Business and regulation
Buying software, funding delivery and navigating governance, contracts and regulation.
- Blog posts
- 32
- Focused clusters
- 02
Focused clusters
Start with the cornerstone
- Software Agency Proposal Teardown: 12 Clauses That Change Price, Scope and OwnershipA clause-by-clause teardown of a fictional EUR 96k software proposal: acceptance, IP, changes, warranty, dependencies, hosting, licences, handover, termination, security, subcontractors and done, with a downloadable 24-point review rubric.
- EU AI Act Cost for a 5-Person StartupLine-item EUR 30 to 80k breakdown. Legal review, risk classification, technical documentation, conformity assessment, data governance, post-market monitoring.
Latest in this collection
Cyber Resilience Act Reporting: 24-Hour Playbook
Build the evidence pipeline, decision rights, and incident workflow needed when CRA reporting starts on 11 September 2026.
EU Product Liability for Software: Evidence Checklist
Build the release, test, incident, and update evidence chain needed for software placed on the EU market after 9 December 2026.
AI Bill of Materials: CycloneDX vs SPDX
Choose an AIBOM format, define model and dataset provenance, and generate signed inventory from the release pipeline.
LLM Pseudonymization Gateways: Does the Prompt Leave GDPR Scope?
Platforms in this category promise that pseudonymizing a prompt makes a hosted model safe to use. The 2025 CJEU ruling and the EDPB guidance say something narrower. Here is the evidence a buyer actually has to collect.
Semantica Review 2026: Can It Explain Every AI Agent Decision?
A buyer-focused review of Semantica for decision provenance, policy gates and regulated AI audit trails, including security limits and a two-week pilot scorecard.
Software Project Takeover: A 30-Day Provider Change Plan
Changing the team behind a live product is not a repository transfer. Use this 30-day plan to regain control, prove releases and recovery, and select a provider that can inherit before it rebuilds.
Complete article directory
- Cyber Resilience Act Reporting: 24-Hour Playbook
- EU Product Liability for Software: Evidence Checklist
- AI Bill of Materials: CycloneDX vs SPDX
- LLM Pseudonymization Gateways: Does the Prompt Leave GDPR Scope?
- Semantica Review 2026: Can It Explain Every AI Agent Decision?
- Software Project Takeover: A 30-Day Provider Change Plan
- AI Agent Contract Signing: eIDAS QES Integration Guide
- What "Dienstleister" Commits Your Vendor To
- Terafab: Who Controls the AI Stack From Silicon to Orbit?
- Can AI Create Viruses? What Stanford Actually Proved
- Stripe Billing and E-Invoicing 2027
- EU AI Act Article 50 Checklist for SaaS and AI Agents
- Software Agencies in Tyrol Compared 2026
- AI Agent SLA Template: Accuracy, Latency, Human Handoff and Auditability
- EU AI Vendor Security Questionnaire: 45 Questions Before You Sign
- DACH AI Adoption Benchmark 2026: What SMEs Put Into Production
- Software Agency Proposal Teardown: 12 Clauses That Change Price, Scope and Ownership
- AI Consulting in Austria 2026: An Honest Guide for SMEs
- EU Data Residency for AI APIs in 2026: Provider Guide
- AI Funding in Austria 2026: aws, FFG, Premium, KMU.DIGITAL
- The One-Page AI Policy for a DACH Company
- MVP Development for Startups in Austria: Agencies, Cost and Selection 2026
- When Not to Hire Wavect
- Can a Software Studio Claim Austria's Forschungsprämie?
- How Austrian Startup Funding Actually Stacks
- EU AI Act Cost for a 5-Person Startup
- Werkvertrag vs T&M for Austrian SaaS
- Scope-Creep Rates. Our Numbers
- MiCA + FMA Reality Austria 2026
- GDPR + EU AI Act for DACH SaaS
- Why People think Agencies suck
- Pricing Software Projects the Right Way