Loading…
Loading…
Connecticut CART Act first obligations begin · Oct 1, 2026 · See what changes
Free resources
Free templates, checklists, and implementation guides for small teams adopting AI responsibly. No sign-up required — use and adapt for your organisation.
Interactive tools
Compare 15 AI vendors across 11 governance dimensions — retention, SOC 2, HIPAA, ISO 27001, and more.
Open tool →
Answer 4 questions and get a personalised list of regulations that apply to your team, with priority actions.
Open tool →
Build a tailored AI usage policy for your team in minutes — free to download and adapt.
Open tool →
Every major AI regulation tracked — EU AI Act, GDPR, US state laws, NIST RMF. Deadline calendar and real enforcement cases included.
Browse regulations →
Plain-English definitions for AI governance terms — GPAI model, conformity assessment, DPA, DPIA, and more.
Browse glossary →
Browse by type
Copy-paste policy baselines and governance documents ready to adapt.
Browse templates →
Step-by-step checklists for risk reviews, vendor evaluations, and audits.
Browse checklists →
In-depth implementation guides covering key governance topics.
Browse guides →
Frameworks and controls for responsible AI adoption at team scale.
Browse governance →
Templates
View all →Only 18% of enterprises can inventory their AI agents. Copy this data controls register template to document what each agent touches before regulators ask.
Update your AI acceptable use policy in 2026 with this 4-section guide for Texas TRAIGA, EU AI Act, and state compliance requirements.
Copy-paste AI data retention policy template: retention periods for prompt logs, training data, and bias audits under GDPR, EU AI Act, CCPA, FTC.
A 30-point Q3 2026 AI governance review template organized by NIST AI RMF functions, with copy-paste checklists, documentation guidance, and FAQ.
Guides
View all →Who enforces AI vendor failures? DOJ, Treasury and 15 state AGs disagree. See the enforcement map and contract clauses your team needs.
OpenAI's training agents are linked to a spam campaign that hit RubyGems with 2,000+ packages. The verified timeline and what your AI vendor policy needs now.
Texas' TRAIGA complaint portal opened September 1, 2026. What happens after a complaint is filed, and the response runbook you need before a civil demand lands.
CVE-2026-59822 on CISA KEV: LiteLLM MCP auth bypass chained with Starlette BadHost for RCE and key theft. Patch 1.84.0, rotate credentials, audit SSH keys.
Recently published
View all →News·9 min read
News·9 min read
News·8 min read
General·5 min read
Upcoming deadlines
Track EU AI Act enforcement, Colorado AI Act, and other compliance deadlines in one place.
Open deadline calendar →About these resources
All resources are free to use and adapt for your organisation. No attribution required, no sign-up needed.
Learn more about us →