thin GPT-wrapper SaaS products ($79/mo + $49/mo) the team is paying for but could replicate with their existing ChatGPT Enterprise seats. Eliminating both recovers $1,536/yr without losing any practical capability. The next-biggest opportunity is replacing a Fragile-tier transcription tool with a Durable alternative that has the same feature set, equivalent pricing, and substantially better compliance posture.

The team's Sovereign+Durable mix is currently 45% of subscriptions. After implementing this audit, that rises to 73% — meaning the post-audit stack has materially better sovereignty, compliance, and operational resilience than the pre-audit stack at lower cost.

SECTION 02

Stack inventory

The 11 AI subscriptions Acme Operations currently pays for, ranked by monthly cost:

Tool Function Tier Monthly Annual Usage
ChatGPT Enterprise (8 seats)GeneralSovereign$480$5,760Daily
GitHub Copilot Business (12 seats)CodeDurable$228$2,736Daily
Notion AI (workspace)ContentDurable$200$2,400Weekly
Claude Pro (4 seats)ReasoningSovereign$80$960Daily
Jasper AI (Marketing tier)ContentModerate$125$1,500Monthly
Otter.ai (Business)TranscriptionFragile$240$2,880Weekly
Copy.ai (Team)ContentWrapper$79$948Intermittent
ChatPDF Plus (4 seats)ResearchWrapper$49$588Intermittent
Synthesia (Creator)VideoModerate$89$1,068Quarterly
Beautiful.ai (Pro)SlidesModerate$24$288Monthly
Murf AI (Creator Pro)VoiceFragile$23$276Unused (6mo)

Total: $2,684/mo · $32,208/yr across 11 subscriptions. Usage frequency reflects the audit-period interview with the Acme Ops lead. "Unused (6mo)" tools are billable but show no activity logs.

SECTION 03

Per-tool scorecards (sample)

Each tool in the inventory gets a full 1-page scorecard in the real deliverable. Three samples follow — one from each of the three verdicts (Keep, Replace, Drop). The full audit ships 11 of these.

ChatGPT Enterprise

Function: general-purpose AI · 8 seats · $60/seat/mo · Daily usage
A Sovereign Keep
Data Sovereignty
9/10
Allied Infrastructure
10/10
Training Privacy
10/10
Conditional Privacy
9/10
Compliance
10/10
Operational Resilience
9/10
Exit Portability
8/10
Real-World Utility
10/10
Caution Flag
none
Verdict: Keep. Acme's anchor general-purpose AI subscription. Zero training on customer data (Enterprise tier contractual guarantee), SOC 2 Type II + ISO/IEC 42001, US-controlled infrastructure with allied data residency options. Daily usage by 8 seats is high-confidence ROI. The Copy.ai and ChatPDF subscriptions can be eliminated against this baseline because their capabilities are already inside ChatGPT Enterprise.

Otter.ai (Business)

Function: meeting transcription · team-wide · $30/mo per team + $20/seat · Weekly usage
C Fragile Replace
Data Sovereignty
5/10
Allied Infrastructure
7/10
Training Privacy
4/10
Conditional Privacy
6/10
Compliance
5/10
Operational Resilience
5/10
Exit Portability
3/10
Real-World Utility
8/10
Caution Flag
Training opt-out
Caution flag — Training privacy: Vannus's review of Otter.ai's publicly published terms at the time of this composite suggests the workspace-default training posture is opt-out rather than contractual zero-training. For a team that records customer calls or strategy sessions, this is the kind of structural exposure Vannus's methodology flags as below the Sovereign/Durable bar; vendors should verify current behavior at the time of their own evaluation.
Verdict: Replace. Otter delivers solid real-world utility but the sovereignty + training-privacy posture is below Acme's stated compliance bar. The Sovereign-tier alternative (Fireflies.ai Enterprise) costs approximately the same per-seat, offers contractually guaranteed zero-training, has stronger exit portability (CSV + JSON export of every transcript), and is an allied-jurisdiction vendor. See Section 7 for the full replacement shortlist.

Copy.ai (Team plan)

Function: marketing copy generation · team · $79/mo · Intermittent usage
D Wrapper Drop
Data Sovereignty
5/10
Allied Infrastructure
7/10
Training Privacy
5/10
Conditional Privacy
6/10
Compliance
5/10
Operational Resilience
4/10
Exit Portability
5/10
Real-World Utility
4/10
Caution Flag
Wrapper risk
Caution flag — Wrapper risk: Vannus's evaluation places Copy.ai in the Wrapper tier under our methodology — meaning the differentiated value beyond a well-prompted general-purpose LLM is, in our judgment, limited at this customer's profile. Acme already has ChatGPT Enterprise (8 seats), which on this team would absorb the same use cases at marginal cost. Vendor architectural details may evolve; this characterization reflects our methodology applied to publicly available information at the time of audit.
Verdict: Drop. In our methodology's view, Copy.ai's output for this profile is likely to overlap substantially with what Acme's existing ChatGPT Enterprise + Claude Pro seats already produce, at what we read as a weaker compliance posture and with limited exit portability of generated content. Our reading: no replacement appears needed — the capability is largely already inside the kept subscriptions. Recovers $948/yr immediately. (Opinion based on publicly available information at the time of audit; vendor offerings evolve.)

