Law / Frameworks / NIST AI RMF / Map
NIST AI RMF, MapMAP 2.2
Information about the AI system’s knowledge limits and how system output may be utilized and overseen by humans is documented. Documentation provides sufficient information to assist relevant AI actors when making decisions and taking subsequent actions.NIST AI Risk Management Framework, version 1.0, January 2023 (NIST AI 100-1), MAP 2.2
We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .
- 5
- laws
- 5
- places
- 0
- with court rulings behind them
- 4
- not yet in force
The same ground elsewhere linked through the kinds of duty both controls are mapped from
- NIST AI 600-1GAI-RISK-07 Human-AI Configuration
- NIST AI 600-1GAI-RISK-08 Information Integrity
- MIT mitigations4.1 System Documentation
- MIT mitigations4.2 Risk Disclosure
- NIST Privacy FrameworkCM.PO-P1 Transparency policies, processes, and procedures for communicating data processing...
- NIST Privacy FrameworkCM.AW-P1 Mechanisms (e.g., notices, internal or public reports) for communicating data...
- NIST CSF 2.0RS.CO-02 Internal and external stakeholders are notified of incidents
- NIST CSF 2.0RC.CO-04 Public updates on incident recovery are shared using approved methods and messaging
A law in force is unmarked; the rest wear their state: not yet in force
AI governance
3 laws, 3 places| Place | Law | What it asks, as read here |
|---|---|---|
| Transparency in Frontier Artificial Intelligence Act (SB 53) |
Before or when you deploy a new or substantially modified frontier model, publish a transparency report giving the model's release date, supported languages, output modalities, intended uses, and any generally applicable restrictions |
|
| Artificial Intelligence Safety Measures Act from , in 3 months |
Before or when you deploy a new or substantially modified frontier model, publish on your website a transparency report giving your website, a way for a person to reach you, the model's release date, its supported languages and output modalities, its intended uses, and any generally applicable restrictions on its use. |
|
| Federal Law No. 243-FZ, Article 8, Duties of Sovereign and National Foundation Model Developers from , in 5 months |
Once Article 8 of Federal Law No. 243-FZ takes effect on : if you develop a sovereign or national large foundation AI model, take organizational and technical measures to secure it, define operating rules covering restrictions, conditions of use, updates, and decommissioning, and maintain technical documentation of its key parameters and limitations sufficient to assess the safety of its application. |
AI risk obligations
1 law, 1 place| Place | Law | What it asks, as read here |
|---|---|---|
| AI Act, Article 14 (human oversight) from , in 14 months |
Provide the system to the deployer so that the natural persons assigned to oversee it can understand its capacities and limitations and duly monitor its operation, including detecting and addressing anomalies, dysfunctions and unexpected performance. |
AI sector rules
1 law, 1 place| Place | Law | What it asks, as read here |
|---|---|---|
| Automated Employment-Related Decision Technology Act from , in 2 days |
If you develop automated employment-related decision technology, give a deployer the information the deployer needs to meet its own notice duties, unless your technology was not advertised or configured for that use. |
Full text of the NIST AI Risk Management Framework, public domain (a US government work). Every control of the framework.