Public Roadmap

EU AI Act today.
The complete AI governance platform, next.

Diliga started with EU AI Act compliance documentation. We are expanding into every major AI governance framework your organisation needs — ISO/IEC 42001, NIST AI RMF, UK AI Safety Framework, and DORA. One platform. All frameworks. Due diligence, done.

Last updated: July 2026

Framework Coverage & Status

6 Frameworks Tracked

EU AI Act

85%

Reg. EU 2024/1689

StatusLive

GDPR AI Addendum

30%

Reg. EU 2016/679

StatusPartial

ISO/IEC 42001:2023

0%

AIMS Standard

StatusQ4 2026

NIST AI RMF 1.0

0%

NIST SP 1270

StatusQ1 2027

UK AI Safety Framework

0%

DSIT Guidance

StatusQ2 2027

DORA

0%

Reg. EU 2022/2554

Status2027

PHASE 1 — SHIPPED

✓ Live
July 2026

EU AI Act Risk Classification

EU AI Act

Automated risk tier assignment across PROHIBITED, HIGH RISK, LIMITED RISK, and MINIMAL RISK based on Annex III categories and Article 5 prohibited practices. Confidence scoring included.

Article 50 Transparency Disclosure

EU AI Act

Legally-structured transparency notice for chatbots, AI customer service tools, deepfake generators, and emotion recognition systems. August 2, 2026 deadline covered.

Article 9 Risk Management System

EU AI Act

Full 8-section RMS document covering risk identification, likelihood and severity matrix, mitigation measures, residual risk acceptance, incident response, and review schedule.

Article 11 / Annex IV Technical Documentation

EU AI Act

Complete Annex IV compliant technical dossier — system architecture, data flows, training data governance, performance metrics, cybersecurity measures, and post-market monitoring plan. All 9 mandatory Annex IV sections.

Article 14 Human Oversight Measures

EU AI Act

Framework document covering human-in-the-loop and human-on-the-loop oversight architectures, override and intervention procedures, operator training requirements, and escalation protocols.

Article 27 FRIA

EU AI Act

Fundamental Rights Impact Assessment covering all 9 applicable Charter rights, stakeholder identification, vulnerable groups analysis, impact scoring, and mitigation measures.

In-browser document editor

Platform

Tiptap-powered rich-text editor with PLACEHOLDER highlighting, restore-to-original, auto-save, and unsaved changes warnings. Edit documents before downloading.

PDF export

Platform

Print-ready PDF with cover page, table of contents, numbered sections, legal disclaimer, and formal signature block. Unwatermarked on paid plans.

Compliance Readiness & Quality Scoring

Platform

AI-driven evaluation of generated documentation quality. Scores your readiness based on evidence completeness and placeholder resolution.

Compliance Gap Analysis

Platform

Automated detection of missing compliance evidence. Highlights gaps in your documentation that could lead to audit failures.

Cross-Document Consistency Validation

Platform

Advanced AI auditor that cross-references all generated documents to detect logical contradictions and ensure alignment across your entire compliance dossier.

DOCX export

Platform

Editable Word document export alongside PDF — required for enterprise procurement teams, legal review, and regulator submissions.

Team collaboration seats

Platform

Invite colleagues to your workspace. Assign roles — Owner, Admin, Member. Collaborate on compliance documentation across your organisation.

PHASE 2 — BUILDING NOW

⚡ In progress
Q3 2026

Document versioning

Platform

Full version history for each document. Restore any previous version as your AI system evolves. Required for regulatory audit trails under Article 18 (10-year retention obligation).

Compliance summary report

EU AI Act

Executive-level overview document — obligations that apply, compliance deadlines, gap analysis, and recommended next steps. Shareable with board, investors, or enterprise procurement.

EU AI Act regulation update alerts

EU AI Act

Email notifications when EU AI Act guidance, Commission delegated acts, or Annex III scope changes affect your documented AI systems. Stay compliant as the regulation evolves.

Article 49 EU database registration assistant

EU AI Act

Guided workflow for registering high-risk AI systems in the official EU AI Act database maintained by the European AI Office. Required for high-risk AI providers before market placement.

