Changelog
What's shipped recently. Proof of life, and a record of the roadmap turning into real features.
August 2026
- AI remediation advice. Ask for an AI-drafted, prioritised treatment plan for any risk — grounded in the curated control catalogue, opt-in per risk, nothing stored.
- Full data export. Download one register's risks as CSV, or a whole workspace (registers, risks, change history, AI systems, vendors, incidents, posture) as a zip. No lock-in.
- Change history. Every register now keeps an append-only who-changed-what-when trail, so decisions and score changes stand up as audit evidence.
- Data Processing Agreement. A self-serve GDPR Article 28 DPA for organisation workspaces.
- Risk register templates. Free, downloadable worked examples for common register types.
- Self-service password reset and open-join for demo organisations.
On the near roadmap
- EU AI Act, ISO/IEC 42001 and NIST AI RMF framework profiles.
- SSO / SAML for organisation plans.
- A named company entity and a signed-DPA flow.
Roadmap items are goals, not shipped features — this list only claims what's live.