15 frameworks. All included. No per-framework fees.
The only self-serve tool that puts AI governance, security, and privacy in one place — assess once and let the crosswalk map your answers across every framework that applies.
NIST AI RMF
Voluntary US framework to govern AI risk — Govern, Map, Measure, Manage.
View framework → AI governanceEU AI Act
The EU's risk-tiered law for AI systems — obligations by risk class.
View framework → AI governanceISO 42001
The certifiable management-system standard for responsible AI.
View framework → AI governanceISO 42005
Guidance for conducting AI-system impact assessments.
View framework → AI governanceOWASP LLM Top 10
The top security risks for large-language-model applications.
View framework → SecuritySOC 2
Trust Services Criteria — security, availability, confidentiality.
View framework → SecurityISO 27001
The international standard for information-security management.
View framework → SecurityNIST CSF 2.0
Govern–Identify–Protect–Detect–Respond–Recover security framework.
View framework → SecurityNIST 800-53
The federal security & privacy control catalog.
View framework → SecurityCMMC 2.0
US DoD cybersecurity-maturity certification for the defense base.
View framework → SecurityFedRAMP
US government cloud-security authorization program.
View framework → PrivacyGDPR
The EU regulation governing personal-data protection.
View framework → PrivacyHIPAA
US healthcare data privacy & security rules.
View framework → PrivacyISO 27701
Privacy-information-management extension to ISO 27001.
View framework → PrivacyPCI DSS
The security standard for handling card-payment data.
View framework →