SIS-licensed ISO clauses and controls·an add-on inside the AI clients and agents you already use
    coverage

    Does Ansvar cover what you need?

    Choose a place, a topic, or both. See the published source match and what the index cannot confirm.

    Check Ansvar coverage

    Try an example

    Your coverage answer

    Choose a place, a topic, or both. Ansvar will show the published match and any gap.

    The result combines coverage.json, generated 2026-08-21, with the reviewed website sector catalogue. It confirms published source records and leaves legal applicability unresolved. The checker reports missing relationships as gaps.

    Browse all live jurisdictionsCountry pages, source layers, and corpus size49
    JurisdictionPublished source layersLawsProvisionsCheck coverage
    AlbaniaALStatute law8,749113,037
    ArmeniaAMStatute law6,416223,942
    AustriaATStatute law · Case law · Data protection+ EU5,10156,760
    BahrainBHStatute law1,62214,506
    BelgiumBEStatute law · Case law · Data protection+ EU5,778143,390
    BrazilBRStatute law4,80554,934
    BulgariaBGStatute law · Data protection+ EU1,99717,103
    Costa RicaCRStatute law16,724120,455
    CroatiaHRStatute law · Data protection+ EU4,511161,423
    CzechiaCZStatute law · Case law · Data protection+ EU45,899461,596
    DenmarkDKStatute law · Case law · Data protection+ EU62,764621,260
    DjiboutiDJStatute law2,74727,027
    EstoniaEEStatute law · Case law · Data protection+ EU1,60264,017
    FinlandFIStatute law · Case law · Data protection+ EU8,586161,785
    FranceFRStatute law · Case law+ EU3,958193,793
    GeorgiaGEStatute law94335,463
    GermanyDEStatute law · Case law · Data protection+ EU4,75392,295
    GuatemalaGTStatute law85,539
    HaitiHTStatute law113,811
    HungaryHUStatute law · Case law · Data protection+ EU4,316130,568
    IcelandISStatute law · Case law · Data protection1,71019,033
    JapanJPStatute law8,953252,261
    KosovoXKStatute law1,03931,409
    LatviaLVStatute law · Case law · Data protection+ EU2,25058,063
    LiechtensteinLIStatute law · Data protection3,61473,213
    LithuaniaLTStatute law · Case law · Data protection+ EU12,04789,810
    LuxembourgLUStatute law+ EU4,55436,098
    MaltaMTStatute law+ EU5,00956,516
    NetherlandsNLStatute law · Case law · Data protection+ EU3,25478,001
    NorwayNOStatute law · Data protection73929,222
    ParaguayPYStatute law7,07338,822
    PeruPEStatute law2,13113,857
    PolandPLStatute law · Case law · Data protection+ EU80574,651
    PortugalPTStatute law · Data protection+ EU1,13081,012
    QatarQAStatute law9,42871,155
    RomaniaROStatute law · Data protection+ EU12,001112,545
    San MarinoSMStatute law10,992104,807
    SerbiaRSStatute law82247,041
    SlovakiaSKStatute law · Case law · Data protection+ EU4,08955,921
    SloveniaSIStatute law · Case law · Data protection+ EU4011,970
    South KoreaKRStatute law6,494214,578
    SpainESStatute law · Data protection+ EU12,183298,241
    SwedenSEStatute law · Case law · Data protection+ EU6,04559,064
    TaiwanTWStatute law11,747221,082
    Trinidad & TobagoTTStatute law53321,562
    UkraineUAStatute law8,16550,710
    United KingdomGBStatute law · Data protection3,243514,115
    United StatesUSStatute law · Case law · Data protection · +210,244380,164
    UruguayUYStatute law4,76837,131

    Screening a DPIA? The European DPIA trigger-source register records the national Article 35(4) source for each jurisdiction, the legal status the authority gave it, and whether the deployed workflow queries it.

    Coverage by sector

    What we cover for each sector — regulations and standards a live, source-licensed corpus serves today. Standards are surfaced as requirement mapping, not reproduced text. Premium adds case law and agency guidance.

    IT & cloud security

    AppSec, infrastructure security, and product-security obligations.

