05 — frameworks & standards

EU AI Act

The European Union's risk-tiered regulation of AI systems, with obligations scaling from minimal to unacceptable risk. The provisions that most often reach engineering teams are Article 4 (AI literacy for staff who deploy or use AI), Article 14 (human oversight) and Article 15 (accuracy, robustness and cybersecurity) — all three of which end up asking for evidence about how agents behave, not just a policy document saying they behave.

Related terms

  • ISO/IEC 42001 Frameworks & standards

    The certifiable management-system standard for artificial intelligence — the AI equivalent of ISO 27001.

Frameworks & standards

What auditors, buyers and regulators reference. See the compliance crosswalk for the control-by-control mapping.

EU AI Act is term 5 of 8 in this part of the glossary.

Get started free Full glossary → How we test → Community agent on GitHub ↗

This page is one entry from the agentic AI security glossary, which defines 60 terms in the same style. Where a term belongs to a published taxonomy or standard — the HackAgent attack families, the OWASP lists, AMTSO's guidelines, MITRE ATLAS, ISO/IEC 42001, the NIST AI RMF, the EU AI Act — the authoritative wording is the source document's, not ours, and specifics should be verified there. "Lethal trifecta" is Simon Willison's term. OWASP® is a trademark of the OWASP Foundation; ATT&CK® and ATLAS™ are trademarks of The MITRE Corporation. Naming a framework here is description, not a claim of certification or endorsement.

glick.run — AGPL-3.0