SG-logo-white
  • Product
    • The Platform

      Design a security program that builds trust, scales with your business, mitigates risk, and empowers your team to work efficiently.

      • Our technology
      • Built for AI
      • Why Strike Graph
      • All frameworks
    • Features
      • AI Security Assistant
      • Audits & certifications
      • Customizations
      • Dashboards & reporting
      • Enterprise content
      • Integrations
      • Pen testing
      • Risk management
      • SBOM Manager
      • Security questionnaires
      • Vulnerability scanning
      • Verify AI
  • Solutions
    • Solutions
      For industries
      • Data Centers
      • Life Sciences
      • Manufacturing
      • Medical Devices
    • Frameworks
      • CCPA/CPRA
      • CMMC
      • DORA
      • GDPR
      • HIPAA
      • SOC 2
      • HIPAA
      • ISO 27001
      • All frameworks
      • HITRUST CSF
      • ISO 27001
      • ISO 27701
      • ISO 42001
      • NIST CSF
      • NIST 800-53
      • NIST 800-171
      • PCI DSS
      • SOC 1
      • SOC 2
      • TISAX
      • All frameworks
  • Pricing
  • Company
    • Strike Graph
      • About us
      • Careers
      • News
      • Partner
      • Press
    • FEATURED

      Cybersecurity is evolving — Strike Graph is leading the way.

      Screen Shot 2023-02-09 at 2.57.5-min (1)
      February 9, 2023
      Security Compliance: Why It’s A Business Accelerator
    • Thought leadership
      It’s your technology and your security controls: Don’t let an auditor become your CTO
      Cybersecurity compliance that is unique to your organization
      Constant compliance is security theater
  • Resources
    • categories
      • Blog
      • Case studies
      • E-books
      • Guides
      • Secure Path events
      • Secure Talk podcast
      • Webinars
      • All resources
    • Ebook

      Check out our newest resources.

      Learn how to get certified the smarter way.
      Learn how to get certified the smarter way.
      Download our free ebook
    • SEARCH

      Find answers to all your questions about security, compliance, and certification.

    • Sign In
    • Schedule a demo
    • Sign In
    • Schedule a demo

    Ready to see Strike Graph in action?

    Find out why Strike Graph is the right choice for your organization. What can you expect?

    • Brief conversation to discuss your compliance goals and how your team currently tracks security operations
    • Live demo of our platform, tailored to the way you work
    • All your questions answered to make sure you have all the information you need
    • No commitment whatsoever

    We look forward to helping you with your compliance needs!

    Fields marked with a star (*) are required

    Find out why Strike Graph is the right choice for your organization. What can you expect?

    • Brief conversation to discuss your compliance goals and how your team currently tracks security operations
    • Live demo of our platform, tailored to the way you work
    • All your questions answered to make sure you have all the information you need
    • No commitment whatsoever

    We look forward to helping you with your compliance needs!

    EU AI Act Regulatory Position Statement

    Executive Summary

    Strike Graph has evaluated its artificial intelligence systems against the European Union's AI Act framework and requirements. Following a detailed analysis, we confirm that Strike Graph's technologies currently operate outside the scope of the EU AI Act's regulatory requirements.

    Regulatory Analysis

    Scope Assessment

    The EU AI Act primarily regulates AI systems that:

    • Function as safety components in regulated products
    • Operate in high-risk domains
    • Interface with critical infrastructure
    • Impact fundamental rights

    Strike Graph's technology stack does not meet these qualifying criteria for regulation under the EU AI Act.

    Technical Classification

    Our systems have been evaluated against Article 3 definitions and Annex 1 specifications of the EU AI Act. Key findings:

    1. System Classification
      • Our AI implementations are not deployed as safety components
      • No integration with regulated product categories
      • No direct impact on physical safety systems
    2. Application Domain Our solutions do not operate within regulated domains such as:
      • Critical infrastructure management
      • Safety equipment control
      • Medical device functionality
      • Emergency response systems
      • Personal protective equipment
      • Other regulated categories under Annex 1, Section A

    Verification Framework

    Continuous Compliance Monitoring

    Strike Graph implements a robust monitoring system to maintain our regulatory position:

    • Quarterly compliance reviews
    • Regular risk assessments
    • Documentation maintenance
    • Regulatory update tracking
    Quality Controls

    While operating outside the Act's scope, Strike Graph maintains:

    1. Technical Standards
      • Regular security audits
      • Performance monitoring
      • Quality assurance protocols
    2. Operational Excellence
      • Documented development procedures
      • Clear deployment guidelines
      • Regular staff training

    Corporate Responsibility Statement

    Despite our out-of-scope status, Strike Graph upholds:

    • Ethical AI development principles
    • Transparent operations
    • Strong data protection measures
    • Regular stakeholder communication

    Legal Basis

    Our out-of-scope determination is based on:

    • Article 2 scope definitions
    • Article 3 technical classifications
    • Annex 1 product categories
    • Current regulatory guidance

    Forward-Looking Approach

    StrikeGraph maintains:

    • Active regulatory monitoring
    • Adaptation readiness
    • Documentation preparedness
    • Stakeholder engagement

    Contact Information

    For regulatory and compliance inquiries: compliance@strikegraph.com

    Statement Currency

    This position statement reflects our current understanding of the EU AI Act as of Q4 2024. We review and update this position as regulatory frameworks evolve.


