9 frameworks · Global + India-specific · Always expanding

Compliance is our engine.
Trust is our product.

We automate every major AI governance framework — global and India-specific. One scan gives you scores across all applicable standards. Compliance proves capability; your Trust Passport wins the deal.

9

Frameworks

323+

Controls automated

100%

India coverage

🇮🇳

India-First Standards

The only AI compliance platform with native DPDP, RBI FREE-AI, and MeitY coverage

🇮🇳Data Protection

DPDP 2023

India's Digital Personal Data Protection Act 2023.

Coverage100%
🇮🇳BFSI Regulation

RBI FREE-AI

Reserve Bank of India's Framework for Responsible and Ethical Enablement of AI — guidance for banks, NBFCs, payment systems, and financial service providers deploying AI.

Coverage100%
🇮🇳Government Policy

MeitY Guidelines

Ministry of Electronics & Information Technology AI guidelines and the National Data Governance Framework.

Coverage85%

All supported frameworks

Click any framework for coverage details

🌐

ISO 42001:2023

Global · AI Management

100%

38 controls

The international standard for AI Management Systems.

  • AI policy and governance structure
  • Risk assessment and impact evaluation
  • AI system lifecycle management
  • Transparency and explainability
Coverage38 controls automated

Who: Any organisation deploying AI — globally recognised

🌐

ISO 42005

Global · AI Impact Assessment

100%

15 controls

Guidance on AI Impact Assessment — a structured methodology to evaluate risks and societal impacts of AI systems before and during deployment.

  • AI system impact scoping
  • Stakeholder consultation framework
  • Societal risk identification
  • Mitigation measure documentation
Coverage15 controls automated

Who: Organisations deploying AI with societal impact

🇪🇺

EU AI Act

Europe · Risk-Based Regulation

95%

42 controls

The European Union's comprehensive AI regulation.

  • Risk tier classification (minimal to unacceptable)
  • High-risk system requirements (Annex III)
  • Conformity assessment documentation
  • GPAI model obligations
Coverage42 controls automated

Who: Any AI company operating in or selling to EU customers

🇺🇸

NIST AI RMF

USA · Risk Management

100%

52 controls

NIST AI Risk Management Framework — a voluntary framework for managing AI risks across four core functions: Govern, Map, Measure, and Manage.

  • AI Govern: accountability and culture
  • AI Map: context and risk identification
  • AI Measure: analysis and evaluation
  • AI Manage: prioritise and act
Coverage52 controls automated

Who: US enterprises, global companies targeting US market

🌐

SOC 2 Type 1 & Type 2

Global · Trust Service Criteria

90%

28 controls

AICPA's Trust Service Criteria covering Security, Availability, Processing Integrity, Confidentiality, and Privacy for AI systems and their underlying infrastructure.

  • Security: access controls and monitoring
  • Availability: uptime and incident response
  • Confidentiality: data protection
  • Privacy: personal data handling
Coverage28 controls automated

Who: AI SaaS vendors, enterprise IT, financial services

🇮🇳

DPDP 2023

India · Data Protection

100%

15 controls

India's Digital Personal Data Protection Act 2023.

  • Data Fiduciary obligations and consent requirements
  • Data Principal rights (access, correction, erasure)
  • 30-day DSR response deadline management
  • 72-hour breach notification timeline
Coverage15 controls automated

Who: Any organisation collecting or processing Indian citizen data

🇮🇳

RBI FREE-AI

India · BFSI Regulation

100%

22 controls

Reserve Bank of India's Framework for Responsible and Ethical Enablement of AI — guidance for banks, NBFCs, payment systems, and financial service providers deploying AI.

  • AI governance and accountability in BFSI
  • Model risk management for credit AI
  • Customer fairness and explainability
  • Regulatory reporting for AI systems
Coverage22 controls automated

Who: Banks, NBFCs, payment companies, fintechs regulated by RBI

🇮🇳

MeitY Guidelines

India · Government Policy

85%

18 controls

Ministry of Electronics & Information Technology AI guidelines and the National Data Governance Framework.

  • Responsible and trusted AI principles
  • Data localisation and sovereignty
  • AI transparency for public sector
  • National AI strategy alignment
Coverage18 controls automated

Who: Government agencies, public sector, enterprises with G2B mandates

🌐

ISO 27001

Global · Information Security

75%

93 controls

Information Security Management System standard — foundational security controls that underpin AI compliance.

  • Access control and identity management
  • Cryptography and key management
  • Incident response and business continuity
  • Supplier security for AI API providers
Coverage93 controls automated

Who: All organisations — foundation for enterprise security reviews

Frameworks on the roadmap

We add new frameworks quarterly. These are coming next:

SEBI AI AdvisoryIRDAI GuidelinesCDSCO AI (Healthcare)HIPAA for AIISO 27701GDPR AI Supplement

Find out which frameworks apply to your AI

The free AI Governance Assessment identifies which standards are relevant to your organisation and where your gaps are — in 5 minutes.