Compliance
AI agent compliance by jurisdiction
Navigate the regulatory landscape for AI agents. Each guide maps Signet scoring to specific compliance requirements and provides actionable implementation guidance.
EU AI Act
The EU AI Act is the world's first comprehensive AI regulation, establishing risk-based requirements for AI systems including autonomous agents operating in or serving EU markets.
European Union Artificial Intelligence Act
US Federal AI Policy
US federal AI policy encompasses executive orders, NIST frameworks, and agency-specific guidelines establishing safety, security, and trustworthiness standards for AI systems.
United States Federal AI Executive Orders and Guidelines
UK AI Safety Framework
The UK's approach to AI regulation emphasizes pro-innovation principles while establishing sector-specific regulatory expectations through existing regulators and the AI Safety Institute.
United Kingdom AI Safety and Regulation Framework
Singapore MAS AI Guidelines
MAS guidelines establish expectations for AI use in financial services, including fairness, ethics, accountability, and transparency (FEAT) principles for AI-driven decisions.
Monetary Authority of Singapore AI and Data Analytics Guidelines
GDPR
The GDPR governs how AI agents handle personal data of EU residents, with specific provisions for automated decision-making and data processing.
General Data Protection Regulation
HIPAA
HIPAA establishes privacy and security standards for protected health information (PHI) that AI agents must follow when operating in US healthcare contexts.
Health Insurance Portability and Accountability Act
SOX
SOX requires accurate financial reporting and internal controls for public companies, with implications for AI agents involved in financial data processing, reporting, and audit.
Sarbanes-Oxley Act
PCI-DSS
PCI-DSS establishes security requirements for entities handling payment card data, directly applicable to AI agents involved in payment processing.
Payment Card Industry Data Security Standard
CCPA/CPRA
CCPA and its amendment CPRA grant California residents rights over their personal information and regulate automated decision-making by AI systems.
California Consumer Privacy Act / California Privacy Rights Act
ISO 27001
ISO 27001 provides a framework for information security management systems (ISMS) that applies to organizations deploying AI agents handling sensitive data.
ISO/IEC 27001 Information Security Management Systems
SOC 2
SOC 2 is an auditing standard for service organizations based on trust service criteria: security, availability, processing integrity, confidentiality, and privacy.
System and Organization Controls 2
Japan AI Guidelines
Japan's AI governance framework emphasizes human-centric principles including human dignity, diversity and inclusion, sustainability, safety, and transparency.
Japan AI Strategy and Social Principles of Human-Centric AI
Australia AI Ethics Framework
Australia's AI governance combines a voluntary ethics framework with emerging mandatory guardrails, emphasizing responsible AI deployment and human oversight.
Australia's AI Ethics Framework and Voluntary AI Safety Standard
NIST AI RMF
The NIST AI Risk Management Framework provides voluntary guidance for managing risks associated with AI systems, organized around four core functions: Govern, Map, Measure, and Manage.
NIST Artificial Intelligence Risk Management Framework
FedRAMP
FedRAMP provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services used by US federal agencies, including AI agent platforms.
Federal Risk and Authorization Management Program
FINRA
FINRA regulates broker-dealers and their AI systems in US securities markets, with specific guidance on algorithmic trading, customer communications, and supervisory obligations for AI tools.
Financial Industry Regulatory Authority
MiFID II
MiFID II governs EU financial markets with specific requirements for algorithmic trading, best execution, and investor protection that apply to AI agents operating in European financial services.
Markets in Financial Instruments Directive II
PIPEDA
Canada's federal privacy law governs how private-sector organizations collect, use, and disclose personal information, with implications for AI agents processing Canadian residents' data.
Personal Information Protection and Electronic Documents Act
LGPD
Brazil's comprehensive data protection law establishes rules for processing personal data, with specific provisions for automated decision-making that directly apply to AI agents operating in Brazilian markets.
Lei Geral de Proteção de Dados (Brazil General Data Protection Law)
K-AIA
South Korea's AI Act establishes a risk-based regulatory framework for AI systems, with mandatory impact assessments for high-risk AI and specific requirements for transparency and accountability in autonomous agent operations.
South Korea Artificial Intelligence Act
Compliance-ready agents
Register your agents with Signet to receive a permanent identity and trust score.