Every compliance framework, in one place
91 compliance frameworks across 19 jurisdictions. 69 are backed by a curated knowledge pack inside the assistant — the rest are reachable through general guidance and adjacent specialist frameworks.
- Frameworks
- 91
- Specialist
- 69
- Jurisdictions
- 19
- Hosted in
- EU
Showing all 91 frameworks across 19 jurisdictions.
International
Global standards used everywhere from solo consultants to multinationals.
- View →CIS Controls v8.1 CopilotGlobal
Prioritise and implement the 18 CIS Controls v8.1 safeguards using Implementation Groups IG1, IG2 and IG3
General compliance guidanceInformation SecurityCyber Hygiene - View →ISO 22301 CopilotGlobal
AI-powered guidance for ISO 22301 business continuity management
Specialist coverageBusiness ContinuityBCMS - View →ISO 27001 CopilotGlobal
Get AI assistance for ISO 27001, in real time
Specialist coverageInformation SecurityISMS - View →ISO 27701 CopilotGlobal
Privacy information management with AI guidance
Specialist coveragePrivacyPIMS - View →ISO 31000 CopilotGlobal
Apply the ISO 31000:2018 principles, framework and process to enterprise and operational risk management
General compliance guidanceRisk Management - View →ISO 42001 CopilotGlobal
Simplify ISO 42001 AI management system compliance
Specialist coverageAI GovernanceAIMS - View →ISO 9001 CopilotGlobal
Quality management system compliance with AI
Specialist coverageQuality ManagementQMS - View →ISO/IEC 27002:2022 CopilotGlobal
Navigate the implementation guidance behind ISO 27001's 93 controls
Specialist coverageInformation SecuritySecurity Controls - View →ISO/IEC 27005 CopilotGlobal
Run a defensible information security risk management process aligned to ISO/IEC 27005:2022 and ISO/IEC 27001 clause 6.1
General compliance guidanceRisk ManagementInformation Security - View →ISO/IEC 27017 CopilotGlobal
Understand cloud security controls for providers and customers
Specialist coverageCloud SecurityInformation Security - View →ISO/IEC 27018:2025 CopilotGlobal
Navigate PII protection requirements for public cloud processors
Specialist coveragePrivacyCloud SecurityData Protection - View →MITRE ATT&CK CopilotGlobal
Use the MITRE ATT&CK knowledge base to model adversary behaviour and pressure-test your detections and controls
General compliance guidanceThreat IntelligenceDetection - View →PCI DSS 4.0 CopilotGlobal
Work through the Payment Card Industry Data Security Standard v4.0.1, from CDE scoping to SAQ and AOC drafting
General compliance guidancePayment Security
European Union
EU-wide regulations and directives — directly applicable or transposed nationally.
- View →2024. évi LXIX. törvény CopilotHU
Navigate Hungary's NIS 2 transposition law with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Cyber Resilience Act CopilotEU
EU Cyber Resilience Act compliance for digital products
General compliance guidanceProduct Cybersecurity - View →Cybersäkerhetslag (2025:1506) CopilotSE
Navigate Sweden's NIS 2 transposition with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →D.Lgs. 138/2024 CopilotIT
Navigate Italy's NIS 2 transposition with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →DORA CopilotEU financial services
EU-hosted compliance assistant for digital operational resilience
Specialist coverageOperational ResilienceFinancial Services - View →EU AI Act CopilotEU
Simplify EU AI Act compliance with AI-powered guidance
Specialist coverageAI Governance - View →GDPR CopilotEU + EEA
Simplify GDPR compliance with AI-powered guidance
Specialist coveragePrivacyData Protection - View →Ireland DPA 2018 CopilotIE
Navigate Ireland's Data Protection Act 2018 and its GDPR derogations with confidence
Specialist coveragePrivacyData Protection - View →Ireland NIS 2 CopilotIE
Navigate Ireland's NIS 2 transposition and prepare your organisation before the Bill is enacted
Specialist coverageCybersecurityCritical InfrastructureOperational Resilience - View →Kibernetinio saugumo įstatymas CopilotLT
Navigate Lithuania's NIS 2 transposition with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →KüTS CopilotEE
Navigate Estonia's NIS 2 transposition with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Kyberturvallisuuslaki 124/2025 CopilotFI
Navigate Finland's NIS 2 transposition with clarity
Specialist coverageCybersecurityCritical Infrastructure - View →NIS 2 CopilotEU member states
AI-powered guidance for EU NIS2 Directive compliance
Specialist coverageCybersecurityCritical Infrastructure - View →NIS 2-loven CopilotDK
Navigate Denmark's NIS 2 transposition with confidence
Specialist coverageCybersecurityCritical InfrastructureInformation Security - View →NKDL CopilotLV
Navigate Latvia's national cybersecurity law with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →OUG 155/2024 CopilotRO
