ServiceNow Third-Party Model Defaults for Otto / Now Assist: A UK Control Tower Playbook
From 9 Jul 2026, OOTB Now Assist / Otto skills switch to third-party model defaults with each store app update. UK estates need an AI Control Tower allowed-provider gate, CAB dual-run evidence and a Now LLM retirement plan — before Assists look fine and skills are blocked.

From 9 Jul 2026, OOTB Now Assist / Otto skills switch to third-party model defaults with each store app update. UK estates need an AI Control Tower allowed-provider gate, CAB dual-run evidence and a Now LLM retirement plan — before Assists look fine and skills are blocked.
- From 9 Jul 2026, OOTB Now Assist / Otto skills and agents switch to third-party defaults when you apply each product's store app update — staggered, not one cutover.
- Azure OpenAI, AWS Claude and Google Gemini were already supported; what is new is OOTB defaults moving automatically.
- Explicit instance, skill, skill-group and agent provider configs are preserved by the July updates.
- Before store updates: review allowed providers in AI Control Tower (Configurations > Controls > AI Model Providers); restricted provider + new default + no fallback = blocked skill.
- After updates: verify via Impact Summary and Now Assist Admin Console Manage Model Providers.
- Assists/billing and platform data protections stay the same; no separate Azure/AWS/Google contracts needed via the ServiceNow AI Platform.
- Now LLM commercial retirement is a separate later timeline (commonly cited Dec 2026) — start custom skill clone/retest now; air-gapped/self-hosted/sovereign estates are not in this transition yet.
Third-party defaults are a store-app gate — not a platform surprise
From 9 July 2026, ServiceNow began rolling out third-party model providers as the default for out-of-the-box (OOTB) Now Assist skills and AI agents. The change is not a single-night cutover. It is tied to each product's store app release schedule: when you apply that product's update, OOTB skills and agents whose default provider you never changed switch to a ServiceNow-validated third-party provider.
For UK platform owners, AI Stewards, CAB chairs and DPOs, this is a control-tower and change-window moment. Azure OpenAI, AWS Claude and Google Gemini were already supported on the ServiceNow AI Platform. What is new is that OOTB defaults move automatically with store updates unless you already set an explicit instance-, skill-, skill-group- or agent-level provider.
Otto is the renaming path for Now Assist experiences. In this playbook we say Otto / Now Assist where the product UI still shows either label — treat them as the same governance surface for model providers, Assists and Control Tower policy.
Enterprise automation and AI control
What ServiceNow is changing — and what it is not
| Topic | Fact (use this in CAB packs) |
|---|---|
| Start date | Rollout began 9 Jul 2026 with store app updates |
| Scope | OOTB Now Assist / Otto skills and AI agents still on the unchanged OOTB default |
| Cadence | Staggered by product — not one simultaneous cutover |
| Providers | Azure OpenAI, AWS Claude, Google Gemini (already supported; defaults now switch) |
| Preserved | Explicit instance / skill / skill-group / agent provider configs |
| Assists / billing | Unchanged — new defaults consume Assists at the same rate |
| Contracts | No separate Azure / AWS / Google contracts required to use these providers via the ServiceNow AI Platform |
| Governance | Data protections and AI Control Tower policy apply across providers |
ServiceNow's rationale is continuous improvement: frontier models improve reasoning and task completion quickly, and product teams validate OOTB skills against the assigned provider before it becomes the default. That is useful for UK estates — if, and only if, your allowed-provider policy and DPIA language already cover the destination.
Two timelines you must keep separate
Timeline A — OOTB default switch (from 9 Jul 2026)
When you take a product's store app update, skills/agents still on OOTB Now LLM defaults move to the validated third-party default for that skill. Check assignments after update in:
- AI Control Tower → Configurations → Controls → AI Model Providers (Impact Summary)
- Now Assist Admin Console → Settings → Manage AI Models → Manage Model Providers
Timeline B — Now LLM Service commercial retirement (later)
Now LLM Service general-purpose models for commercial deployments are on a separate deprecation/retirement path. Community guidance commonly cites a December 2026 retirement target for commercial Now LLM use — always confirm the live model status table in the Now Assist Model Lifecycle KB before you brief the board.
Critical nuance for CAB:
- Explicit Now LLM configs are not overwritten by the July 2026 store updates.
- The forcing function arrives when Now LLM models are retired.
- Custom skills built on Now LLM need clone → retest → evaluate on a third-party provider before retirement, not after the notification.
UK pre-update gate (do this before every store app)
1. Allowed providers in AI Control Tower
By default all providers may be available. Many UK regulated estates have restricted the list.
Failure mode: you restrict AWS Claude (or Gemini / Azure OpenAI); a store update assigns that provider as the new OOTB default; fallback is disabled → the skill/agent is blocked by your own policy.
Gate:
- Open AI Control Tower → Configurations → Controls → AI Model Providers.
- Export or screenshot the allowed set and owners.
- Review Impact Summary for skills/agents that would be affected before promoting the store app.
- Decide: expand allowed providers or set an explicit allowed provider on the skill/agent.
2. Configuration scenario matrix
| Your state | What the store update does | UK action |
|---|---|---|
| Instance-level provider set | Preserved — OOTB defaults already covered | Confirm allowed list; if instance = Now LLM, start third-party approval now |
| Some skills/agents explicit; rest OOTB | Explicit preserved; remaining OOTB switch | Diff Impact Summary; allow or override new defaults |
| All OOTB (no explicit provider) | All switch with each product's store update | Sub-prod first; verify every new default is allowed |
| Explicit Now LLM on skills/agents | Preserved by Jul updates | Migration plan to approved third-party before retirement |
| Custom skills on Now LLM | Preserved by Jul updates | Clone prompts; evaluate on third-party; publish before retirement |
3. Sub-production order of operations
- Apply the store app update in sub-production only.
