AI compliance without the complexity
Complete audit trails for every AI agent decision, exportable in full for your auditors. Built for EU AI Act and GDPR workflows. Be audit-ready without changing how you work.
€35M fines for non-compliance
The EU AI Act requires complete documentation of AI decision-making. Without proper audit trails, organizations face massive fines and operational restrictions.
- Every AI decision documented in xAPI format
- Complete audit trail with timestamps
- Human oversight records captured
- Immutable, tamper-evident ledger
- Export-ready for auditors
One platform, all standards
One immutable source of truth your evidence collection can draw from
EU AI Act
Designed forHuman oversight documentation and decision trails aligned with Article 14 requirements.
SOC 2
Designed forThe immutable ledger provides raw evidence for Trust Services Criteria. Empress itself is not SOC 2 certified today.
GDPR
Designed forData processing records, right to explanation, and automated decision-making logs.
HIPAA
Designed forAudit trails and access logging suited to systems handling protected health information.
Compliance happens automatically
Connect your AI agents once. Every action is recorded in the xAPI format that auditors expect. When you need a compliance report, click a button.
{
"actor": {
"name": "Finance Agent v2.3",
"account": { "name": "agent-finance-01" }
},
"verb": {
"id": "approved",
"display": "approved loan application"
},
"object": {
"id": "application-8921",
"definition": {
"name": "Loan Application #8921",
"description": "Business loan $50,000"
}
},
"result": {
"success": true,
"extensions": {
"decision_factors": [
"Credit score: 720",
"Revenue trend: +15%",
"Debt ratio: 0.3"
],
"human_override": false,
"confidence": 0.92
}
},
"timestamp": "2026-02-17T14:32:01.234Z",
"stored": "2026-02-17T14:32:01.456Z",
"authority": {
"name": "Empress Compliance System"
}
}Industry-proven format auditors trust
xAPI has been the standard for learning and experience data for over 10 years. Regulators and auditors recognize it. Your records are portable, not locked in.
Compliance questions
When does EU AI Act enforcement begin?
Full enforcement begins August 2, 2026. However, some provisions are already in effect. Organizations should start preparing now to ensure compliance by the deadline.
What AI systems are covered by the EU AI Act?
The Act applies to AI systems used in the EU, regardless of where the provider is based. High-risk AI systems (including many business-critical applications) have the strictest requirements.
What documentation does Article 14 require?
Article 14 requires human oversight capabilities and documentation showing that humans can understand, intervene in, and override AI decisions. Empress captures this automatically.
Can I use Empress for SOC 2 audits?
Empress's immutable ledger and full-data export give you raw evidence you can bring to a SOC 2 audit of your own systems. Empress itself does not hold a SOC 2 certification today, and there is no automated report generator — you export the ledger and work with your auditors.
How long are records retained?
Platform tier and above includes unlimited retention. You control how long records are kept. EU AI Act requires records be kept for at least 6 months after the system is withdrawn.
Get compliant before the deadline
Join the beta to start recording AI decisions. Be audit-ready when regulators come calling.