The AI Compliance cluster.
One connected body of writing on AI compliance — the EU AI Act, ISO 42001, SOC 2, audit trails, and how DecisionChain fits in. Written for engineers and compliance leads.
EU AI Act
What the EU AI Act actually asks of providers building high-risk AI systems.
- Article 12·6 min read
EU AI Act Article 12: What It Actually Says
Article 12 is short, dense, and quietly reshapes how you build. A plain-English walkthrough for engineers shipping high-risk AI.
- Logging Requirements·8 min read
What the EU AI Act Requires From Your Logging Infrastructure
Article 12 says 'automatic recording of events.' Here is the plain-English version for engineers shipping high-risk systems.
- High-risk AI·7 min read
High-Risk AI Under the EU AI Act: Who's Actually In Scope
The high-risk list is narrower than the headlines suggest — but wider than most product teams assume. A checklist for scoping.
ISO 42001
The world's first AI management system standard, translated for engineers.
- Requirements·7 min read
ISO 42001 Requirements: An Engineer's Overview
ISO 42001 is a management system standard, not a coding standard. Here is what it actually asks engineering teams to implement.
- Evidence·6 min read
The Evidence ISO 42001 Auditors Actually Ask For
Policies get skimmed. Queries get run. Here is the concrete evidence auditors look for on an ISO 42001 assessment.
- Audit·8 min read
Preparing for Your First ISO 42001 Audit
A concrete 90-day plan for AI companies pursuing ISO 42001 for the first time, written by teams who have shipped it.
SOC 2
How SOC 2 evolves when the system under audit makes automated decisions.
- AI Systems·6 min read
SOC 2 for AI Systems: The New Questions in Trust Reports
SOC 2 wasn't written for machine learning. Auditors are adapting anyway. Here is what is showing up in reports now.
- Evidence Packs·5 min read
Building SOC 2 Evidence Packs for AI Controls
Evidence packs decide whether a SOC 2 auditor moves quickly or asks fifty follow-ups. Here is how to assemble one for AI.
AI Audit Trails
The engineering behind tamper-evident logs, hash chains, and decision records.
- Tamper Evident·7 min read
Why Tamper-Evident Audit Trails Matter for AI Compliance
Mutable logs are stories. Chained, anchored records are evidence. Here is what tamper-evidence actually means for AI systems.
- Hash Chains·5 min read
Hash Chains 101: How Immutable Logs Actually Work
You don't need a blockchain. You need a hash chain. Here is the mechanic that makes an audit log verifiable — in one page.
- Decision Logging·6 min read
What to Log for Every AI Decision
The record shape auditors actually want, and the fields that will save you when a decision is challenged months later.
DecisionChain
Product updates, SDK guides, and tutorials from the DecisionChain team.
- Product Updates·4 min read
Introducing DecisionChain
Immutable audit trails for AI decisions. What we are building, who it is for, and why we think it is the right time.
- SDK Guides·5 min read
Getting Started with the DecisionChain Python SDK
Install, authenticate, and log your first tamper-evident decision in under ten minutes.
- Tutorials·7 min read
Tutorial: Logging Your First Auditable Decision
A step-by-step walkthrough from a fresh project to a verifier confirming your first record.