Do you sell AI governance or compliance software?Founding Vendor Placement — $499 for 12 months →
EU AI Act · Article 4 active · Article 50 from 2 Aug 2026 · high-risk rules transition through 2027–2028
Directory/OneTrust AI Governance
Automatically assured change

SOFTWARE INTELLIGENCE PROFILE

OneTrust AI Governance

AI Governance & Inventory

Global privacy and GRC platform providing automated AI asset discovery, lifecycle risk tiering, ISO 42001 workflows, and EU AI Act regulatory cross-mapping.

HeadquartersAtlanta, USA
Starting price$1,500/mo
Last verified9 Oct 2026Automatically assured change
Source evidence2 recordsAutomated monitoring
PROFILE SNAPSHOT

What this platform provides

2 source records available

Global privacy and GRC platform providing automated AI asset discovery, lifecycle risk tiering, ISO 42001 workflows, and EU AI Act regulatory cross-mapping.

DEPLOYERPROVIDER$1,500/mo

Visit official website ↗

CUSTOMER FIT

Deployment & technical profile

Hosting / residency signalEU-Hosted
DeploymentEnterprise Multi-Tenant SaaS / Customer VPC
APIAvailable
Python SDKNot recorded
On-premiseNot recorded
Customer fitGlobal Enterprises, DPOs, and CISOs Managing Multi-Jurisdictional AI Risk and Privacy Registries

Recorded export formats: AI Inventory Register, FRIA Dossier, PDF, JSON, Excel

PROFILE QUALITY

Profile completeness & evidence signals

93/100 completeness
Evidence completeness100%
Technical readiness signalModerate
Requirement mappings5
Editorial stateSource changed — automatically assured

These are transparent catalogue signals used for discovery and prioritisation. They do not establish legal compliance, procurement suitability or endorsement.

CAPABILITIES

Operational capabilities

ai-system-inventoryrisk-managementhigh-risk-readinessai-transparencyai-literacy
REGULATORY MAPPING

Relevant compliance capabilities

These are Navigator's recorded capability mappings, not a statement that the vendor itself makes an AI Act compliance guarantee.

  • Article 9 (Risk Management)
  • Article 27 (Fundamental Rights Impact Assessments)
  • Article 50 (Transparency & Register Tracking)
  • GDPR Article 30 (AI Processing Records)

Recorded active / current scope

  • AI System Discovery & Inventory Mapping
  • Article 50 Transparency Records
  • DPIA to FRIA Bridge Assessments

Recorded prepare / transition scope

  • Article 9 Continuous Lifecycle Risk Governance
  • Article 27 Fundamental Rights Impact Assessment Automation
LIMITATIONS

Recorded limitations

  • Enterprise-tier pricing with multi-month onboarding; focused on organizational governance and risk rather than raw model-weight penetration testing
ASSURANCE SIGNALS

Evidence & standards

Labels below are separated by evidence type. A standard, framework, product capability or hosting note is not presented as a certification.

Certifications & attestations

SOC 2 Type IIISO 27001ISO 42001 ReadyFedRAMP Ready

Standards & frameworks

No standards/framework evidence recorded.

Other recorded evidence

No other evidence labels recorded.
Verification methodTechnical Documentation Review
ConfidenceHigh
Source records2
PROVENANCE

Evidence trail

Automatically assured change

Automated monitoring records source availability and change signals. Non-material changes may be automatically assured; material regulatory, certification, commercial or technical changes remain subject to editorial confirmation.

  • Source changed — automatically assured — https://www.onetrust.com/solutions/ai-governance/ (checked 2026-10-09)
View recorded source URLs
Editorial & legal scope

This profile is informational and based on source information recorded in the Navigator dataset. “Source-checked” describes the Navigator's editorial/data process; it is not a legal certification, conformity assessment, endorsement, or guarantee of regulatory compliance.

Framework reference: Regulation (EU) 2024/1689 · Profile reviewed: 9 Oct 2026

Read the methodology →