PHASE 3 — PLANNED

Planned
Q4 2026 — Q1 2027

ISO/IEC 42001 AI Management System documentation

ISO 42001

Full AIMS documentation package — AI policy, objectives, risk and impact assessment (Clause 6.1), operational planning (Clause 8), and performance evaluation. Reuses EU AI Act documents where clause mappings overlap (Clause 6.1 maps to Article 9; Clause 7.2 maps to Article 4 AI literacy).

ISO 42001 gap analysis report

ISO 42001

Automated gap analysis comparing your current AI governance documentation against all ISO 42001 clauses. Produces a prioritised gap register with effort estimates for certification readiness.

NIST AI RMF — GOVERN function

NIST AI RMF

AI governance policies, accountability structures, and organisational risk tolerance documentation aligned to the NIST Govern function. Suitable for US-regulated industries and organisations responding to federal AI procurement requirements.

NIST AI RMF — MAP + MEASURE functions

NIST AI RMF

AI risk identification and measurement documentation — risk categorisation, impact assessment, and performance monitoring metrics mapped to NIST Map and Measure functions.

Cross-framework compliance register

Platform

Single register mapping each AI system across EU AI Act, ISO 42001, and NIST AI RMF simultaneously. One source of truth for all your AI governance obligations. Automated crosswalk so evidence gathered once satisfies multiple frameworks.

GDPR AI addendum documentation

EU AI Act

AI-specific GDPR documentation — Data Protection Impact Assessment (DPIA) template for AI systems, lawful basis analysis for AI processing, and data subject rights framework for AI-processed personal data.

Compliance monitoring dashboard

Platform

Live dashboard showing compliance status per AI system, overdue reviews, upcoming regulatory deadlines, and system change alerts. Know your compliance posture at a glance.

Developer API

Platform

Programmatic REST API for generating and retrieving compliance documents. For enterprise DevOps pipelines, law firm white-label integrations, and compliance-as-code workflows.

PHASE 4 — FUTURE

Future
2027 — 2028

UK AI Safety Framework documentation

UK AI Safety

DSIT guidance-aligned documentation for organisations deploying AI in the United Kingdom. Covers the UK's voluntary AI Safety Framework and emerging binding obligations post-Brexit.

DORA AI operational resilience

DORA

Digital Operational Resilience Act AI-specific controls for financial sector organisations. Covers ICT risk management, incident classification, and third-party AI provider oversight under Reg. EU 2022/2554.

NIST AI RMF — MANAGE function

NIST AI RMF

Incident response plans, risk treatment documentation, and ongoing AI risk management records aligned to the NIST Manage function.

ISO 42001 certification evidence pack

ISO 42001

Full evidence bundle for ISO 42001 certification audit — all required documentation, internal audit templates, management review records, and notified body readiness checklist.

White-label for law firms and consultancies

Platform

Branded document output. Law firms and AI governance consultancies can offer Diliga-powered compliance documentation under their own brand.

Multi-language document output

Platform

Documents generated in German, French, Dutch, Spanish, and Italian — for EU companies that need to submit in their national regulatory language. EU AI Act Article 9(2) permits national language submissions.

Strategic Vision

Why we're expanding beyond the EU AI Act

The EU AI Act is the law. ISO 42001 is the operational blueprint. NIST AI RMF is the risk methodology. Your customers need all three.

Most enterprise compliance leads in 2026 face the same problem: four major AI governance frameworks exist — EU AI Act, ISO 42001, NIST AI RMF, and the OECD Principles — each with different scope, authority, and implementation demands. None is a complete substitute for the others.

The organisations that will navigate AI governance most effectively are those that stop treating these as separate compliance projects and maintain a single cross-framework register. That is what Diliga v2 is building.

ISO 42001 Clause 6.1 maps directly to EU AI Act Article 9. Clause 7.2 maps to Article 4 AI literacy obligations. Evidence gathered once satisfies both. We handle the crosswalk automatically.
3 frameworksEU AI Act + ISO 42001 + NIST AI RMF
~40-50% overlapDocuments generated for EU AI Act satisfy nearly half of ISO 42001 requirements automatically
1 registerSingle cross-framework evidence register — coming Q1 2027

Missing something?

If there's a framework, document type, or feature you need that isn't on this roadmap — tell us. We build based on what our customers actually need.

Send feedback Or email us directly at roadmap@diliga.io
August 2026 Enforcement

Start with the August 2026 deadline

Article 50 transparency obligations are active now. Generate your first compliance document in 30 minutes.