Introduction
AI Trust Platform is an open-source, end-to-end AI governance platform purpose-built for the EU AI Act. It helps organizations manage AI systems throughout their lifecycle — from initial registration and risk classification to compliance management, ongoing monitoring, and review.
The platform connects business, technical, and compliance stakeholders through structured, role-based workflows, creating a consistent view of AI systems, their risks, and their compliance status.
INFO
AI Trust Platform is currently in beta and under active development. It provides an early version of the end-to-end governance experience for exploring and evaluating the platform.
Some capabilities, including role-based access and authorization, are still being developed. The current release is intended for evaluation and testing rather than production use.
Feedback is welcome and helps shape the platform as it evolves.
What it does
The platform brings together four core areas of AI governance:
- Register & classify — Maintain a central inventory of AI systems and determine their applicable risk classification based on the EU AI Act.
- Assess & manage compliance — Translate regulatory requirements into structured assessments, obligations, controls, and evidence.
- Monitor AI systems — Maintain visibility into deployed AI systems and relevant changes throughout their operational lifecycle.
- Detect & respond to change — Identify relevant system, risk, or regulatory changes and initiate the appropriate review or compliance actions.
Who it's for
The platform connects the people responsible for an AI-enabled application across business, technology, and compliance.
| Key Role | Responsibility in the platform |
|---|---|
| Application Owner | Registers AI-enabled applications, provides the business context, and responds to requests throughout the compliance lifecycle. |
| AI Engineer | Reviews the technical setup, provides AI and model information, and validates changes that may affect risk or compliance. |
| Compliance Officer | Reviews risk classifications, oversees compliance assessments, and confirms that regulatory requirements are addressed. |
| Administrator | Manages users, roles, and platform configuration — without access to application or compliance content. |