GEN3BLOCK
Sign inFree Assessment
Resources

Tools and guidance for responsible AI.

Curated tools, open-source packages, and official regulatory guidance. Everything here is something we use with clients — nothing is filler.

Start here

Built by GEN3BLOCK

Tools and open-source packages you can use today — no sign-up required.

Start hereFree · 15–20 min

AI Readiness Assessment

48-question governance-first diagnostic covering Strategy, Skills, Data, and Governance. Scores your organisation across four pillars and delivers an instant board-ready PDF.

GEN3BLOCK Platform
Online · self-pacedInstant PDF reportNo account needed
Start hereOpen source · MIT

gdpr-safe-rag

Python toolkit for building GDPR-aware RAG pipelines. Handles PII detection, token redaction, audit logging, and PostgreSQL-backed retrieval. Used in every AskEngine and ComplianceRAG deployment.

PyPI · pip install gdpr-safe-rag
Python 3.10+MIT licencepip install gdpr-safe-rag
Start hereArticle · Dev.to

Build GDPR-Compliant RAG in Minutes

Deep-dive introduction to gdpr-safe-rag: automatic PII detection with checksum validation, GDPR Article 30 audit logging, compliance checks for retention and erasure, and LangChain integration — all from one pip install.

dev.to · Charles Nwankpa · Feb 2024
#AI #ML #Python87 testsDocker support
Governance & regulation

Official guidance

Authoritative references from UK and international regulators. The sources we use when advising clients.

Governance & regulationICO · UK regulator

ICO Guidance on AI & Data Protection

The UK Information Commissioner's Office guidance on using AI lawfully under UK GDPR — covering transparency, purpose limitation, automated decision-making, and data minimisation.

ico.org.uk
UK GDPRAutomated decisionsData minimisation
Governance & regulationDSIT · UK government

UK AI Regulation: A Pro-Innovation Approach

The UK government's regulatory framework for AI — setting out five principles (safety, transparency, fairness, accountability, contestability) that sector regulators apply to AI in their domains.

gov.uk
Policy paper5 principlesCross-sector
Governance & regulationEU · extraterritorial reach

EU AI Act — Key Obligations for UK Businesses

UK organisations supplying AI systems or outputs into the EU market must comply with the EU AI Act. This covers risk classification, conformity assessments, and prohibited practices.

digital-strategy.ec.europa.eu
Risk tiersUK exportersProhibited practices
Frameworks & standards

Industry frameworks

Internationally recognised frameworks that underpin responsible AI practice.

Frameworks & standardsNIST · USA

NIST AI Risk Management Framework

A voluntary framework to help organisations identify, assess, and manage AI risks. Four core functions — Govern, Map, Measure, Manage — covering the full AI lifecycle. Widely adopted beyond the US.

nist.gov
Govern · Map · MeasureVoluntary frameworkFull lifecycle
Frameworks & standardsISO · International standard

ISO/IEC 42001 — AI Management Systems

The first international standard specifically for AI management systems. Defines requirements for establishing, implementing, and continually improving a responsible AI programme within an organisation.

iso.org — paid standard
CertifiableOrganisation-wideContinual improvement
Our curation principle

We only list what we actually use.

No affiliate links, no sponsored content, no aggregated lists. Every item here is referenced in our client work.

Curated, not aggregated

Every resource on this page is something we use with clients. Nothing is here for SEO or padding.

UK-first perspective

We are ICO registered and operate under UK GDPR. Guidance is filtered for UK relevance.

SME-appropriate

We flag when a framework is better suited to large enterprises. SMEs need different starting points.

Linked to our assessment

Each resource maps to one or more pillars in the AI Readiness Assessment — use your score to prioritise what to read.

Free & no obligation

See where your organisation actually stands.

The free AI Readiness Assessment takes 15–20 minutes and maps your results to each of these governance frameworks automatically.

ICO registered · ZB960703 · GDPR compliant · Data never sold