The one-paragraph answer
AI governance is the discipline of running artificial intelligence in a way you can defend to a board, a buyer, an insurer, a regulator, or a court. It is not one law. It is fifteen overlapping frameworks, standards, and rules that all point at the same question: “Do you have an AI management system?” This library answers that question one framework at a time, in plain English, checked against the primary sources rather than against other people's summaries. Where a law has been repealed or a standard superseded, we say so on the page rather than quietly deleting it.
The line-by-line mapping between these frameworks and SRJ's operating artifacts is Appendix L of The AI Risk & Governance Review™, Volume III of The Operating Discipline for AI Library™.
What changed
Reviewed 14 July 2026
This library is reviewed against primary sources, not secondary summaries. Seven changes since the last pass are material enough that a compliance roadmap built on the old position is now aimed at the wrong target.
The AI Management System Standard
AI Vocabulary Standard
NIST AI Risk Management Framework
Govern, Map, Measure, Manage
The World's First Comprehensive AI Law
Regulation (EU) 2024/2847, and the Article 12 Trap
EU Product Liability Directive
Directive (EU) 2024/2853. Your AI Is Now a Product.
Directive (EU) 2022/2555. Where Directors Can Be Banned.
Digital Operational Resilience Act, Regulation (EU) 2022/2554
23 NYCRR Part 500, the Two AI Letters, and the CEO and CISO Certification
CMMC Phase II Suspended, DFARS Still Binds, and the Assurance Doom Loop
The Profiling Right That Governs AI Without Using the Word
The Council of Europe Framework Convention on AI, Human Rights, Democracy and the Rule of Law
The Intelligent Agent Framework, the Companion-AI Rules, and the Stack Underneath
Ten Jurisdictions Beyond the EU, the US, and China
Colorado, Texas, California, Illinois, Connecticut, Tennessee
Pending U.S. AI Bills and the Great American AI Act
SR 11-7 and the 2026 Model Risk Guidance
Superseded April 2026 by SR 26-2 and OCC 2026-13
FTC, EEOC, CFPB, SEC, HHS OCR
HIPAA, COPPA, GDPR, GLBA, FCRA, ECOA, Title VII, WARN
Financial Reporting Rules for AI
FASB ASU 2025-06, AICPA, PCAOB, SOX 302/404
The Caremark Line of Cases
ISO 27001, SOC 2, NIST CSF, COSO ERM
Software Bill of Materials and AI Bill of Materials
DAMA-DMBOK, DCAM, CDMC
The Reference Catalog Behind an AI Tool Inventory
The Complete Bibliography of the AI Governance Reference Library
The AI Business Enablement Audit™ measures your organization against every framework in this library and delivers a defensible governance dossier. Start or finish your audit below.
Start or finish your AI Audit →