Loading…
Loading…
AI Policy Desk
Ready-to-use templates, risk checklists, and implementation guides built for small teams navigating EU AI Act, GDPR, and US state AI laws — with no dedicated compliance function.
Used by 1,200+ teams. Updated for EU AI Act, GDPR, and 12 US state laws. No account, no paywall.
What applies to my team?
Most downloaded
Start with these templates
Free tools
Interactive tools — get a clear answer in minutes, no consultant required.
4 questions · 2 min
Compliance Quiz
Which AI regulations apply to your team?
Take the quiz →
4 steps · 5 min
Policy Generator
Generate an AI acceptable use policy for your team.
Generate policy →
15 vendors · filterable
Vendor Scorecard
Compare AI vendors on privacy and compliance.
Compare vendors →
3 steps · 5 min
AI Risk Assessment
Rate your AI use cases Low / Medium / High / Critical.
Assess risk →
Explore
Regulations
28 coveredEU AI Act, GDPR, NIST AI RMF, Colorado AI Act, NY Local Law 144, and more — each explained for small teams.
Browse regulations →
Glossary
75 termsPlain-English definitions for AI governance terms: high-risk AI, GPAI models, conformity assessment, shadow AI, and more.
Browse glossary →
Start here
Pillar guides and templates — pick the one most relevant to your situation.
Latest
Templates, checklists, tool comparisons, and implementation guides for small teams adopting AI safely.
Texas TRAIGA carries civil penalties up to $200,000 per violation plus up to $40,000 per day for continuing violations. The safe harbor, an affirmative defense, is substantial NIST AI RMF compliance. This checklist covers what you need and how to use the 60-day cure period.
Latest posts
Companies operating across multiple US states and the EU face overlapping AI obligations from a dozen different laws. This guide shows how to build one governance program that satisfies all of them without running 12 parallel compliance tracks.
5 TypeScript modules for AI agent observability: trace context, token and cost metering, structured event logging, tool-call tracing, and OpenTelemetry export. Express and Next.js compatible, with the governance reasons each one matters.
Amazon KDP's AI disclosure requirement covers text, images, and translations, but the line between 'generated' and 'assisted' is not always obvious. This guide covers 12 content types and 8 edge cases, with the correct disclosure decision for each.
Anthropic published research on June 4, 2026 showing Claude now writes 80% of its own codebase, and called for the ability to pause frontier AI development. What recursive self-improvement means for human oversight policies and agentic AI governance.
Boards are now accountable for AI governance failures. SEC expects AI risk disclosure, and the EU AI Act requires governance at the highest level. This guide covers what quarterly AI reports to boards should contain and a copy-paste template.
OpenAI''s Dreaming V3 memory update stores persistent user profiles across ChatGPT sessions including business plan users. What teams using ChatGPT need to govern, disable, and disclose under GDPR and CCPA.
Newsletter
Stay current on AI compliance
Weekly digest of new templates, regulation updates, and deadline alerts. Free, unsubscribe anytime.
Subscribe free →No spam · No vendor ads · Unsubscribe anytime
Templates
Get the complete policy kit
Acceptable use policies, vendor evaluation checklists, risk assessments, and more — all in one place.
View template kits →