For teams with compliance expertise in-house.
If you have internal compliance, GRC, or privacy staff, the GovernMy.ai platform gives your team the tooling to run an AI governance program yourselves — the same governance infrastructure our certified compliance reps use to deliver client engagements.
Platform or managed engagement?
The platform is the right fit when you have internal expertise and want a system of record. If your team would rather have us run the program, see our managed services.
Platform fits if…
- ✓You have an in-house compliance, GRC, or privacy team
- ✓Someone owns AI governance as part of their role
- ✓You want a system of record, not ongoing service hours
- ✓You're managing 5+ AI systems and need centralized tracking
- ✓You have the time and expertise to run the program
Managed services fits if…
- ✓You don't have in-house compliance expertise
- ✓You want a program delivered, not a tool to manage
- ✓You're pursuing certification (ISO 42001) or regulatory deadlines (EU AI Act)
- ✓You need audit-ready evidence on a specific timeline
- ✓You'd rather pay for expertise than learn the frameworks yourself
An AI governance system of record.
Everything you need to run an AI compliance program — inventory, assessment, mitigation, policy, evidence. Multi-framework from day one.
AI System Inventory
Central registry of every AI system your organization uses. Risk classification, EU AI Act tier assignment, data flow mapping, provider & model tracking (50+ models supported).
Risk Register & Mitigations
Document risks with AI-assisted triage, link mitigation actions across systems, assign owners and deadlines, track residual risk automatically.
Policy Library
AI-drafted policies for the essentials (AI ethics, data governance, risk management, acceptable use) with approval workflows and review calendars.
Multi-framework mapping
EU AI Act, Colorado AI Act, ISO 42001, NIST AI RMF, HIPAA, SOX, FTC. Cross-reference requirements automatically so you do the work once.
EU AI Act Compliance Suite
Purpose-built modules for Articles 9, 10, 11, 15, 17, 43, 71, 72, 73 — conformity assessment, data governance, technical documentation, post-market monitoring, incident reporting, Declaration of Conformity PDF export.
Evidence Pack
Generate a 20-file ZIP bundle mapped to ISO 42001 clauses or EU AI Act articles in one click — ready to hand to an auditor or enterprise customer.
The regulatory rules engine.
Every obligation the platform surfaces — in the risk register, in EU AI Act Conformity Assessments, in evidence packs — comes from the same machine-readable rules engine. 42 interpreted obligations across 7 frameworks, cross-referenced, cited, versioned.
42 obligations, queryable
Each obligation is JSON: who it applies to (role, risk tier, industry, lifecycle phase), what evidence is required, what cross-references to other frameworks exist, and the verbatim source text it came from.
Version-pinned audit trail
Every query writes a ComplianceEvent row with rulesVersion and rulesHash. You can prove which rules you checked against, and when. Auditors love this.
Obligations, not verdicts
The engine never returns "compliant: true." EU AI Act Art. 14 prohibits automating that determination. Every response carries humanReviewRequired. Obligations flagged cannotBeAutoSatisfied always block — structurally, not configurably.
Same engine the compliance reps use is exposed to developers via SDK, MCP server, and REST API.
Priced for mid-market, not enterprise GRC budgets.
Starting at $5,000/year — a fraction of what OneTrust, ServiceNow, or IBM charge for comparable AI governance tooling.
Starter
$5,000/year
$417/month billed annually
- 10 AI systems
- 3 team seats
- Basic risk register
- ISO 42001 mapping
- Gap analysis
Professional
$15,000/year
$1,250/month billed annually
- 25 AI systems
- 5 team seats
- Full risk register & mitigations
- Evidence packs & approval workflows
- EU AI Act compliance suite
- Supplier portal & ESG reports
Enterprise
Custom
Volume pricing & custom terms
- 100+ AI systems
- 10+ team seats
- SSO (Okta, Azure AD)
- GRC integrations (ServiceNow, Archer)
- SIEM forwarding
- Dedicated account manager
Ready to run your own governance program?
Create a platform account to get started. No credit card required for setup — you'll be prompted for payment when you're ready to activate.