Topic guides
Cross-vendor reference pages on the compliance questions that recur in AI procurement. Use these alongside individual vendor profiles when you need the buyer-side context, not the vendor-by-vendor read.
DPA for AI vendors: what to actually check before you sign
Buyer-side reference for the AI vendor DPA. What clauses matter, what defaults bite, and where the six biggest vendors land on each. CIPP/E-reviewed.
Last reviewed 2026-05-30
EU AI Act for AI buyers: what you actually have to do
Deployer-side guide to the EU AI Act for buyers procuring AI tools. Role classification, risk tier, the 2027-12-02 high-risk postponement, and where each major vendor sits. CIPP/E-reviewed.
Last reviewed 2026-05-30
HIPAA for AI tools: what a Business Associate Agreement actually covers
Healthcare buyers reading the HIPAA position on AI vendors. Which vendors sign BAAs, on which tiers, and what the BAA does and does not cover for AI deployments. CIPP/E-reviewed.
Last reviewed 2026-05-30