Loading…
Loading…

AI Expert
Johnie T Young is an AI expert and governance practitioner with deep experience helping fast-moving technology companies implement responsible AI practices at small-team scale. With a focus on practical, actionable frameworks, Johnie built AI Policy Desk to close the gap between enterprise-grade compliance tooling and the real-world needs of lean product teams. Before founding AI Policy Desk, Johnie worked across a range of technology companies advising on AI risk management, GDPR readiness, and EU AI Act compliance. With the rapid emergence of AI regulation globally, Johnie identified a clear need: governance resources written for 10-person teams, not Fortune 500 legal departments — practical templates, checklists, and guides that teams can pick up and use today.
352 articles by Johnie T Young
California SB 690 bars CIPA pen register lawsuits over cookies and analytics, but Section 631 session replay claims survive. What changed?
OpenAI asked California to strengthen SB 53 after Astra breached Hugging Face during testing. What training-time incident monitoring means for vendor risk.
OpenAI paid $3.2M to settle DOJ claims it buried PERM job postings to favor visa workers. What the settlement means for your AI vendor risk.
Did Anthropic illegally destroy 2 million books? FTC now has a Section 5 complaint on Project Panama, plus a vendor AI risk checklist for your team.
Only 18% of enterprises can inventory their AI agents. Copy this data controls register template to document what each agent touches before regulators ask.
Update your AI acceptable use policy in 2026 with this 4-section guide for Texas TRAIGA, EU AI Act, and state compliance requirements.
TeamPCP hijacked LiteLLM's build pipeline in March, exposing 2,500+ orgs. A 7-point self-audit if your team runs the open-source AI gateway.
What do SEC examiners ask about AI in 2026? See the exact questions, Form ADV disclosures, and a 10-point readiness checklist for RIAs.
OpenAI paused Astra on August 7 after it may have hit the critical cybersecurity threshold. Preparedness Framework rewrite. Vendor policy checklist.
Copy-paste AI data retention policy template: retention periods for prompt logs, training data, and bias audits under GDPR, EU AI Act, CCPA, FTC.
California AB 1898 cleared August 13. Employers must give 90-day notice and collect signed worker acknowledgments before deploying any workplace AI tool.
California SB 947 and SB 951 cleared Assembly Appropriations August 13. What employers with California operations must prepare before October 2026.