    • ·Cyber Resilience Act (Reg (EU) 2024/2847)
    • ·NIS2 (Dir (EU) 2022/2555)
    • ·GDPR Art. 32 — security of processing
    • ·Control mapping: OWASP ASVS · NIST CSF/800-53 · ISO 27001 Annex A · CIS · MITRE ATT&CK
    • ·MITRE ATT&CK · CAPEC · CWE · D3FEND
    • ·CVE · CISA KEV · EPSS — live vulnerability context
    Explore Security

    AI governance

    EU AI Act role classification, obligations, and conformity readiness.

    • ·EU AI Act (Reg (EU) 2024/1689)
    • ·Risk classification — prohibited practices (Art. 5), high-risk (Art. 6 + Annex III)
    • ·Role duties — provider (Art. 16), deployer (Art. 26), FRIA (Art. 27), conformity (Art. 43)
    • ·GPAI & systemic-risk model provisions (Art. 51–55)
    • ·GDPR intersection — automated decisions (Art. 22), DPIA trigger (Art. 35)
    • ·EU AI Office guidance · premium
    • ·ISO/IEC 42001 — AI management systems
    Explore AI governance

    Privacy & data protection

    DPIA, privacy-by-design, transfers, and data-subject rights — grounded in GDPR.

    • ·GDPR (Reg (EU) 2016/679)
    • ·ePrivacy Directive (2002/58/EC)
    • ·Law Enforcement Directive (EU) 2016/680
    • ·GDPR Art. 22 — automated individual decision-making
    • ·National GDPR-implementation statutes
    • ·Case-law fan-out where licensing permits · premium
    Explore Privacy

    Public sector

    Procurement lawfulness, public-body AI duties, and administration compliance.

    • ·National public-procurement law
    • ·Procurement case law & preparatory works · premium
    • ·EU AI Act Art. 27 — public-body FRIA duty
    • ·GDPR Art. 35 — public-body DPIA basis
    • ·NIS2 (Dir (EU) 2022/2555) Art. 21 — public-administration security
    Explore Public sector

    Financial services

    DORA, MiCA, PSD2 and the prudential stack — at article level, with the technical standards.

    • ·DORA (Reg (EU) 2022/2554)
    • ·DORA RTS/ITS — 11 technical-standard instruments
    • ·MiCA (Reg (EU) 2023/1114) + RTS/ITS
    • ·PSD2 (Dir (EU) 2015/2366)
    • ·MiFID II / MiFIR · CRR/CRD · Solvency II · EMIR
    • ·Horizontal: GDPR · NIS2 · EU AI Act · eIDAS2
    • ·Control mapping: ISO 27001 · NIST
    • ·Case law · agency guidance · preparatory works · premium
    Explore Financial

    Automotive

    Vehicle cybersecurity engineering, TARA, and type-approval evidence.

    • ·UN R155 (cybersecurity) · UN R156 (software update)
    • ·Control mapping: ISO/SAE 21434
    • ·Control mapping: UDS · DoIP · SOVD · AUTOSAR diagnostics
    • ·Repair & maintenance information access — RMI / SERMI
    • ·Horizontal: Cyber Resilience Act · GDPR (connected-vehicle data)
    Explore Automotive

    Drone & UAS

    Drone operations, product security, threat modelling, and counter-UAS.

    • ·EU drone law — Reg (EU) 2019/947 (operations) · 2019/945 (product)
    • ·UAS threat library
    • ·Control mapping: UAS standards stack
    • ·National UAS rules + US 14 CFR Part 107
    • ·Horizontal: Cyber Resilience Act · RED · GPSR
    Explore Drone / UAS

    Agriculture & machinery

    Autonomous-machinery safety and the AI duties that ride on top.

    • ·Machinery Regulation (EU) 2023/1230
    • ·EU AI Act — high-risk safety-component duties (Reg (EU) 2024/1689)
    • ·Control mapping: agri-machinery safety stack (ISO 4254 · ISOBUS 11783 · ISO 25119 · IEC 62061 · EN 690)
    • ·Control mapping: functional safety & autonomous-machine stack (ISO 12100 · ISO 13849 · ISO 18497 · ISO 3691-4 · ISO 10218)
    • ·Farm-data governance — EU Data Act (Reg (EU) 2023/2854)
    • ·EUDR (Reg (EU) 2023/1115) — deforestation-free supply-chain duties
    • ·Horizontal: Cyber Resilience Act · GDPR
    Explore Agri & machinery

    Healthcare & medical devices

    Medical-device regulation, clinical data, and special-category privacy.

