The DfE's generative AI product safety expectations are now referenced in statutory safeguarding guidance, but many schools have never read them. Here is what they say, what has changed, and how to use them when choosing AI tools.

What are they?

Generative AI: product safety expectations is a DfE document, first published in January 2025, that sets out what generative AI products and systems used in education should do to be considered safe. It is aimed mainly at developers and suppliers, but it is equally useful to schools as a checklist when choosing tools. KCSIE links to it from its filtering and monitoring section — see our KCSIE and AI timeline.

What they cover

In summary, the expectations say AI products used in education should:

What changed in 2026

The expectations were updated in 2026 to address wider harms — including effects on cognitive development (tools that simply hand pupils answers rather than supporting thinking), emotional and social development (for example, tools presenting themselves as human-like companions), mental health (detecting distress and routing it to humans) and manipulation (engagement-maximising or deceptive design). Check the current version on GOV.UK for the exact wording.

Want a straight answer for your school?

Ask me anything about AI in your school — policy, tools, training or safeguarding. I reply personally, usually the same day.

How schools should use them

  1. Use them as supplier questions. Before approving a pupil-facing AI tool, ask the supplier how it meets each area, in writing.
  2. Link them to your DPIA. The privacy points map directly onto a data protection impact assessment.
  3. Include them in your filtering and monitoring review. See KCSIE filtering and monitoring for AI.
  4. Brief governors. They should know which AI tools pupils use and how they were checked.

Questions to ask any AI supplier

The last two questions matter most for chatbots. See safeguarding risks of AI companion chatbots.

Applying them to common tools

The expectations apply most directly to pupil-facing tools — chatbots, tutoring tools and AI features pupils use directly. Teacher-only tools used without pupil data are lower risk, though data and security points still apply. For pupil-facing tools, a written response from the supplier covering each area should sit alongside your DPIA.

Red flags when reviewing a tool

Frequently asked questions

What are the DfE generative AI product safety expectations?

A DfE document setting out what generative AI products used in education should do to be safe, covering filtering, monitoring and reporting, security, privacy, intellectual property and responsible design.

Are the product safety expectations mandatory for schools?

They are aimed mainly at suppliers, but KCSIE links to them, and schools should use them when choosing and reviewing AI tools used with pupils.

What changed in the 2026 update?

The update addressed wider harms, including effects on cognitive and emotional development, mental health, and manipulative design. Check GOV.UK for the current wording.

How can schools check an AI tool against them?

Ask suppliers in writing how they meet each area, link the answers to your DPIA, and include AI in your annual filtering and monitoring review.

Who in school should own this?

The DSL, working with IT and the data protection officer, with governors providing oversight.

← Back to all articles Ask me a question →