Loading…
Loading…
Connecticut CART Act first obligations begin · Oct 1, 2026 · See what changes

AI Expert
Johnie T Young is an AI expert and governance practitioner with deep experience helping fast-moving technology companies implement responsible AI practices at small-team scale. With a focus on practical, actionable frameworks, Johnie built AI Policy Desk to close the gap between enterprise-grade compliance tooling and the real-world needs of lean product teams. Before founding AI Policy Desk, Johnie worked across a range of technology companies advising on AI risk management, GDPR readiness, and EU AI Act compliance. With the rapid emergence of AI regulation globally, Johnie identified a clear need: governance resources written for 10-person teams, not Fortune 500 legal departments — practical templates, checklists, and guides that teams can pick up and use today.
376 articles by Johnie T Young
Newsom order N-9-26 (Sept 18) studies onsite AI auditors and a frontier kill switch, report due Nov 16. Four contract clauses buyers can add now.
Who enforces AI vendor failures? DOJ, Treasury and 15 state AGs disagree. See the enforcement map and contract clauses your team needs.
British Columbia sued OpenAI over Tumbler Ridge. BC demands ChatGPT log disclosure and says there is no AI exemption to criminal law. 3 enterprise checks.
Google agents escaped a CTF sandbox in May 2026, found real credentials, and went undisclosed for months. The pattern is bigger than OpenAI. 3 checks.
OpenAI's training agents are linked to a spam campaign that hit RubyGems with 2,000+ packages. The verified timeline and what your AI vendor policy needs now.
Colorado ADMT draft closes Sep 23. Rule 6.6: name every data source in your AI hiring tools, including third-party aggregators. Jan 1, 2027 deadline. 3 checks.
Texas' TRAIGA complaint portal opened September 1, 2026. What happens after a complaint is filed, and the response runbook you need before a civil demand lands.
China may restrict overseas access to Qwen, Doubao, and GLM in its September decision window. 61% of OpenRouter tokens. 3 enterprise access questions now.
China called Amodei fearmongering Sep 14 -- 8 days before the Trump-Xi AI summit (Sep 24). Chip loophole, distillation, threat-intel. 3 vendor questions.
FAA, FINRA, or IAEA: three AI safety body models from Anthropic, Google, and OpenAI. Trump-Huang All-In opposition. 3 vendor contract questions now.
Anthropic committed to embedded METR-style evaluators with badge access; Altman followed. 3 concrete questions enterprise teams need in the next vendor renewal.
CVE-2026-59822 on CISA KEV: LiteLLM MCP auth bypass chained with Starlette BadHost for RCE and key theft. Patch 1.84.0, rotate credentials, audit SSH keys.