Confidence, not exposure.
Know exactly what the law demands of you, what's voluntary best practice, and how to prove both. In plain English, against the frameworks that actually bind you: UK GDPR and the DUAA 2025, the EU AI Act, ISO/IEC 42001, NIST AI RMF and your sector's own rules.
With us, or drive it yourself.
AI Governance Health Check
Where you stand against every framework that binds you, what the law actually requires versus what's optional, and a plain-English plan for closing the gaps. Delivered by the principal, not a junior.
See what's in itGuidestone, our GRC platform
One provable compliance position across every framework you carry. Every gap shown honestly, nothing counted until a named person signs it off. Hosted as SaaS, locally or via your MSP, with access always through your own Entra.
Walk straight inFluent in the frameworks, allergic to fear.
We read the actual law, not the commentary: the DUAA 2025's rewrite of Article 22, the EU AI Act's real risk tiers and SME caps, what ISO/IEC 42001 asks for versus what auditors accept. Then we tell you in plain English what applies to you and what doesn't. No scare tactics, no jargon, no consultant padding.
Go deeper: AI Governance Consultancy · AI Compliance Consulting · AI Risk Assessment
See where you stand before someone asks you to prove it.
Start the Health Check Talk to us [email protected] · 01522 468145