Artificial intelligenceAssess AI obligations around the system's actual use
Examine provider and deployer roles, use-case classification, transparency, and human oversight. Keep application dates and transitions in view when researching a proposed AI feature or internal use.
Data & privacyFollow personal data through collection, use, and transfer
Work through collection, reuse, retention, individual rights, and international transfers. Give the research a specific data subject, purpose, destination, and controller or processor relationship.
CybersecurityPrepare the regulatory questions behind a security incident
Investigate security governance, vulnerability handling, and incident-notification requirements. Draft questions about affected services, reportable events, responsible authorities, and the evidence needed to assess timing.
Cloud & data centersUnderstand how a cloud arrangement changes each party's duties
Research hosting location, supplier access, resilience, and sector-specific outsourcing obligations. Explore how a cloud arrangement affects the customer and provider without assuming a certification settles every requirement.
Software & SaaSConnect your software business model with the relevant rules
Connect online-service, platform, consumer-protection, and connected-product rules to the business model. Clarify which obligations arise from the service itself and which follow from its users or customers.
TelecommunicationsSeparate equipment authorization from permission to provide telecom services
Distinguish equipment authorization and spectrum questions from telecom-service licensing. Research the relevant market using the device characteristics, network function, and activities the business intends to perform.