Insights
Practical AI governance guides, regulatory analysis, and research — for enterprise leaders, businesses, and individuals navigating the AI landscape.
Boards, APRA, ASIC, controls & programmes
Start herePrivacy Act, ACCC consumer law, AI6 basics
Start hereFounder guide, investor due diligence, EU AI Act
Start hereYour rights, Right to Disconnect, AI at work
Start hereWhat AI Means for Your Privacy: Your Rights When Organisations Use AI
When a company uses AI to make decisions about you — whether to give you credit, show you content, screen your job application, or set your insurance premium — you have rights. This plain-English guide explains what they are and how to use them.
Read articleA Practical Guide to AI Tools: What You Need to Know Before Using ChatGPT, Copilot, or Any AI
2026
Before you type anything into an AI tool, you should understand where your data goes, what the AI can and cannot do, and how to use it responsibly. This practical guide covers the essentials every person needs to know.
AI Governance in Agriculture: Precision Farming, Autonomous Equipment, and Supply Chain AI
2026
AI in agriculture — precision crop management, autonomous farm machinery, livestock monitoring, supply chain optimisation, and climate adaptation AI — creates a distinctive set of governance challenges at the intersection of agricultural regulation, product safety law, and data sovereignty.
AI Governance Explained Simply: What It Is, Why It Matters, and What Happens Without It
2026
If you've heard 'AI governance' and wondered what it actually means in practice — not the jargon, just the real thing — this guide is for you. What it is, why organisations need it, and what happens when they do not have it.
Is My AI Tool Safe? 7 Things to Check Before You Use Any AI at Work
2026
Before you type anything into ChatGPT, Copilot, or any other AI tool at work, there are seven things worth checking. Most people skip all of them. Here's what they are and why they matter.
AI Is Screening Your Job Application. Here's What You Need to Know
2026
Most large employers now use AI to filter job applications before any human reads them. This plain-English guide explains how these systems work, what they look for, and what rights you have when AI decides your application goes no further.
AI Rejected Your Loan or Credit Application. What Are Your Rights?
2026
Banks and lenders increasingly use AI to make credit decisions. If an algorithm rejected your application, you have rights — including the right to a reason, the right to human review, and in some cases the right to challenge the decision.
AI Is Setting Your Insurance Premium. Here's What You Need to Know
2026
Insurers are using AI to set premiums, assess claims, and decide renewals. These systems can save money — or cost you significantly more than you should be paying. What the AI looks at, and what you can do about it.
AI Is Being Used in Your Workplace and You Have Concerns. How to Raise Them.
2026
What to do when you think your employer's use of AI is unfair, inappropriate, or illegal — how to raise concerns effectively, what your rights are, and when to escalate.
Board Directors and Personal AI Liability: What Your D&O Policy Does Not Cover
2026
Directors are personally exposed when AI governance fails. D&O insurance has explicit carve-outs for technology governance failures. The personal liability landscape for AI has changed materially in the last 18 months — and most boards do not know it.
The General Counsel's AI Governance Briefing: Legal Exposure, Regulatory Risk, and What to Tell the Board
2026
AI creates legal exposure across contract, tort, employment, data protection, consumer, and regulatory law simultaneously. General Counsel need a framework for assessing and communicating this exposure. Here it is.
The CRO's Guide to AI Risk: Building a Framework That Satisfies Regulators and the Board
2026
Chief Risk Officers in financial services face AI risk from three directions simultaneously: model risk, conduct risk, and operational risk. Traditional risk frameworks were not built for this. Here is how to adapt them.
The CISO's AI Governance Brief: Cybersecurity Obligations, AI Attack Surfaces, and NIS 2
2026
AI expands the attack surface, creates new cybersecurity obligations under NIS 2 and sector-specific regulation, and introduces adversarial AI risks most security programs have not addressed. The CISO's practical briefing.
AI Governance Due Diligence for PE and VC: What to Look For, What to Walk Away From
2026
Private equity and venture capital investors are acquiring AI-exposed assets without adequate governance due diligence. The liability inherited on closing can be material. Here is the framework that experienced AI governance advisors use.
The CFO's Guide to AI Regulatory Penalty Exposure: Quantifying What Non-Compliance Actually Costs
2026
AI regulatory penalties are not theoretical. The EU AI Act allows fines of €35M or 7% of global turnover. GDPR AI violations have already resulted in nine-figure penalties. CFOs need to quantify this exposure and build it into risk management. Here is how.
AI Governance Maturity Assessment: Where Does Your Organisation Actually Stand?
2026
Most organisations believe their AI governance is more mature than it is. This structured self-assessment, used by governance advisors in enterprise engagements, reveals the gaps between perceived and actual AI governance maturity.
AI Governance in Procurement: The Questions You Must Ask Every AI Vendor Before You Sign
2026
Procurement teams are signing AI vendor contracts without adequate governance due diligence. The liability for vendor AI governance failures flows to the buyer. Here are the questions that sophisticated procurement teams are asking in 2026.
What Financial Services Regulators Actually Want on AI Governance in 2026
2026
The gap between what financial services regulators say in guidance documents and what they actually look for in examinations and enforcement actions is significant. Based on regulatory engagement across APRA, FCA, MAS, and ACPR, here is what actually matters.
AI Governance Board Reporting: What to Include, How Often, and What Good Looks Like
2026
Board AI governance reporting is evolving from occasional technology briefings to structured risk reporting. What regulators and institutional investors expect to see in board AI governance reports — and a template for what good looks like.
AI Governance Enforcement: The Cases That Defined 2024-2026 and What They Mean for Your Organisation
2026
Regulatory enforcement of AI governance obligations is no longer theoretical. From the FTC's actions against algorithmic pricing to GDPR fines for AI data processing, here are the cases that have reshaped the AI governance landscape — and the lessons for organisations.
Robodebt: The AI Governance Lessons Every Executive Should Know
2026
The Robodebt Royal Commission exposed every AI governance failure mode simultaneously — automated decisions without human oversight, inadequate documentation, deliberate opacity, and absence of accountability. The lessons are universal.
Amazon's AI Hiring Tool: The Case Study That Defined AI Discrimination Risk
2026
Amazon built and then scrapped a machine learning hiring tool that systematically discriminated against women. The case remains the definitive study of how algorithmic bias develops, why it is hard to detect, and what governance would have caught it.
The AIRA Framework: A Structured Approach to AI Risk and Governance for Enterprise
2026
The AI Integrated Risk Architecture (AIRA) provides a four-phase methodology for enterprise AI governance — Assess, Implement, Review, Adapt — built from the intersection of ISO 31000, NIST AI RMF, and the EU AI Act. How it works and why it works.
AIRA vs ISO 42001 vs NIST AI RMF: Which AI Governance Framework Is Right for Your Organisation?
2026
Three serious AI governance frameworks, each with different strengths, different audiences, and different regulatory recognition. How they compare, where they overlap, and how to choose — or combine — them for your specific context.