Teddy builds your AI compliance step by step: a register of every AI system and agent, the EU AI Act classification for each one, ISO 42001 set up from scratch or on an ISMS you already run, and monitoring of your agents in production.

The EU AI Act asks what each AI system does and how risky it is. ISO 42001 asks for a management system around all of it. Meanwhile engineering ships new agents faster than anyone can document them.
Teddy classifies each AI system by how it is used.
Teddy sets up policy, roles and impact assessments for ISO 42001.
Each agent gets an owner, limits and a kill switch.
The inventory is a spreadsheet from May, new agents go live without an owner, and a chatbot can only explain the law in general. With Teddy, you build AI compliance step by step: every system registered and classified, ISO 42001 set up from scratch or on an existing ISMS, agents monitored in production.
Teddy keeps your AI register current, applies the right obligations to each system and builds ISO 42001 on the ISMS you already have.
Teddy finds models, agents and AI features in your cloud and code, and keeps the register current as engineering ships.
Each system is assessed for its risk class and duties: prohibited practices, high-risk use cases, transparency and general-purpose AI obligations.
AI policies, roles, impact assessments and reviews are added to your existing control set. Everything ISO 27001 already covers counts.
Every production agent has an owner, permissions and a kill switch. Teddy flags actions outside policy and logs every intervention.
AI governance questions in customer reviews are answered from the register, and the evidence is ready for your ISO 42001 audit.
Ask what applies to a new feature before you ship it. Teddy answers from your register and the law. For conformity assessments, our compliance engineers are at your side.
Ask TeddyIs this feature high risk? What do we need before launch? Answers before the release, not after.
Agents do the workRegister, classifications, policies and monitoring reports kept current automatically.
Our team backs you upCompliance engineers help with conformity assessments and your ISO 42001 audit.
Almost every company that builds or uses AI in the EU has some duties. Which ones depends on each system’s use case. Teddy assesses each system and explains the result.
ISO 42001 adds an AI management system on top of your ISMS. Teddy maps it onto your existing controls, so you only build what is missing.
Teddy connects read-only to your cloud and logs, checks agent actions against the policies and limits you define and flags anything outside them.
With the register. Teddy discovers what you run, classifies it and builds the rest step by step, starting with what the AI Act requires first.
See your AI register built in the demo.
The AI inventory is a spreadsheet, and new agents go live before anyone documents them.
Every AI system and agent registered and classified under the AI Act, with ISO 42001 built on your existing ISMS.
Teddy was built by former CISOs and GRC managers, and one lesson carries straight over to AI: you cannot govern what you have not listed. The register comes first, and it has to keep up with what engineering ships.
Meet the founders →