Navigate Romania's NIS 2 transposition with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →RJC (DL 125/2025) CopilotPT
Navigate Portugal's cybersecurity legal framework with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →S.L. 460.41 CopilotMT
Navigate Malta's NIS 2 transposition with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →TISAX CopilotEU automotive sector (international)
AI-powered guidance for TISAX assessment readiness
Specialist coverageInformation SecurityAutomotive - View →UKSC CopilotPL
Navigate Poland's NIS 2 transposition with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Zákon č. 264/2025 Sb. CopilotCZ
Navigate Czech cybersecurity obligations under zákon č. 264/2025 Sb. with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Zákon č. 69/2018 Z. z. CopilotSK
Navigate Slovakia's cybersecurity law and its NIS 2 obligations with confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Zakon o kibernetičkoj sigurnosti CopilotHR
Navigate Croatia's NIS 2 transposition with clarity
Specialist coverageCybersecurityCritical Infrastructure - View →ZInfV-1 CopilotSI
Navigate Slovenia's NIS 2 transposition with clarity and confidence
Specialist coverageCybersecurityCritical InfrastructureInformation Security - View →Ν. 5160/2024 CopilotGR
Navigate Greece's NIS 2 transposition law with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure - View →Ν. 60(Ι)/2025 CopilotCY
Navigate Cyprus NIS 2 obligations under Ν. 89(Ι)/2020 as amended by Ν. 60(Ι)/2025
Specialist coverageCybersecurityCritical Infrastructure - View →ЗКС CopilotBG
Navigate Bulgaria's cybersecurity law with clarity and confidence
Specialist coverageCybersecurityCritical Infrastructure
United States
US federal law, state privacy regimes, and audit frameworks favoured by SaaS buyers.
- View →CCPA / CPRA CopilotCalifornia
AI-powered guidance for California consumer privacy law
Specialist coveragePrivacy - View →CMMC 2.0 CopilotUS
Navigate DoD cybersecurity certification requirements with confidence
Specialist coverageCMMCCUIFederal Contractors - View →FedRAMP CopilotUS
Navigate federal cloud authorization with confidence
Specialist coverageCloud SecuritySecurity ControlsFederal Contractors - View →FERPA CopilotUnited States
Understand FERPA obligations for education records under 20 U.S.C. §1232g and 34 CFR Part 99
General compliance guidanceEducation Privacy - View →FISMA CopilotUnited States
Navigate FISMA obligations under 44 U.S.C. §3551 using the NIST SP 800-53 and FIPS 199/200 control baseline
General compliance guidanceFederal Information Security - View →GLBA Safeguards Rule CopilotUnited States
Build an information security program meeting the FTC Safeguards Rule at 16 CFR Part 314
General compliance guidanceFinancial ServicesInformation Security - View →HIPAA CopilotUS Healthcare
AI-powered guidance for the HIPAA Security and Privacy Rules
Specialist coveragePrivacySecurity - View →HITRUST CSF CopilotUnited States
Prepare for HITRUST CSF e1, i1, or r2 assessments by mapping your existing controls to the latest CSF version
General compliance guidanceHealthcareInformation Security - View →NIST 800-171 & CMMC CopilotUS DoD contractors
AI-powered preparation for CMMC and NIST 800-171
Specialist coverageCUICMMC - View →NIST 800-53 CopilotUS Federal
Streamline NIST 800-53 compliance with AI
Specialist coverageSecurity Controls - View →NIST AI RMF CopilotUS
Navigate the NIST AI Risk Management Framework with clarity and confidence
Specialist coverageAI Governance - View →NIST CSF 2.0 CopilotUS (international applicability)
AI-powered guidance for the NIST Cybersecurity Framework
Specialist coverageCybersecurity - View →NIST Privacy Framework CopilotUS
Navigate the NIST Privacy Framework to strengthen your organization's privacy risk management
Specialist coveragePrivacyData Protection - View →NIST SP 800-207 CopilotUS
Understand and apply zero trust architecture principles with confidence
Specialist coverageCybersecuritySecurity ControlsFederal Contractors - View →NIST SP 800-218 (SSDF) CopilotUS
Navigate the Secure Software Development Framework with clarity and confidence
Specialist coverageSecurityCybersecurityFederal Contractors - View →NIST SP 800-66 Rev. 2 CopilotUS
Navigate the HIPAA Security Rule with NIST implementation guidance at your side
Specialist coverageHealth DataCybersecurityInformation Security - View →SOC 2 CopilotUS (international applicability)
AI-powered SOC 2 compliance assistance
Specialist coverageTrust Services Criteria - View →SOX ITGC CopilotUnited States
Design and document the IT general controls that support Sarbanes-Oxley §404 financial reporting assertions
General compliance guidanceIT ControlsFinancial Reporting
United Kingdom
UK-specific privacy law and cybersecurity certifications post-Brexit.
