AI governance, minus the marketing
Reference material on what the law requires, what the frameworks ask for, and what works in practice. Written for the person who will have to take it to legal, to the committee or to the auditor — not to generate a lead. Nothing here asks for a signup.
What Shadow AI is
9 minThe definition, why banning fails, and what to do instead.
Brazil's LGPD and AI tools: what the law requires
12 minArticle by article: legal basis, records of processing, international transfers, and what becomes an audit finding.
AI usage policy: an annotated template
14 minTen sections, the suggested wording for each, and why every clause is there.
How to build an AI inventory (AI-BOM)
11 minThe document every framework assumes and almost no company has. Fields, sources and the order to build it.
ISO/IEC 42001 in practice
13 minStructure, Annex A controls, what carries over from ISO 27001, and the road to certification.
The EU AI Act for companies outside Europe
12 minWhy it reaches companies that do not sell to Europe, the four risk tiers, and the calendar.
Missing a topic?
These guides are reviewed every six months and the list grows with the questions we get. If there is an AI governance topic that should be here, write to contato@tangerinai.com.