Guides
AI compliance, written for UK businesses
Most AI compliance material is written for large EU manufacturers. These guides are for a UK company with somewhere between one and five hundred staff, no legal department, and a team already using AI tools.
EU AI Act
Does the EU AI Act apply to UK businesses?
The Act reaches beyond the EU. Four questions that tell you whether a British company is in scope, and what to do about it if you are.
EU AI Act
EU AI Act summary in plain English
The four risk tiers, provider vs deployer duties, penalties and the timeline to 2027 — without the annexes written for machinery manufacturers.
Checklist
EU AI Act compliance checklist for SMEs
Ten practical steps, in the order they make sense: scope test, tool register, classification, oversight, training and review.
ICO guidance
ICO guidance on AI, explained for small businesses
What the UK's data protection regulator actually expects from a company using AI tools — and the shortest route to meeting it.
UK GDPR
UK GDPR and AI: what applies when you use an AI tool
Lawful basis, transparency, automated decisions and DPIAs — the four things UK GDPR asks of you the moment an AI tool touches personal data.
Sector regulators
Which UK regulator covers your AI use?
The UK has no single AI law. Instead your existing regulator — FCA, ICO, EHRC, MHRA, Ofcom, SRA — applies its own rules to AI. Find yours.
Policy template
AI usage policy template (UK)
A free, copy-and-paste AI usage policy for UK small businesses, with notes on what to change and why each clause is there.
Skip the reading
Tell us which AI tools your team uses and we'll tell you which of the above actually applies to you, tool by tool.
Check your AI compliance status