Governance & EU AI Act
Policies, human review, risk ownership, SME governance, and regulatory readiness.
8 stories (4 articles · 4 videos)
Start here
A few good first pieces before you browse the full feed.
9 min readEU AI Act for SMEs: a practical governance plan
The EU AI Act is not just a legal problem for large vendors. A practical SME plan for inventory, risk classification, human oversight, transparency, vendor records, and rollout discipline.
Advanced
9 min readHuman-in-the-loop design patterns for AI workflows
Human review is not a vague safety blanket. A practical guide to deciding what humans approve, sample, audit, escalate, or never delegate in AI workflows.
IntermediateMore in this topic
6 min readThe voice on the phone sounds familiar: recognising AI-enabled scams
A calm, practical guide to voice-clone emergencies, impersonation messages, fake media, and AI-polished scams — with a family verification plan that works even when the fake looks or sounds convincing.
New to AI
17 minutes12-Factor Agents: Patterns of reliable LLM applications — Dex Horthy, HumanLayer
AI Engineer. Dex Horthy explains why reliable agent systems are mostly disciplined software around a few LLM calls: own the prompt, own the context window, keep control flow deterministic and use tool calls to contact humans when the workflow needs judgment. That maps directly to the article's approval, exception and escalation patterns.
Intermediate
18 minutesAWS re:Invent 2025 - Implementing Human-in-the-Loop Controls for Multi-Agent AI Systems (CNS428)
AWS Events. This lightning talk names the business moments where human control is needed: high-stakes decisions, irreversible actions, regulatory requirements, trust-building phases, ambiguous edge cases and graceful degradation. It also shows concrete implementation mechanisms such as MCP elicitations, Step Functions callback waits and approval nodes.
Intermediate
56 minutesAI Agents in Finance with HPE's Chief Financial Officer (CFO)
CXOTalk. HPE CFO Marie Myers describes rolling agentic AI (their "Alfred" platform) across a 3,600-person finance organization with the discipline the article argues for: a direct-versus-indirect ROI framework, stage gates that decide whether each use case continues or stops, mandatory human-in-the-loop quality controls, and workflow-level metrics such as a weekly review process losing roughly 90% of its manual effort. Adoption is measured as changed work, not tool logins.
Advanced
30 minutesEU AI Act Explained: Turning Compliance into Competitive Advantage | Carme Artigas
MSP GLOBAL. Carme Artigas chaired the Council negotiations that produced the AI Act, and here she explains it to managed service providers — the companies SMEs actually buy AI through. She walks the phased timeline, from the August 2025 GPAI code of practice to the August 2026 conformity-assessment deadline, and the concrete obligations that follow, such as requiring compliance documentation from vendors. That is the same inventory, vendor-evidence and ownership work the article turns into an operating plan.
Advanced
9 min readAI ROI and maturity: how to measure adoption that actually works
AI adoption should not be measured by how many people tried ChatGPT. A practical framework for measuring workflow ROI, quality, risk, maturity, and scale-readiness.
Advanced