What problem does it solve?
Organizations deploying AI systems face severe regulatory penalties (up to €35 million or 7% of global annual turnover) for non-compliance with the EU AI Act, NIST AI RMF, and ISO/IEC 42001, but lack a systematic way to verify they have all required governance artifacts before an audit or regulator inquiry.
Core Features & Use Cases
- Multi-Framework Compliance Scanning: Audits AI systems against the binding EU AI Act, voluntary NIST AI RMF 1.0 (including the NIST AI 600-1 Generative AI Profile), and certifiable ISO/IEC 42001:2023 AI management system standard.
- Artifact Gap Detection: Flags missing mandatory artifacts including AI system inventory, risk classification, technical documentation, data lineage, human oversight surfaces, conformity assessments, CE marking, incident reporting runbooks, and AI literacy training programs.
- Prohibited Practice Detection: Identifies implementations of hard-banned AI practices under EU AI Act Article 5 that trigger immediate stop-ship penalties.
- Use Case: A company deploying a CV resume screener (classified as high-risk under EU AI Act Annex III §4) can use this skill to verify they have the required human-in-the-loop override, technical documentation, conformity assessment, and EU database registration to avoid €15 million in high-risk non-compliance penalties.
Quick Start
Use the ai-governance-checker skill to scan your repository for missing AI regulatory compliance artifacts under the EU AI Act, NIST AI RMF, and ISO 42001.