The full deliverable ships 11 of these scorecards — one per tool in the inventory, formatted for inline screenshot into Slack or attached to a procurement ticket.

SECTION 04

Sovereignty & compliance map

Where each tool is hosted, who owns the parent company, and which compliance regimes it currently satisfies. Surfaces exposure to US CLOUD Act, CFIUS, or jurisdictional concerns before they become procurement blockers.

Tool
Country / Hosting
Parent ownership
Compliance held
ChatGPT Enterprise
USA / multi-region
OpenAI Inc. (US-controlled)
SOC 2 Type II, ISO 42001, GDPR
GitHub Copilot Business
USA / Azure
Microsoft (US)
SOC 2 Type II, ISO 27001, FedRAMP
Notion AI
USA / multi-region
Notion Labs Inc. (US)
SOC 2 Type II, GDPR, HIPAA-eligible
Claude Pro
USA / multi-region
Anthropic PBC (US)
SOC 2 Type II, GDPR
Jasper AI
USA
Jasper AI Inc. (US)
SOC 2 Type II
Otter.ai (Business)
USA
AISense Inc. (US)
SOC 2 Type II; Vannus assessment notes training-privacy posture below Sovereign-tier bar at audit time
Copy.ai (Team)
USA
Copy.ai Inc. (US)
SOC 2 Type II (limited scope)
ChatPDF Plus
Germany / EU
ChatPDF (independent)
GDPR — SOC 2 not held
Synthesia
UK
Synthesia Ltd. (UK)
SOC 2 Type II, GDPR, ISO 27001
Beautiful.ai
USA
Beautiful.ai Inc. (US)
SOC 2 Type II
Murf AI
India / US-hosted
Murf Inc. (publicly listed HQ jurisdiction India, US operating presence)
SOC 2 status: per public disclosure at audit time; verify directly with vendor before committing

Observations: Acme's stack is heavily US-jurisdictional with allied-infrastructure exposure (Synthesia/UK is the only allied non-US vendor). No CFIUS-exposed vendors in the inventory. The two notable gaps: (1) Murf AI's SOC 2 is in-progress rather than active, and (2) Otter.ai's training-privacy posture sits below the rest of the stack. Both reinforce the Replace recommendations in Section 5.

SECTION 05

Keep / Replace / Drop verdicts

Each tool gets one of three verdicts with cited reasoning. Counts: 6 Keep, 2 Replace, 3 Drop.

Tool Verdict Reasoning (one line) Annual impact
ChatGPT EnterpriseKeepSovereign anchor; absorbs Copy.ai + ChatPDF use cases at marginal cost.
GitHub Copilot BusinessKeepDaily engineering use; strong sovereignty + compliance posture.
Notion AIKeepIntegrated into existing Notion workspace; Durable tier.
Claude ProKeepSovereign tier; complementary reasoning use case to ChatGPT.
Jasper AIKeepMonthly content sprints depend on its templates; cost-justified.
SynthesiaKeepQuarterly video output; Allied (UK) vendor; no comparable Sovereign alternative.
Otter.aiReplaceTraining-privacy gap; Sovereign alternative at equivalent cost.$0 (replaced)
Murf AIReplaceUnused 6+ months; SOC 2 in-progress; lower-tier alternatives available.$276 saved
Copy.aiDropWrapper over GPT-4; absorbed by existing ChatGPT Enterprise seats.$948 saved
ChatPDF PlusDropWrapper; PDF Q&A capability now native in ChatGPT + Claude.$588 saved
Beautiful.aiDropMonthly use only; Synthesia covers similar use cases.$288 saved
SECTION 06

Annualized savings table

Direct recovery from the Drop verdicts plus the cost-neutral Replace cases. Acme's transcription tool (Otter → Fireflies) is cost-neutral (~$240/mo either way); the net savings is from the 3 Drops + the Murf cancellation.

