Loading…
Loading…
AI Policy Desk
Ready-to-use templates, risk checklists, and implementation guides built for small teams with no dedicated compliance function.
Built for startups and lean teams who need AI policy, risk assessments, vendor due diligence, and lightweight governance—without a compliance department.
Free tools
Interactive tools — get a clear answer in minutes, no consultant required.
4 questions · 2 min
Compliance Quiz
Which AI regulations apply to your team?
Take the quiz →
4 steps · 5 min
Policy Generator
Generate an AI acceptable use policy for your team.
Generate policy →
15 vendors · filterable
Vendor Scorecard
Compare AI vendors on privacy and compliance.
Compare vendors →
3 steps · 5 min
AI Risk Assessment
Rate your AI use cases Low / Medium / High / Critical.
Assess risk →
Explore
Regulations
28 coveredEU AI Act, GDPR, NIST AI RMF, Colorado AI Act, NY Local Law 144, and more — each explained for small teams.
Browse regulations →
Glossary
75 termsPlain-English definitions for AI governance terms: high-risk AI, GPAI models, conformity assessment, shadow AI, and more.
Browse glossary →
Start here
Pillar guides and templates—jump in, then subscribe for the monthly checklist.
Latest
Templates, checklists, tool comparisons, and implementation guides for small teams adopting AI safely.
·5 min read·Guides
Colorado SB 189 replaces the 2024 Colorado AI Act. Risk assessments dropped, disclosure requirements kept, effective date pushed to January 2027. What the new law requires and what changed.
Latest posts
·6 min read·Guides
EU AI Act GPAI enforcement powers activate August 2, 2026. The obligations already applied from August 2025. What changes in August 2026, who is affected, and what to have ready before the deadline.
·9 min read·Guides
Copy-paste TypeScript patterns for AI agent output validation: Zod schema enforcement, PII redaction, content policy filtering, JSON repair, hallucination guardrails, and cost circuit breakers. Working code.
·8 min read·Guides
EU AI Act Omnibus: nudification apps banned and AI watermarking required by December 2, 2026. Compliance checklist for providers and deployers — what must change, what's exempt, and penalties.
·7 min read·Guides
Federal AI preemption status May 2026: White House blueprint calls for preemption, Congress has rejected it twice. State laws (Texas TRAIGA, Colorado, Connecticut, Maryland) remain in force. Compliance guide.
·9 min read·Guides
Texas TRAIGA compliance checklist for developers and deployers. Effective January 1, 2026: prohibited uses, documentation requirements, impact assessments, consumer notices, and the NIST safe harbor.
·8 min read·Guides
Copy-paste TypeScript patterns for AI agent tool authorization: allowlists, scoped tokens, human-in-the-loop gates, rate limits, audit logging, and role-based access. Working code, not theory.