Resources
Practical AI governance — checklists, evidence, and templates.
Field-ready resources for security and AI governance teams. Each one connects approved agent skills, access, approvals, monitoring, and audit evidence into one governance model.
AI regulation
3 resourcesEU AI Act · Article 4
EU AI Act Article 4 AI Loadout Checklist
A practical checklist for connecting AI literacy, role-based access, approved AI skills, and audit evidence.
View checklist →ISO/IEC 42001
ISO 42001 AI Management System Starter Checklist
A starter checklist for the day-to-day controls behind an AI management system — inventory, owners, risk, monitoring, and review.
View checklist →NIST AI RMF
NIST AI RMF Agent Risk Mapping
Map the NIST AI Risk Management Framework's functions — Govern, Map, Measure, Manage — to agentic AI controls and evidence.
View mapping →Security & audit
3 resourcesSOC 2
SOC 2 AI Agent Evidence Checklist
A checklist of the AI-agent access, change, monitoring, and review evidence customers and auditors ask for.
View checklist →OWASP
OWASP LLM & Agentic AI Risk Checklist
A practical checklist for reducing excessive agency, sensitive-data exposure, and AI supply-chain risk in agent deployments.
View checklist →Access reviews
Quarterly AI Agent Access Review Template
A repeatable template for reviewing which AI agents and roles can use which capabilities — and retiring what they shouldn't.
View template →Sector & privacy
2 resourcesDORA · NIS2
DORA/NIS2 AI Skills Evidence Pack
A practical evidence model for governing AI agent skills, training, approvals, access controls, and review history.
View evidence pack →GDPR
GDPR AI Agent Data-Access Checklist
A checklist to keep AI agents from accessing personal data without approval — data labels, restrictions, and access evidence.
View checklist →Put these into practice.
Bakara turns these checklists and evidence models into governed AI loadouts with owners, approvals, monitoring, and exportable evidence.