SourceAssumptionAnnual savings
Copy.ai (Drop)Full subscription cancellation; use cases absorbed by ChatGPT Enterprise$948
ChatPDF Plus (Drop)Full subscription cancellation; PDF Q&A absorbed by ChatGPT/Claude$588
Beautiful.ai (Drop)Full subscription cancellation; Synthesia absorbs use case$288
Murf AI (Replace → cancel)Unused 6+ months; no replacement needed at current usage$276
Jasper AI tier downgradeMove from Marketing tier ($125/mo) to Creator ($45/mo); same templates, fewer seats$960
Otter → Fireflies switchCost-neutral on price; sovereignty win, not a savings win$0
Estimated consolidation overhead recovery~5 hours/month ops time saved managing fewer subscriptions; valued at $50/hr fully-loaded$3,000
Procurement leverage on remaining stackAnnual renewal on consolidated stack: negotiate ~15% off list (typical mid-market leverage)$5,100
Total annualized savings (directional)$11,160

Assumptions are itemized so the buyer can stress-test each line. The directional total represents what a typical 75-employee SaaS would realize from this audit in the first 12 months. Real outcomes depend on which recommendations are implemented and external factors (vendor pricing changes, organizational adoption) outside the audit's control.

SECTION 07

Replacement shortlists

For every tool with a Replace verdict, the audit ships 2–3 vendor-neutral alternatives scored on the same 9 dimensions so the buyer can compare apples-to-apples. Migration-effort notes included.

Replacing: Otter.ai (Business)

Function: meeting transcription · need: zero-training contractual guarantee + allied-jurisdiction posture
Fireflies.ai Enterprise Sovereign
Contractual zero-training guarantee. CSV + JSON export per transcript. SOC 2 Type II + GDPR. Migration effort: 1–2 days (CSV export from Otter → import to Fireflies).
~$240/mo · team
Read.ai (Enterprise) Durable
Strong privacy controls, integrates with existing calendar + Zoom. Migration effort: 2–3 days (training the meeting bot, configuring recording rules).
~$295/mo · team
Granola (Business) Durable
Newer tool; no bots in meetings (records via Mac audio); training-privacy gap closed. Lower team-management features than the first two. Migration effort: minimal — ad-hoc adoption.
~$180/mo · team

Real audits include a recommendation rank with cited reasoning. For Acme's profile (75 employees, weekly transcription use, compliance-sensitive sales calls), the audit recommends Fireflies.ai Enterprise as the primary candidate.

SECTION 08

30 / 60 / 90-day action plan

The recommendations sequenced into an executable plan. Each step has an owner placeholder, estimated time investment, and dollar impact.

Days 1–30 · Cancellations

1. Cancel Copy.ai, ChatPDF Plus, Beautiful.ai, and Murf AI subscriptions.

Four subscriptions ($79 + $49 + $24 + $23 = $175/mo) eliminated. No migration required — capabilities already exist in ChatGPT Enterprise + Claude Pro + Synthesia.

Owner: Head of Ops · Effort: ~2 hours total · Annual impact: $2,100
Days 1–30 · Tier downgrade

2. Downgrade Jasper from Marketing tier to Creator tier.

Acme's Jasper usage doesn't justify the Marketing tier's extra seats. Move to Creator on next renewal cycle.

Owner: Marketing lead · Effort: 30 minutes · Annual impact: $960
Days 31–60 · Migrations

3. Migrate transcription from Otter.ai → Fireflies.ai Enterprise.

Export Otter transcript history (CSV), provision Fireflies team workspace, retrain bot rules in calendar. Schedule migration during a low-meeting week.

Owner: Ops + Sales lead jointly · Effort: 1–2 days · Annual impact: $0 (cost-neutral; sovereignty win)
Days 31–60 · Process

4. Implement a quarterly AI subscription review.

Calendar a 30-minute review every 90 days: tool usage logs, monthly cost, who owns it. Catch sprawl before it accumulates again. The audit's full template ships with this deliverable.

Owner: Head of Ops · Effort: 30 min/quarter once set up · Annual impact: Prevents next year's drift
Days 61–90 · Negotiation

5. Renegotiate annual renewals on the kept stack.

Use the consolidated subscription footprint as leverage. Talking points doc included in audit deliverable.

Owner: Head of Ops (or whoever holds vendor relationships) · Effort: 4–6 hours across renewals · Annual impact: $5,100 (15% off list, typical mid-market leverage)
Days 61–90 · Strategic

6. Evaluate adding Cursor seats for the engineering team.

Not in scope of this audit but worth a future look: Cursor's AI-coding workflow could complement (or partially replace) GitHub Copilot for some workflows. Defer until you've absorbed steps 1–5.

Owner: Eng lead · Effort: 1 week pilot · Annual impact: Not modeled here
SECTION 09

Caveats & assumptions

This composite was built to show the shape of a real Vannus Concierge audit deliverable. A few notes on how to interpret it:

Want the bespoke version of this for your stack?

The Vannus Concierge audit produces this exact format — built around your stack, your usage, your spend. $7,500 fixed price, 14-day deliverable, 5 Pro+ seats included for 12 months. Pre-screened intake: we tell you on the call whether we believe we can find meaningful savings before any contract signs.