Skip to main content
Compliance

Compliance work that stays organised

European companies face, among others, GDPR, the EU AI Act, and NIS2 — but most early-stage companies only need to comply with the basics.

Regulations

GDPRIn force
AI ActIn force · phased application
NIS2National implementation varies
I - Maturity

Compliance should start with what matters for the company stage.

Cut through regulatory complexity. Know exactly what applies to your company stage and skip what doesn't. Practical compliance for founders, not lawyers.

Checklist

Minimum viable compliance first. Then the system.

The hub keeps FAQs and resources tied to first compliance actions.

01
Privacy policy published
02
Cookie banner implemented
03
DPAs with vendors signed
04
Processing register created
05
Data subject rights process
06
AI risk classification (if applicable)
07
DPIA for high-risk processing (guided wizard in Lexi)
What changed, and why

An official source becomes a compliance gap you can act on.

Real Outlex screen · synthetic example data
The compliance gap
Compliance gap: The planned employee analytics pilot is missing from your GDPR Article 30 records.
The official source
Official source: UK GDPR Art. 30. Verified today at 09:10.
II - FAQ

FAQs stay inside the hub.

The structured answers continue to feed the FAQPage schema.

Compliance made simple for companies

Start your free trial, or book a demo if you want a guided walkthrough of your workflow.

GDPR · AI Act · NIS2 · Product-connected resources