- View →Cyber Essentials CopilotUK
AI-powered guidance for UK Cyber Essentials certification
General compliance guidanceCybersecurity - View →NCSC CAF CopilotUK essential services
AI-powered guidance for the UK Cyber Assessment Framework
General compliance guidanceCybersecurity - View →UK Data Protection Act 2018 CopilotUK
AI-powered guidance for the UK Data Protection Act 2018
Specialist coveragePrivacyData Protection - View →Data (Use and Access) Act 2025 CopilotUK
AI-powered guidance for the UK Data (Use and Access) Act 2025
Specialist coveragePrivacyData Protection - View →UK GDPR CopilotUK
AI-powered guidance for UK data protection law post-Brexit
Specialist coveragePrivacyData Protection
France
French sovereignty regimes for health, cloud and ANSSI-aligned operations.
- View →France NIS 2 CopilotFR
Navigate France's NIS 2 transposition process with clarity, from current NIS 1 obligations to the forthcoming framework
Specialist coverageCybersecurityCritical InfrastructureOperational Resilience - View →HDS CopilotFR Healthcare
AI-powered guidance for French health data hosting certification
Specialist coverageHealth Data Hosting - View →SecNumCloud CopilotFR Sovereign Cloud
AI-powered guidance for ANSSI SecNumCloud qualification
Specialist coverageSovereign Cloud
Germany
German national baselines and sector regimes that go beyond EU minimums.
- View →BSI C5 CopilotDE Cloud Services
AI-powered guidance for BSI C5 cloud compliance
General compliance guidanceCloud Security - View →BSI IT-Grundschutz CopilotDE
AI-powered guidance for BSI IT-Grundschutz implementation
Specialist coverageInformation Security - View →KRITIS CopilotDE Critical Infrastructure
AI-powered compliance for German critical infrastructure operators
General compliance guidanceCritical Infrastructure - View →NIS 2 Germany CopilotDE
AI-powered guidance for Germany's NIS 2 transposition (BSIG)
Specialist coverageCybersecurityCritical Infrastructure
Spain
Spanish public-sector cybersecurity baseline derived from international standards.
Netherlands
Dutch government baseline aligned with ISO 27001/27002.
Belgium
Belgian baseline run by CCB, also recognised as a NIS 2 implementation pathway.
Switzerland
Swiss critical-infrastructure rules under BACS / FINMA, separate from EU regimes.
- View →FADP CopilotCH
Navigate Switzerland's Federal Act on Data Protection with confidence
Specialist coveragePrivacyData Protection - View →FINMA RS 23/1 CopilotCH
Navigate operational risk and resilience requirements under FINMA Circular 2023/1
Specialist coverageOperational ResilienceFinancial ServicesInformation Security - View →ISG CopilotCH
AI-powered guidance for Swiss information security compliance
General compliance guidanceInformation SecurityCritical Infrastructure - View →Switzerland ICT Minimum Standard CopilotCH
Navigate Switzerland's ICT resilience framework with confidence
Specialist coverageCybersecurityCritical InfrastructureInformation Security
Austria
Austrian information security and cybersecurity transposition regimes.
Australia
ACSC-led prescriptive baselines and federal contractor requirements.
Canada
Canadian federal privacy regime and provincial laws like Quebec's Law 25.
India
Indian privacy, cyber-incident, and sectoral baselines from MeitY, CERT-In, RBI and SEBI.
- View →CERT-In Directions 2022 CopilotIN
Understand India's mandatory cyber-incident reporting and log-retention obligations under the CERT-In Directions
Specialist coverageCybersecurityInformation Security - View →DPDPA CopilotIN
Navigate India's Digital Personal Data Protection Act and DPDP Rules 2025 with confidence
Specialist coveragePrivacyData Protection - View →RBI IT Governance CopilotIN
Navigate the RBI Master Direction on IT governance, risk, controls and assurance with confidence
Specialist coverageFinancial ServicesInformation SecurityCybersecurity - View →SEBI CSCRF CopilotIN
Navigate SEBI's Cybersecurity and Cyber Resilience Framework with confidence
Specialist coverageCybersecurityFinancial ServicesOperational Resilience
Brazil
Brazil's LGPD privacy regime and sectoral cybersecurity expectations.
Singapore
Singapore's PDPA and MAS-aligned security baseline for the APAC hub.
Japan
Japan's APPI privacy law and METI/NISC security guidance.
United Arab Emirates
UAE federal data protection and NESA information assurance standards.
South Africa
South Africa's POPIA privacy regime and sectoral security duties.
