Loading…
Loading…
AI Policy Desk
Ready-to-use templates, risk checklists, and implementation guides built for small teams navigating EU AI Act, GDPR, and US state AI laws — with no dedicated compliance function.
Updated for EU AI Act, GDPR, and 9 US state laws. No account, no paywall.
What applies to my team?
Featured
Start with these templates
Free tools
Interactive tools — get a clear answer in minutes, no consultant required.
4 questions · 2 min
Compliance Quiz
Which AI regulations apply to your team?
Take the quiz →
4 steps · 5 min
Policy Generator
Generate an AI acceptable use policy for your team.
Generate policy →
15 vendors · filterable
Vendor Scorecard
Compare AI vendors on privacy and compliance.
Compare vendors →
3 steps · 5 min
AI Risk Assessment
Rate your AI use cases Low / Medium / High / Critical.
Assess risk →
Explore
Regulations
28 coveredEU AI Act, GDPR, NIST AI RMF, Colorado AI Act, NY Local Law 144, and more — each explained for small teams.
Browse regulations →
Glossary
75 termsPlain-English definitions for AI governance terms: high-risk AI, GPAI models, conformity assessment, shadow AI, and more.
Browse glossary →
Start here
Pillar guides and templates — pick the one most relevant to your situation.
Latest
Templates, checklists, tool comparisons, and implementation guides for small teams adopting AI safely.
California SB 690 bars CIPA pen register lawsuits over cookies and analytics, but Section 631 session replay claims survive. What changed?
Latest posts
OpenAI asked California to strengthen SB 53 after Astra breached Hugging Face during testing. What training-time incident monitoring means for vendor risk.
OpenAI paid $3.2M to settle DOJ claims it buried PERM job postings to favor visa workers. What the settlement means for your AI vendor risk.
Did Anthropic illegally destroy 2 million books? FTC now has a Section 5 complaint on Project Panama, plus a vendor AI risk checklist for your team.
Only 18% of enterprises can inventory their AI agents. Copy this data controls register template to document what each agent touches before regulators ask.
Update your AI acceptable use policy in 2026 with this 4-section guide for Texas TRAIGA, EU AI Act, and state compliance requirements.
TeamPCP hijacked LiteLLM's build pipeline in March, exposing 2,500+ orgs. A 7-point self-audit if your team runs the open-source AI gateway.
Newsletter
Stay current on AI compliance
Weekly digest of new templates, regulation updates, and deadline alerts. Free, unsubscribe anytime.
Subscribe free →No spam · No vendor ads · Unsubscribe anytime
Templates
Get the complete policy kit
Acceptable use policies, vendor evaluation checklists, risk assessments, and more — all in one place.
View template kits →