AI Governance · Responsible AI · Agentic Systems · AI Security
Building open frameworks, research and operational tools for accountable AI.
My work sits at the intersection of AI governance, autonomous and agentic systems, privacy engineering, AI assurance and human agency.
I am particularly interested in the point where governance stops being a policy document and becomes an operational control system: what an AI system is authorised to do, under which identity, with which data, within which boundaries, with what evidence and with what capacity for human intervention.
My public work combines research, frameworks and working software.
| Project | Focus |
|---|---|
| PALO Framework | Operational AI governance across the AI lifecycle, including agentic governance, authority controls, policy enforcement, evidence and assurance. |
| PolicyWatcher | Regulatory intelligence and evidence-backed monitoring of corporate privacy, AI and policy changes. |
| DDP Framework | Privacy engineering and privacy-as-code approaches for translating data protection requirements into operational controls. |
| EU AI Act Incident Report | Open prototype for structured AI incident reporting and governance evidence. |
| AudioEnhancerMAX | Local-first AI-assisted audio enhancement, transcription, TTS and edge processing. |
| Responsible AI Canvas | Practical assessment canvas for responsible AI use cases, risks, controls and human oversight. |
- Agentic AI governance and delegated authority
- AI identity, permissions and action-space control
- Human oversight and human agency
- AI assurance, audit evidence and traceability
- AI risk and impact assessment
- Privacy engineering and privacy-as-code
- EU AI Act operationalisation
- ISO/IEC 42001 and AI management systems
- NIST AI RMF
- Policy-as-code and governance-as-code
- AI security and secure agent execution
- Regulatory intelligence
PALO, Principled AI Lifecycle Orchestration, is my main open-source research and engineering programme for operational AI governance.
It connects governance principles and regulatory requirements with lifecycle decisions, risk assessment, controls, evidence, KPIs/KRIs and technical enforcement patterns for increasingly autonomous AI systems.
Explore PALO Framework → Visit paloframework.org →
PolicyWatcher explores another side of governance: the external environment continuously changing around deployed technology.
It monitors corporate policies and turns detected changes into structured evidence and governance signals.
Explore PolicyWatcher → Visit policywatcher.online →
I am interested in technically rigorous collaboration around AI governance, agent security, privacy engineering, standards interoperability and operational assurance.
Issues, pull requests, reproducible criticism, interoperability experiments and research discussions are welcome.
Public repositories represent independent research and open-source work unless a repository explicitly states otherwise.
