Skovos guide

AI agent registry for hospitals: what it must contain, with a template

What is an AI agent registry?

An AI agent registry is the hospital's system of record for every AI agent it runs: who each agent is, who owns it, what it is allowed to do, and what state it is in. It differs from a general AI inventory because agents take actions, so the registry must record permissions and a stop status, not just a description. Every other control, from permission checks to audit and recall, reads from the registry.

Why hospitals need one now

Most AI in a health system did not arrive through an AI purchase. It came in through EHR updates, departmental tools, in-house builds and individual model API keys. In a CHIME Foundation and Censinet survey of 51 healthcare organizations, about half found AI through informal ad hoc discovery and about half relied on vendor release notes to track it.

Accreditors now look for this list. The Joint Commission's Responsible Use of AI in Healthcare certification, launched in June 2026, covers governance and monitoring, and surveyors at the first certified system checked its AI inventory. OCR's Section 1557 rule also requires covered providers to identify patient care decision support tools that use protected traits. Neither is possible without a current registry.

What a registry must contain

A useful registry answers five questions for each agent: Who is it? What may it touch? What did it do? Can we prove it? Can we stop it? The fields below cover those questions.

Identity

Accountability

Purpose and risk

Permissions

Status and lifecycle

Evidence

The template

Copy this table into your registry tool, or use it to check the one you have.

FieldExampleRequired
Agent IDAGT-0042Yes
Name and versionPrior Auth Agent v2.3Yes
Vendor or builderInternal, Revenue Cycle AnalyticsYes
Model and hostModel name, hosted by providerYes
Accountable ownerNamed director, Revenue CycleYes
SponsorVP Revenue CycleYes
Who may stop itOwner, AI governance lead, on-call informaticsYes
PurposeDrafts and submits prior authorization requestsYes
CategoryRevenue cycleYes
Risk tierTier 1 (submits to payers)Yes
Uses protected traitsNoYes
Scopesread:chart, draft:prior_auth, submit:payer_portalYes
Data classesPHIYes
Human review required forSubmissions over a set dollar amountIf tier 1
StatusProductionYes
Approval recordAI committee, 2026-08-14, with conditionsYes
BAA coverageSigned, covers model providerYes
Last attested / next due2026-09-01 / 2026-12-01Yes
Audit trailHash-chained, hospital-ownedYes
MonitoringDenial rate, override rate, weekly reviewYes
Fallback workflowManual submission by PA teamYes

Every empty field is a governance finding. Rank the gaps by risk tier and close tier 1 first.

Why a spreadsheet is not enough

A spreadsheet is a fine place to start and a poor place to stay. It goes stale as soon as a vendor ships an update, it cannot enforce the permissions it lists, and it cannot stop an agent. The registry becomes a control only when the permission check reads from it, so an agent listed as read-only is actually denied when it tries to write, and a recall in the registry stops the agent everywhere.

How Skovos implements the registry

In Skovos, registering an agent gives it an identity, an accountable owner, a role and scoped permissions written as action and resource pairs. Every action the agent attempts is checked against those scopes and the decision is written to a hash-chained audit trail the hospital owns. Recalling an agent in the registry stops it immediately, and signed evidence of the registry and its controls can be exported for auditors. Governance staff can also list agents, check a permission or run a recall from Claude or ChatGPT through the Skovos connector. Skovos governs agents that are connected to it, so discovery of unconnected AI is still part of the work.

Frequently asked questions

What is the difference between an AI inventory and an AI agent registry?

An inventory lists AI systems and describes them. A registry of agents also holds each agent's permissions and status, so it can drive permission checks and recall.

What is the minimum a hospital AI registry should include?

An ID, a named owner, purpose, risk tier, permissions, data classes, status, approval record and who may stop the agent.

Does Joint Commission require an AI inventory?

Joint Commission's Responsible Use of AI in Healthcare certification is voluntary. Surveyors at the first certified system reviewed its AI inventory, so a current registry is strong preparation.

How often should a registry be updated?

Continuously for status and permissions, and through owner attestation at least quarterly for tier 1 agents.

Who should own the AI agent registry?

Usually the AI governance lead under the CIO, with clinical informatics, quality and compliance contributing and each agent owner keeping their entry current.

Related reading

Sources

See Skovos in action. Registry, permission checks, audit trail and a stop control your hospital owns. Talk to us or read Can we stop it?