Compliance
Liability for AI-Generated Content: What Regulators and Courts Have Actually Said
See what US, UK, EU, Canadian and Australian authorities have actually said about wrong, misleading or infringing AI-generated business content today.
AI Risk Assessment: The Dimensions to Assess and What Each One Rests On
A traceable AI risk assessment for privacy, security, accuracy, bias and oversight, showing which checks come from authorities and which are judgement.
AI Vendor Breach Response Plan: The Plan, the First Hour, and When It Becomes Your Notification
Use this AI vendor breach response plan to organise the first hour, document facts and compare notification thresholds across five jurisdictions with care.
AI Data Residency: What Vendors Publish, and How to Verify It Yourself
Compare Microsoft Copilot, Google Gemini and ChatGPT residency claims, then verify storage, processing locations, plan limits and legal reach clearly.
AI Register Template: The Columns and Why Each One Is There
Copy an AI register template and understand each column, including which records reflect regulator guidance and which are practical SMB governance choices.
Shadow AI: What It Is, How to Find It, and What the Findings Mean
Find unapproved AI tools and accounts, conduct a shadow AI audit, assess what each finding means, and route it into a register, policy or urgent review.
AI Vendor Due Diligence: The Questions to Ask and How to Read the Answers
Use this AI vendor due diligence checklist to test data, training, ownership, liability and subprocessor answers before your business signs a contract.
AI Governance by Region: International AI Regulation Compared
Compare AI governance in the EU, UK, US, Canada and Australia, identify which jurisdiction to read first based on operations, customers and data flows.
AI Governance in Canada: What PIPEDA, the OPC and Quebec Law 25 Actually Say
See what PIPEDA, the OPC, Quebec Law 25 and provincial privacy laws say about AI, plus the current status of federal reform bills affecting Canadian SMBs.
AI Governance in the European Union: What the AI Act and GDPR Actually Say
See what the EU AI Act and GDPR say about AI roles, risk levels, personal data and non-EU businesses, with current dates and links to primary sources.
AI Governance in the United Kingdom: Which Regulator Says What
See which UK regulator covers each AI governance question, with primary sources and clear explanations of where UK GDPR now differs from EU GDPR today.
AI Governance in the United States: Which Agency and Which State Law Applies
Find which US agency and state AI rule may apply to hiring, credit, healthcare and consumer claims, with primary sources and status checked September 2026.
AI Acceptable Use Policy Template: The Clauses and What Each One Is For
Copy a practical AI acceptable use policy, understand what every clause does, and see which parts reflect regulator guidance versus sensible practice.