Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
Live Monitoring

EU Regulatory Change Monitoring & Compliance Tracker

Free regulatory monitoring tool tracking DORA, NIS2, GDPR, EU AI Act, and 20 more compliance frameworks. AI-powered summaries from 18 official sources. Weekly digest delivered every Monday.

EU AI Act enforcement: Aug 2026 DORA RTS live now Data Act: Sep 2026
650
Changes Tracked
24
Frameworks
18
Official Sources
22/25
Feeds Healthy
What we monitor

Built for compliance teams

Everything you need to stay on top of regulatory changes.

Real-time Monitoring

Daily automated scans of 18 official regulatory sources including EUR-Lex, EBA, EDPB, ESMA, BaFin, BSI, ANSSI, and more.

24 Frameworks

Intelligent matching across DORA, NIS2, GDPR, EU AI Act, CRA, DSA, and more using CELEX codes and keyword analysis.

AI Summaries

Every regulatory change gets an AI-generated plain-language summary explaining what changed, who's affected, and what to do.

Weekly Digest

Curated weekly email with all changes grouped by framework. AI summaries included. Delivered every Monday.

Three-Tier Matching

CELEX exact match, CELEX prefix detection for delegated acts, and keyword analysis. High-confidence results you can trust.

Instant Alerts

Get notified immediately when critical regulatory changes are detected. Never miss an important update.

Frameworks

Covering the regulations that matter

DORA

Digital Operational Resilience Act · 20 changes

NIS2

Network and Information Security Directive · 11 changes

GDPR

General Data Protection Regulation · 7 changes

CSRD

Corporate Sustainability Reporting Directive

MaRisk

MaRisk (Minimum Requirements for Risk Management) · 3 changes

ISO27001

ISO/IEC 27001 Information Security

EU_AI_ACT

EU Artificial Intelligence Act · 5 changes

CRA

Cyber Resilience Act · 18 changes

DSA

Digital Services Act · 1 changes

DMA

Digital Markets Act · 9 changes

eIDAS2

eIDAS 2.0 (EU Digital Identity) · 1 changes

SOC2

SOC 2 (Service Organization Controls)

PCI_DSS

PCI DSS (Payment Card Industry)

HIPAA

HIPAA (Health Insurance Portability)

ISO42001

ISO/IEC 42001 AI Management System

AMLD6

6th Anti-Money Laundering Directive

PSD3

Payment Services Directive 3 / PSR

DATA_ACT

EU Data Act

GPSR

General Product Safety Regulation

CER

Critical Entities Resilience Directive · 1 changes

EUDR

EU Deforestation Regulation

CVE

Vulnerabilities & CVEs · 101 changes

BREACH

Breaches & Incidents · 298 changes

AI_SAFETY

AI Security & Safety · 175 changes

Latest

Recent regulatory changes

View all changes →
Ransomware: akira claims Gone Fishin' Marine — Hospitality and Tourism
On 27 May 2026, a ransomware incident involving the Akira group was published on the ransomware tracking site ransomware.live, targeting Gone Fishin' Marine, an entity within the hospitality and to...
Read analysis →
arXiv: Code as a Weapon: A Consensus-Labeled Prompt Bank for Measuring Coding-Model Compliance with Malicious-Code Re...
This paper, published on arXiv, introduces a new benchmark called "Code as a Weapon," which is a curated set of prompts designed to test whether large language models (LLMs) that generate code will...
Read analysis →
arXiv: Efficient and Quantum-safe Internet Key Exchange Protocols for Satellite Communications
This publication from May 2026 introduces a new technical framework for Internet Key Exchange (IKE) protocols designed to be resistant to quantum computing attacks, specifically tailored for satell...
Read analysis →
arXiv: MaskClaw: Edge-Side Personalized Privacy Arbitration for GUI Agents with Behavior-Driven Skill Evolution
This paper, published on arXiv, introduces MaskClaw, a technical framework designed to enhance privacy for graphical user interface (GUI) agents—AI systems that interact with software interfaces on...
Read analysis →
arXiv: GraphSteal: Structural Knowledge Stealing from Graph RAG via Traversal Reconstruction
A new research paper, GraphSteal, published on arXiv, demonstrates a novel method for extracting the structural knowledge embedded within Graph-based Retrieval-Augmented Generation (RAG) systems. T...
Read analysis →
arXiv: Blind PRNG Hijacking: An Undetectable Integrity-Preserving Attack Against LLM Watermarking
A new academic paper published on arXiv, titled "Blind PRNG Hijacking: An Undetectable Integrity-Preserving Attack Against LLM Watermarking," presents a novel method to remove or bypass watermarkin...
Read analysis →
arXiv: Position: Retire the "Positive Backdoor" Label -- Secret Alignment Requires Strict and Systematic Evaluation
A new position paper published on arXiv, titled "Retire the 'Positive Backdoor' Label -- Secret Alignment Requires Strict and Systematic Evaluation," argues that the AI safety community should aban...
Read analysis →
arXiv: Technical Report: Exploring the Emerging Threats of the Agent Skill Ecosystem
This technical report, published on arXiv on May 27, 2026, identifies emerging security and safety risks within the rapidly growing ecosystem of AI agent skills—modular capabilities that can be dow...
Read analysis →
arXiv: Refusal Before Decoding: Detecting and Exploiting Refusal Signals in Intermediate LLM Activations
This paper, published on arXiv, introduces a novel method for detecting and exploiting refusal signals in large language models (LLMs) by analyzing their internal activations before a final output ...
Read analysis →
arXiv: Do you dare to try Test-Driven Forensics? Increasing Trust in Desktop Forensics with ADARE
This publication introduces the ADARE framework, which applies test-driven forensics to desktop investigations. It proposes a structured methodology for validating forensic tools and processes by u...
Read analysis →

Never miss a regulatory change

Join compliance professionals who rely on our weekly digest. Free during beta - premium features coming soon.