Editorial Team

Governome Editorial Team

Articles on Governome are researched and written by the site's editorial team, working from primary sources — statutes, official regulator guidance, and enforcement records — rather than secondary summaries or vendor content. Every guide covering a regulatory requirement is checked against the source before publication and carries a visible "last reviewed" date so you can judge currency for yourself. We're a small, early-stage team and don't yet publish individually named bylines for every contributor; when a specific article has a named external reviewer — outside counsel, a credentialed practitioner — that person is credited directly on the article, in addition to this team byline. See our editorial standards for the full sourcing and review process.

Government policy officials in discussion about AI regulation enforcement
Photo: Zac Nielson via Unsplash
Colorado's SB 205 has been amended and delayed more than once since passage. Here's a plain accounting of what changed in the latest round, and which obligations were never in dispute.
Governome Editorial Team · 2 min read
An AI system subject to heightened legal obligations because of what it's used for — not because of the underlying technology — typically because it materially affects access to employment, credit, healthcare, housing, or legal standing.
Governome Editorial Team

ai governance

AI Governance

The structure of accountability, review, and decision rights a company puts in place to control how it builds, buys, and deploys AI systems.
Governome Editorial Team

risk management

Algorithmic Bias

A systematic pattern in a model's outputs that disadvantages a particular group, arising from training data, feature selection, or optimization choices rather than random error.
Governome Editorial Team
Compliance reviewer working through a classification checklist at a desk
Photo: Zulfugar Karimov via Unsplash
Step through this checklist before concluding an AI system falls outside the EU AI Act's high-risk category. It mirrors the actual two-track Article 6 test, not a simplified summary of it.
Governome Editorial Team · 2 min read
Legal and compliance staff drafting an AI acceptable use policy document
Photo: Carrie Allen www.carrieallen.com via Unsplash
A practical AI acceptable use policy template covering approved tools, data handling rules, prohibited uses, and disclosure requirements. Adapt the bracketed sections before adopting it.
Governome Editorial Team · 3 min read
Board directors in discussion about AI oversight responsibilities
Photo: Andreea Avramescu via Unsplash
Board-level AI oversight usually fails in one of two directions: no oversight at all, or oversight so generic it doesn't change what management does. Here's what directors should actually be asking.
Governome Editorial Team · 3 min read
Executive leadership team in a meeting establishing AI governance oversight
Photo: Vitaly Gariev via Unsplash
Most AI governance committees fail for the same reason most committees fail: no real decision authority, no clear charter, and no named accountability when something goes wrong. Here's what a working one actually looks like.
Governome Editorial Team · 3 min read
Australian government policy officials discussing AI guardrail consultation
Photo: Karson via Unsplash

regulations australia

Australia AI Regulation

Australia has consulted extensively on mandatory AI guardrails modeled conceptually on risk-tiered approaches elsewhere, but hasn't enacted comprehensive AI legislation as of this writing.
Governome Editorial Team · 2 min read
Government policy officials reviewing Canada's stalled federal AI bill
Photo: Jiamin Huang via Unsplash

regulations canada

Canada AI Regulation

Canada's proposed Artificial Intelligence and Data Act did not survive the federal legislative process. Here's what actually governs AI in Canada right now.
Governome Editorial Team · 2 min read
UK sector regulators discussing cross-sectoral AI principles
Photo: Connor Gan via Unsplash

regulations uk

UK AI Regulation

The UK's pro-innovation approach empowers existing regulators like the FCA and ICO to apply shared AI principles within their own sectors, rather than passing a single comprehensive AI law.
Governome Editorial Team · 2 min read
Government policy officials discussing international AI principles
Photo: Zoshua Colah via Unsplash
The OECD AI Principles are the highest-level, most widely adopted AI governance principles internationally — the shared foundation most national AI policies, including the EU AI Act, build on.
Governome Editorial Team · 1 min read
Compliance counsel reviewing California automated decision-making rules
Photo: Sherwin Ker via Unsplash

regulations us california

California AI Regulations

California regulates AI through several parallel tracks rather than one comprehensive law: CPPA rulemaking on automated decision-making technology, generative AI disclosure statutes, and employment law amendments.
Governome Editorial Team · 2 min read
Risk analysts mapping AI risk factors on a whiteboard during a working session
Photo: Walls.io via Unsplash

frameworks

ISO/IEC 23894

ISO/IEC 23894 adapts ISO 31000 risk management principles specifically for AI systems. It's guidance, not a certifiable standard — but it's the practical reference for the risk-assessment work ISO 42001 requires.
Governome Editorial Team · 2 min read
Legal team reviewing duty-of-care obligations under Colorado's AI Act
Photo: Junior Verhelst via Unsplash

regulations us colorado

Colorado AI Act (SB 205)

Colorado's SB 205 imposes duties of reasonable care on both developers and deployers of high-risk AI systems, with impact assessment and consumer notice requirements tied to consequential decisions.
Governome Editorial Team · 2 min read
Auditor reviewing AI management system documentation for certification
Photo: Zulfugar Karimov via Unsplash

frameworks

ISO/IEC 42001

ISO/IEC 42001 is a certifiable AI management system standard. Unlike the NIST AI RMF, an accredited body can actually audit you against it and issue a certificate.
Governome Editorial Team · 2 min read
US federal agency officials discussing AI enforcement policy
Photo: Nicholas Chester-Adams via Unsplash
There's no single federal AI law in the US. Here's what federal agencies have actually said about AI, and why existing law already covers more AI use cases than most companies assume.
Governome Editorial Team · 2 min read
Risk management team analyzing AI system risk factors in a meeting
Photo: Christina @ wocintechchat.com M via Unsplash
The NIST AI RMF is a voluntary, four-function framework for managing AI risk. It carries real legal weight in the US — Colorado's AI Act ties an affirmative defense directly to it.
Governome Editorial Team · 2 min read
European Union policy officials in discussion at a government building
Photo: Karson via Unsplash

regulations eu

The EU AI Act

The EU AI Act classifies AI systems into risk tiers and phases its obligations in on a multi-year schedule. Here's what's actually in force today, what's still phasing in, and how the risk tiers work.
Governome Editorial Team · 3 min read
Compliance and legal professionals reviewing AI system documentation together
Photo: Amina Atar via Unsplash
Article 6 of the EU AI Act classifies a system as high-risk through a combination of Annex I product-safety overlap and Annex III use-case categories. Here's how the two-step test actually applies, with the exemption most teams get wrong.
Governome Editorial Team · 3 min read
Compliance team meeting around a table to review an AI governance framework
Photo: Beatriz Cattel via Unsplash
Most AI governance frameworks fail for the same reason: they're written to look complete in a slide deck, not to survive contact with a real model deployment. Here's what to build first, in what order, and why the sequence matters more than the paperwork.
Governome Editorial Team · 4 min read