UK DUAA right to complain enforces in -- days · 19 June 2026 EU AI Act high-risk enforces in -- days · 2 August 2026

Coverage regulation

GDPR coverage for runtime AI governance.

GDPR obligations become runtime controls for lawfulness, fairness, transparency, purpose limitation, minimisation, automated decisions, DPIA, and evidence quality.

Canonical route family: /obexgate/coverage/regulations/.

Operational controls.

01

Article 5 processing principles

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

02

Articles 13 and 14 transparency

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

03

Article 22 automated decisions

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

04

Article 25 privacy by design

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

05

Article 32 security of processing

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

06

Article 35 DPIA

Mapped into assessment, policy gates, runtime verdicts, remediation output, and sealed audit evidence.

Make GDPR governance executable.