Cluster

AI governance and regulation

Security, policy, compliance and operating controls for responsible AI adoption.

Blog posts
18
Topic
Business and regulation

Start with the cornerstone

Latest in this collection

CRA incident timeline with 24-hour, 72-hour, and final-report checkpoints Business & Regulation

Cyber Resilience Act Reporting: 24-Hour Playbook

Build the evidence pipeline, decision rights, and incident workflow needed when CRA reporting starts on 11 September 2026.

Software evidence chain linking requirements, tests, releases, incidents, and updates Business & Regulation

EU Product Liability for Software: Evidence Checklist

Build the release, test, incident, and update evidence chain needed for software placed on the EU market after 9 December 2026.

AI bill of materials comparing CycloneDX and SPDX for models, datasets, and software Business & Regulation

AI Bill of Materials: CycloneDX vs SPDX

Choose an AIBOM format, define model and dataset provenance, and generate signed inventory from the release pipeline.

A prompt passing through a pseudonymization layer, with the re-identification key staying on the controller side Business & Regulation

LLM Pseudonymization Gateways: Does the Prompt Leave GDPR Scope?

Platforms in this category promise that pseudonymizing a prompt makes a hosted model safe to use. The 2025 CJEU ruling and the EDPB guidance say something narrower. Here is the evidence a buyer actually has to collect.

Semantica decision provenance graph connecting evidence, policy gates and an AI agent outcome Business & Regulation

Semantica Review 2026: Can It Explain Every AI Agent Decision?

A buyer-focused review of Semantica for decision provenance, policy gates and regulated AI audit trails, including security limits and a two-week pilot scorecard.

AI agent signing workflow with policy gate, human QES approval, trust provider and verification archive Business & Regulation

AI Agent Contract Signing: eIDAS QES Integration Guide

A developer and buyer guide to binding AI-generated contracts to human approval, remote QES, ID Austria or EUDI Wallet flows, validation and audit evidence.

Complete article directory

  1. Cyber Resilience Act Reporting: 24-Hour Playbook
  2. EU Product Liability for Software: Evidence Checklist
  3. AI Bill of Materials: CycloneDX vs SPDX
  4. LLM Pseudonymization Gateways: Does the Prompt Leave GDPR Scope?
  5. Semantica Review 2026: Can It Explain Every AI Agent Decision?
  6. AI Agent Contract Signing: eIDAS QES Integration Guide
  7. Terafab: Who Controls the AI Stack From Silicon to Orbit?
  8. Can AI Create Viruses? What Stanford Actually Proved
  9. Stripe Billing and E-Invoicing 2027
  10. EU AI Act Article 50 Checklist for SaaS and AI Agents
  11. AI Agent SLA Template: Accuracy, Latency, Human Handoff and Auditability
  12. EU AI Vendor Security Questionnaire: 45 Questions Before You Sign
  13. DACH AI Adoption Benchmark 2026: What SMEs Put Into Production
  14. EU Data Residency for AI APIs in 2026: Provider Guide
  15. The One-Page AI Policy for a DACH Company
  16. EU AI Act Cost for a 5-Person Startup
  17. MiCA + FMA Reality Austria 2026
  18. GDPR + EU AI Act for DACH SaaS