AIAI Governance StackFree kit

EU AI Act

Regulation

What EU AI Act requires

The EU AI Act is binding law, not a methodology. It sorts AI systems into risk tiers — prohibited, high-risk, limited-risk and minimal-risk — and attaches obligations accordingly. High-risk systems carry the heaviest load: risk management, data governance, technical documentation, logging, human oversight, accuracy and robustness requirements, and conformity assessment before market placement. Because obligations attach to a system's use rather than its architecture, the practical first step is a defensible inventory that classifies every AI use case. Tooling matters most for classification, evidence collection and keeping technical documentation current as systems change.

Who it applies to

Providers and deployers placing AI systems on the EU market, regardless of where the company is headquartered.

45 tools that map to EU AI Act

Grouped by what the tool actually does, because a documentation platform and a runtime guardrail both claiming support are solving different halves of the problem.

Policy, Compliance & GRC (31)

Govern your AI and automate GRC for EU AI Act and ISO 42001 compliance

EU AI ActISO/IEC 42001NIST AI RMF

Compliance automation platform that extended into ISO 42001 and EU AI Act governance

ISO/IEC 42001EU AI ActNIST AI RMF

European compliance automation platform with an ISO 42001 and EU AI Act AI management system

EU AI ActISO/IEC 42001GDPR

AI-driven GRC platform pairing compliance automation with human experts for ISO 42001 and EU AI Act

ISO/IEC 42001EU AI ActNIST AI RMF

Multi-framework GRC and compliance operations platform with NIST AI RMF and ISO 42001 templates

NIST AI RMFISO/IEC 42001EU AI Act

AI-powered, modular GRC platform that operationalizes AI governance alongside security compliance

EU AI ActNIST AI RMFISO/IEC 42001

Autonomous compliance platform bringing ISO 42001 and EU AI Act governance onto its security GRC engine

EU AI ActNIST AI RMFISO/IEC 42001

European responsible-AI platform unifying MLOps, model registry, and enterprise AI governance

EU AI ActGDPRNIST AI RMFOpen-source

Security compliance automation vendor with ISO 42001 and real-time AI agent governance

ISO/IEC 42001EU AI ActSOC 2

European AI Management System built on ISO/IEC 42001 for AI Act compliance

EU AI ActISO/IEC 42001NIST AI RMF

Affirmative insurance and third-party assurance built for AI risk

EU AI ActColorado SB 205

Enabling enterprise AI by quantifying its quality and risk

EU AI ActNIST AI RMFISO/IEC 42001

Enterprise AI governance and enablement across global regulatory frameworks

EU AI ActNIST AI RMFISO/IEC 42001

Govern all your AI in one connected graph

EU AI ActNIST AI RMFISO/IEC 42001

End-to-end AI governance with registry, risk assessment and automated compliance

EU AI ActNIST AI RMFISO/IEC 42001

AI-powered GRC platform, rebranded from AuditBoard, with AI governance via the FairNow acquisition

SOC 2NIST AI RMFISO/IEC 42001

No-code GRC platform with AI governance agents that triage and assess AI use cases

EU AI ActNIST AI RMFISO/IEC 42001

AI inventory, assessment and monitoring built on OneTrust's privacy and trust platform

EU AI ActNIST AI RMFISO/IEC 42001

Enterprise AI governance to operationalize oversight, risk and compliance

EU AI ActNIST AI RMFISO/IEC 42001

Board governance and GRC platform embedding AI risk and compliance into enterprise oversight

EU AI ActNIST AI RMFISO/IEC 42001

AI governance platform to discover, assess and manage AI risk at scale

EU AI ActNIST AI RMFISO/IEC 42001

Software that tests and documents AI systems for legal and regulatory risk under privilege

EU AI ActColorado SB 205GDPR

Enterprise AI governance and model lifecycle automation as a system of record

EU AI ActNIST AI RMFISO/IEC 42001

Automated AI governance and EU AI Act compliance workflow management

EU AI ActNIST AI RMFISO/IEC 42001

Model governance and ML assurance for highly regulated industries

NIST AI RMFEU AI ActISO/IEC 42001

AI governance embedded in an integrated risk management platform

EU AI ActNIST AI RMFISO/IEC 42001

AI governance, risk and compliance with rapid audits, now operating as Asenion

EU AI ActNIST AI RMFISO/IEC 42001

AI governance platform for regulated enterprises to manage risk and compliance

EU AI ActNIST AI RMFISO/IEC 42001

Ethical AI governance and use-case risk assessment, now part of Asenion

EU AI ActNIST AI RMFISO/IEC 42001

AI governance, risk and compliance platform for tracking AI use cases, models and vendors

EU AI ActNIST AI RMFISO/IEC 42001

All-in-one enterprise AI governance for ethical, transparent and compliant AI

EU AI ActNIST AI RMFISO/IEC 42001

Observability & Monitoring (2)

AI performance, evaluation, and governance platform for ML, generative, and agentic systems

NIST AI RMFEU AI ActSOC 2Open-source

Enterprise AI observability, security, and governance control plane for models and agents

EU AI ActNIST AI RMFGDPR

Runtime Enforcement & Guardrails (4)

Customizable runtime guardrails, evaluation, and red-teaming for enterprise generative and agentic AI

EU AI ActNIST AI RMF

AI-native security platform guarding GenAI apps against prompt attacks and data loss

EU AI ActNIST AI RMF

Runtime security for enterprise GenAI usage, applications, and AI agents

NIST AI RMFEU AI ActGDPR

Full-lifecycle inference-layer security and guardrails for enterprise AI

NIST AI RMFEU AI Act

Red-Teaming & AI Security (2)

End-to-end AI security and governance platform to discover, monitor, red-team and prove enterprise AI

EU AI ActNIST AI RMFISO/IEC 42001

Open-source and enterprise platform for testing and red-teaming LLM agents

EU AI ActNIST AI RMFOpen-source

Enterprise Incumbents (6)

Enterprise MLOps and governance platform for building and running AI in regulated industries

EU AI ActGDPRSOC 2

Enterprise AI platform unifying model and agent development, deployment, and governance across any environment

EU AI ActNIST AI RMF

Lifecycle governance, risk and compliance for models and agentic AI, built on IBM's GRC heritage

EU AI ActNIST AI RMFISO/IEC 42001

AI governance layered on Collibra's data catalog and lineage for trusted, compliant AI

EU AI ActNIST AI RMF

A single command center to discover, observe, govern, secure and measure enterprise AI

EU AI ActNIST AI RMF

AI Governance Tool Selection Kit

A vendor-comparison worksheet plus EU AI Act, NIST AI RMF and ISO/IEC 42001 requirement checklists — so you can shortlist tools against the obligations that actually apply to you.

Free. No spam — unsubscribe anytime.