    • ·Medical Device Regulation (Reg (EU) 2017/745)
    • ·In Vitro Diagnostic Regulation (Reg (EU) 2017/746)
    • ·Clinical Trials Regulation (Reg (EU) 536/2014)
    • ·European Health Data Space (Reg (EU) 2025/327)
    • ·GDPR Art. 9 — special-category health data (+ full GDPR)
    • ·Horizontal: NIS2 · EU AI Act (software as a medical device) · CRA
    • ·MDCG medical-device guidance · premium
    Explore Healthcare

    Industrial / OT / ICS

    OT security, robot-cell safety, and live ICS advisory enrichment.

    • ·Control mapping: IEC 62443 (1-1…4-2)
    • ·Control mapping: ISO 10218-1/-2:2025 + the safety-security bridge
    • ·OT protocol security models: Modbus/TCP, DNP3, OPC UA, PROFINET, EtherNet/IP (CIP), IEC 61850/62351, BACnet/SC
    • ·EU Machinery Regulation (EU) 2023/1230
    • ·Cyber Resilience Act · NIS2
    • ·CISA ICS/OT advisories
    Explore Industrial / OT

    Robotics & automation

    Robot and cobot safety, machinery conformity, and the security of the robot stack.

    • ·Machinery Regulation (EU) 2023/1230
    • ·EU AI Act — high-risk safety-component duties (Reg (EU) 2024/1689)
    • ·Control mapping: ISO 10218-1/-2:2025 + ISO/TS 15066 collaborative operation
    • ·Control mapping: functional safety (ISO 12100 · ISO 13849) + IEC 62443 industrial cyber
    • ·ROS 2 / DDS security + robot exploitation chains
    • ·Horizontal: Cyber Resilience Act · NIS2
    Explore Robotics

    Rail & signalling

    Railway cybersecurity and signalling safety, from CLC/TS 50701 zones to the safety case.

    • ·Control mapping: CLC/TS 50701 railway cybersecurity
    • ·Control mapping: EN 50126 RAMS · EN 50129 signalling safety case
    • ·Control mapping: IEC 62443 industrial cyber
    • ·ENISA transport threat landscape — railway
    • ·Horizontal: NIS2 (Dir (EU) 2022/2555) · CER (EU) 2022/2557
    Explore Rail

    Energy & utilities

    Grid and generation compliance, anchored on NIS2 essential-entity duties.

    • ·National energy statutes
    • ·NIS2 (Dir (EU) 2022/2555)
    • ·Critical Entities Resilience Directive (EU) 2022/2557
    • ·Cybersecurity Act (EUCC) · Cyber Solidarity Act
    • ·Energy case law · preparatory works · agency guidance · premium
    Explore Energy

    ESG & sustainability

    Sustainability reporting and the EU green-finance taxonomy, at article level.

    • ·CSRD (Dir (EU) 2022/2464)
    • ·EU Taxonomy Regulation (Reg (EU) 2020/852)
    • ·CBAM (Reg (EU) 2023/956)

    Telecommunications

    National regulatory-authority decisions and NIS2 operator obligations.

    • ·National telecom regulatory-authority decisions · premium
    • ·NIS2 — telecom-operator obligations

    Defense & aerospace

    Aviation-information-security regulation and national security-protection law.

    • ·EASA Part-IS (Reg (EU) 2023/203)
    • ·National security-protection law
    • ·Horizontal: NIS2
    More sectors in development
    • Chemicals & REACHChemicals Regulation is serving while its methodology corpus completes a content review.
    • MaritimeMaritime security is held offline pending a source-licensing audit.

    Listed only where a live MCP serves the corpus and its source licensing is GREEN. Per the No Silent Fallbacks policy, planned coverage is in the "in development" list, not above.

    Missing a corpus you need? Tell us.

    The published index includes sources its producer marks live after licence review. If the source you need is absent, ask us to review it.

    Tell us the source, the workflow it would unlock, and any licence terms you know. We will tell you whether we can host it and what review remains.

    Check your jurisdiction from your own client.

    One MCP connection to gateway.ansvar.eu — Claude, Claude Code, Cursor, VS Code Copilot, or Open WebUI. Free tier: 100 searches a day with a B2B sign-up.