Comply
Framework coverage across all AI use cases
EU AI Act73%
13 gaps remaining
NIST AI RMF61%
18 gaps remaining
OWASP LLM Top 1048%
24 gaps remaining
ISO 4200155%
21 gaps remaining
Overall Coverage Breakdown
EU AI Act29 covered · 8 partial · 15 gap
NIST AI RMF27 covered · 11 partial · 14 gap
OWASP LLM Top 1028 covered · 13 partial · 11 gap
ISO 4200121 covered · 13 partial · 18 gap
Covered
Partial
Gap
Priority Remediations
EU AI ActCRITICAL
Assign human oversight to 8 high-risk use cases
Deadline: Aug 2026
OWASP LLMHIGH
Apply prompt injection guards on 6 customer-facing LLMs
Deadline: Q2 2026
NIST AI RMFMEDIUM
Document AI risk assessments for 12 unassessed use cases
Deadline: Q3 2026
Compliance Gaps — Action Required
| Use Case | Department | EU AI Act | NIST AI RMF | OWASP LLM | Action |
|---|---|---|---|---|---|
| Security Log Analyser | IT | Gap | Partial | Gap | |
| CV Screening | HR | Gap | Gap | Partial | |
| Interview Scorer | HR | Gap | Gap | Partial | |
| Personal ChatGPT Use | Various | Gap | Gap | Gap | |
| Notion AI | Various | Gap | Gap | Gap | |
| Grammarly with Confidential Data | Various | Gap | Gap | Gap | |
| GitHub Copilot (Unlicensed) | IT | Gap | Gap | Gap | |
| Midjourney for Marketing | Various | Gap | Gap | Partial | |
| Perplexity for Research | Various | Gap | Gap | Gap | |
| Claude.ai Personal Account | Various | Gap | Gap | Gap | |
| Otter.ai for Client Calls | Various | Gap | Gap | Gap | |
| Whisper Meeting Transcription | IT | Gap | Gap | Gap |