Cross-cutting AI governance themes
Compare by theme
Each theme groups related obligations across the three frameworks. Click any tile to see them side by side.
Governance & Accountability
Who owns AI risk, policies, roles, leadership commitment.
Risk Management
Identifying, assessing, treating and monitoring AI risks across the lifecycle.
Data Governance
Training/validation/test data quality, bias, provenance, representativeness.
Transparency & Information
Disclosure to users, deployers, regulators; AI-generated content labelling.
Human Oversight
Meaningful human control and ability to intervene or override.
Accuracy, Robustness & Security
Performance, resilience to errors and adversarial inputs, cybersecurity.
Documentation & Records
Technical documentation, logs, evidence and traceability.
Lifecycle & Change
Design, development, deployment, decommissioning, change management.
Post-market Monitoring & Incidents
Operating phase: drift, incidents, corrective action, reporting.
Impact & Fundamental Rights
Assessing impact on people, fundamental rights, fairness.
Third Parties & Supply Chain
Suppliers, providers, deployers, GPAI model providers.
Competence & AI Literacy
Skills, awareness and training of people building or using AI.