Modules

375+ requirements.
32 modules. Zero gaps.

Every module maps to specific regulation. Requirement IDs are shown next to each — so you can trace exactly which Articles and Annexes each piece of the platform satisfies.

⚖️
Domain 01

Regulatory Core

Module
Req. IDs
Regulation
Available
Risk Classification Engine

Guided wizard evaluating Article 6 and Annex III. Produces a risk tier and tailors downstream requirements. Versioned rules engine updatable without code deployment.

RCE-001–008
Article 6, Annex III
v1.0
Guided Discovery Questionnaire

Structured, section-by-section questionnaires mapped to Annex IV and Annex XI. Branching logic, collaborative section assignment, inline regulatory guidance, evidence attachment.

GDQ-001–012
Annex IV, Annex XI
v1.0
Dataset Schema Analysis

Upload schema files; Claude evaluates column semantics, identifies GDPR Article 9 special categories, detects proxy variables, and produces a Data Sensitivity Report that pre-populates Article 10 questionnaire sections.

DSA-001–015
Article 10, GDPR Art. 9
v1.0
FRIA Module

Article 27 Fundamental Rights Impact Assessment for deployers. Domain-specific risk templates, affected population mapping, operational context inputs, residual risk register, and review triggers.

FRIA-001–010
Article 27
v1.0
Compliance Gap Analysis

Real-time scoring against the full regulatory requirements matrix. Heat-map visualisation, prioritised remediation, and cross-AISDP consistency checking for provider/deployer pairs.

GAP-001–008
Cross-regulation
v1.0
Certification Module

Certification scopes, eligibility evaluation, digital signing, and an append-only certification ledger. EU Declaration of Conformity wizard (Annex V, Article 47) with notified body conformity assessment workflow.

CRT-001–008
Article 47, Annex V
v1.5
Post-Market Monitoring

Article 72 monitoring plans, incident recording (Article 73), external monitoring data API, configurable threshold alerting, automated AISDP review triggers, and Article 12 structured log ingestion.

PMM-001–010
Articles 72, 73
v1.0
Documentation Output Engine

Renders approved content into Annex IV, Annex XI, Instructions for Use, Transparency Notice, Annex VIII registration data, and a signed Submission Package ZIP with evidence bundle and manifest.

DOC-001–016
Articles 11, 13, 47, Annex VIII
v1.0
AI Literacy Knowledge Base

Article 4 literacy support. Role-separated knowledge base, glossary, paragraph-level regulatory guidance, Canvas LMS full integration with LTI 1.3 delivery, Gradebook sync, and credential ledger.

LIT-001–020
Article 4
v1.0
AI Regulatory Navigator

Conversational RAG interface. Describe your AI system; receive a preliminary risk assessment with inline citations to Articles, Annexes, and recitals. Two-stage citation validation. Seamless handoff to the Risk Classification Engine.

RAI-001–018
Cross-regulation
v1.0
Article 9 Risk Management Ledger

Continuous risk management: identify, analyse, estimate, evaluate, mitigate. Mitigation linkage to questionnaire sections. Automated review triggers on reclassification.

RML-001–005
Article 9
v1.0
Article 26 Deployer Obligations

Structured workflow for deployer-specific obligations. Triggered on "deployer" role declaration. Produces a deployer compliance record separate from the provider's AISDP.

DEP-001–006
Article 26
v1.0
Compliance Task Export

Converts a saved Navigator assessment into sprint-ready tasks pushed to Jira, Trello, or Asana. Each obligation becomes a discrete task with regulatory reference, suggested assignee role, and priority.

CTE-001–012
Workflow integration
v2.0
Regulatory Corpus Editor

Internal operator tool for adding regulatory source material to the Navigator corpus. Supports EU AI Act, GDPR, NIS2, and national transpositions. Review-before-activation workflow.

RCPE-001–015
Multi-framework
v2.0
🏛️
Domain 02

Governance & Workflow

Module
Req. IDs
Function
Available
RBAC Policy Engine

Role-based access control supporting 41 roles across seven functional groups: NAV, AIS, OPS, TRN, CRT, PLT, EXT. Permissions enforced at the API layer.

RBAC-001–009
Access control
v1.0
Approval Workflows

Multi-stage approval pipelines with routing by documentation section, risk classification, and role. Escalation timers, delegation, parallel and sequential stages, regulatory deadline awareness.

APR-001–012
Process governance
v1.0
Version Control

Full versioning of all AISDP entries. Section-level diffing, restore from any point, automated change log generation for Annex IV Section 6 lifecycle documentation.

VER-001–009
Lifecycle
v1.0
Notification Framework

Multi-channel delivery (in-app, email, webhook), user preferences, digest scheduling, storm batching, delivery tracking, and tenant-branded email templates.

NTF-001–013
Communications
v1.0
Provider–Deployer Handover

Formal handover workflow for Article 25 value chain obligations. Provider confirms delivery of instructions for use; deployer acknowledges acceptance. Integrated with cross-tenant AISDP sharing.

PDH-001–004
Article 25
v1.5
Search and Discovery

Full-text search across AI systems, questionnaire content, evidence metadata, and the knowledge base. Command palette for keyboard-driven navigation.

SRC-001–010
Usability
v1.0
Custom Branding

Tenant-configurable primary colour (with WCAG contrast validation), logo, favicon, login greeting, and custom domain support.

BRD-001–008
Enterprise experience
v1.5
Onboarding & Tenant Lifecycle

Self-service sign-up, email verification, MFA enrolment, plan selection, tenant provisioning under 60 seconds, first-run setup wizard, invitation-based onboarding, and trial management.

ONB-001–012
Lifecycle
v1.0

All 32 modules.
One platform.