- Open Impact Summary + Manage Model Providers; record old vs new provider per skill/agent.
- Run dual evaluation on top business-critical OOTB skills (ITSM summarisation, catalog, HR/CSM if licensed).
- Update CAB / AI change pack with provider deltas and residual risk.
- Promote to production in a controlled window — per product, matching the staggered schedule.
GDPR, DPIA and UK ops language
Third-party defaults do not invent a new data path you never discussed — but boards and DPOs will ask. Keep the evidence pack boring and complete:
| Control | What to document |
|---|---|
| Lawful basis / purpose | Same Now Assist / Otto use cases; note provider change as processing-subprocess detail |
| DPIA delta | Provider identity (Azure OpenAI / AWS Claude / Google Gemini); ServiceNow-managed integration; Assists unchanged |
| Transfer / residency | Align with your existing ServiceNow AI Platform DPIA — do not invent bilateral Azure/AWS/Google contracts if you consume via SN |
| Retention / logging | Prompt/response logging policies in Control Tower and SIEM remain in force |
| Human oversight | CAB acceptance of dual-run evidence for high-impact skills |
| Vendor register | ServiceNow remains the contracting party for platform-integrated providers; update the AI inventory row |
If your DPO previously approved "Now LLM only", treat the default switch as a material control change even when Assists and OOTB workflows stay the same.
Custom skills — the quiet retirement risk
July store updates do not rewrite custom skill providers. Waiting until Now LLM retirement to retune prompts is how UK programmes create December fire drills.
Playbook for developers / AI Stewards:
- Inventory custom skills in Now Assist Skill Kit still on Now LLM.
- For each: clone the prompt; point the clone at an approved third-party provider.
- Run human + automated evaluations; capture regression notes (tone, grounding, PII redaction behaviour).
- Publish the validated replacement before the retirement target in the model status table.
- Keep the old skill in a named rollback set until dual-run confidence is signed off.
Prompt tuning across providers takes calendar time. Work backwards from the retirement target, not forwards from the first warning email.
Air-gapped, self-hosted and regulated-sovereign estates
This transition describes commercial deployments with connectivity to ServiceNow-integrated third-party providers. It does not apply yet if you are:
- Air-gapped / isolated (no third-party provider connectivity)
- Self-hosted / on-prem where third-party access is not in the deployment model
- Regulated or sovereign markets where residency limits third-party availability
Those estates continue on Now LLM Service for now. ServiceNow has stated an open-weights hosted model package is in development for these deployment types, with availability and migration guidance to follow. Isolated Markets / Self-Hosted customers should stay close to their account team — do not force a commercial third-party default playbook onto an estate that cannot reach those endpoints.
CAB checklist (print this)
- Allowed providers reviewed in AI Control Tower before any Now Assist / Otto store app.
- Impact Summary owned by named AI Steward + platform owner.
- Explicit configs inventoried (instance / skill / agent) — especially Now LLM holdouts.
- Sub-prod dual-run evidence attached for top 5 business skills.
- DPIA / AI inventory updated for provider defaults (Assists unchanged noted).
- Custom Now LLM skills on a dated migration plan toward Dec 2026 commercial retirement window (confirm KB dates).
- Air-gapped / sovereign path confirmed out of scope or escalated to account team.
- Production promotion scheduled per product, not as a mega-release.
Risks if you skip the gate
| Risk | Symptom | Mitigation |
|---|---|---|
| Restricted provider + new default | Skill blocked after store update | Pre-check allowed list + Impact Summary |
| Assumed single cutover | Some products switched, others not — inconsistent UX | Track store apps per product |
| Now LLM explicit configs ignored | December retirement scramble | Migration programme now |
| Custom prompt regressions | Quality drop after forced move | Clone/evaluate early |
| DPIA lag | Audit finding on "unapproved model vendor" | Update inventory with SN-managed provider language |
| Otto / Now Assist naming confusion | Wrong console used for verification | Document both UI paths in the runbook |
Closing
Third-party defaults for OOTB Otto / Now Assist skills are a store-app and Control Tower programme, not a surprise model rewrite. Explicit configs stay; Assists and platform data protections stay; air-gapped and sovereign paths stay on a different track. What changes for UK production is the discipline of allowed providers, Impact Summary review, dual-run evidence and a Now LLM retirement plan that starts before the calendar forces it.
If you want a structured AI Control Tower / model-provider readiness pass against your UK ServiceNow estate — including CAB language and custom-skill migration sequencing — AIATS offers a Free Evaluation: practical, UK-enterprise, no theatre.
Questions for the AI Steward / CAB agenda
- Which providers are allowed today, and who can change that list?
- Which store apps in the next 30 days carry Now Assist / Otto model-default changes?
- How many skills/agents still sit on explicit Now LLM?
- What is our dual-run standard before promoting a provider switch?
- Is the DPIA / AI inventory updated for Azure OpenAI, AWS Claude and Google Gemini via ServiceNow?
- Are air-gapped or sovereign instances correctly excluded from this playbook?
- Who owns the custom-skill clone/evaluate backlog before Now LLM commercial retirement?
Third-party OOTB defaults are a store-app and Control Tower programme. Explicit configs stay; restricted providers plus new defaults will block skills if fallback is off — review Impact Summary before every Now Assist / Otto update.