    This document serves as Strike Graph's official position on EU AI Act applicability and may be updated to reflect regulatory changes.

    EU AI Act Regulatory Position Statement

    Executive Summary

    Strike Graph has evaluated its artificial intelligence systems against the European Union's AI Act framework and requirements. Following a detailed analysis, we confirm that Strike Graph's technologies currently operate outside the scope of the EU AI Act's regulatory requirements.

    Regulatory Analysis

    Scope Assessment

    The EU AI Act primarily regulates AI systems that:

    Function as safety components in regulated products

    Operate in high-risk domains
    Interface with critical infrastructure
    Impact fundamental rights
    Strike Graph's technology stack does not meet these qualifying criteria for regulation under the EU AI Act.

    Technical Classification

    Our systems have been evaluated against Article 3 definitions and Annex 1 specifications of the EU AI Act. Key findings:

    1. System Classification
      • Our AI implementations are not deployed as safety components
      • No integration with regulated product categories
      • No direct impact on physical safety systems
    2. Application Domain Our solutions do not operate within regulated domains such as:
      • Critical infrastructure management
      • Safety equipment control
      • Medical device functionality
      • Emergency response systems
      • Personal protective equipment
      • Other regulated categories under Annex 1, Section A

    Verification Framework

    Continuous Compliance Monitoring

    Strike Graph implements a robust monitoring system to maintain our regulatory position:

    • Quarterly compliance reviews
    • Regular risk assessments
    • Documentation maintenance
    • Regulatory update tracking

    Quality Controls

    While operating outside the Act's scope, Strike Graph maintains:

    1. Technical Standards
      • Regular security audits
      • Performance monitoring
      • Quality assurance protocols
    2. Operational Excellence
      • Documented development procedures
      • Clear deployment guidelines
      • Regular staff training

    Corporate Responsibility Statement

    Despite our out-of-scope status, Strike Graph upholds:

    • Ethical AI development principles
    • Transparent operations
    • Strong data protection measures
    • Regular stakeholder communication

    Legal Basis

    Our out-of-scope determination is based on:

    • Article 2 scope definitions
    • Article 3 technical classifications
    • Annex 1 product categories
    • Current regulatory guidance

    Forward-Looking Approach

    StrikeGraph maintains:

    • Active regulatory monitoring
    • Adaptation readiness
    • Documentation preparedness
    • Stakeholder engagement

    Contact Information

    For regulatory and compliance inquiries: compliance@strikegraph.com

    Statement Currency

    This position statement reflects our current understanding of the EU AI Act as of Q4 2024. We review and update this position as regulatory frameworks evolve.


    This document serves as Strike Graph's official position on EU AI Act applicability and may be updated to reflect regulatory changes.




    foot-dark-shade
    SG-logo-white

    Strike Graph offers an easy, flexible security compliance solution that scales efficiently with your business needs — from SOC 2 to ISO 27001 to GDPR and beyond.

    Frameworks

    • CMMC
    • GDPR
    • HIPAA
    • ISO 27001
    • PCI DSS
    • SOC 2
    • TISAX
    • All frameworks

    Design

    • Security frameworks
    • Risk Management
    • Customizations

    Operate

    • Verify AI
    • AI Security Assistant
    • Integrations
    • Security questionnaires

    MEASURE

    • Audits & certifications
    • Pen testing
    • Dashboards & reporting

    Learn more

    • Resources
    • Product Support Center
    • News
    • Press
    • Pricing
    • Partner
    • About us
    • Careers
    • Contact us
      • Sign in
      • Schedule a demo
      SOC_NonCPAA
      • 🦆 icon _rounded linkedin_
      • 🦆 icon _rounded facebook_
      • 🦆 icon _rounded twitterbird_
      • Subtract

      © 2025 Strike Graph, Inc. All Rights Reserved • Privacy Policy • Terms of Service • EU AI Act

      foot-dark-shade
      SG-logo-white
      Strike Graph offers an easy, flexible security compliance solution that scales efficiently with your business needs — from SOC 2 to ISO 27001 to GDPR and beyond.
      • Contact Us
      • Resources
      • Product Support
      • Start for Free
      • Schedule a demo
      • Sign In
      • 🦆 icon _rounded linkedin_
      • 🦆 icon _rounded facebook_
      • 🦆 icon _rounded twitterbird_
      • Website images - Subtract

      © 2025 Strike Graph, Inc. All Rights Reserved • Privacy Policy • Terms of Service • EU AI Act

      SOC_NonCPAA
      Achieved-SG-badge_hipaa

      Ready to see Strike Graph in action?

      Fill out a simple form and our team will be in touch.

      Experience a live customized demo, get answers to your specific questions , and find out why Strike Graph is the right choice for your organization.

      What to expect:

      • Lorem Ipsum is simply dummy text of the printing and typesetting industry.
      • Lorem Ipsum is simply dummy text of the printing.
      • It is a long established fact that a reader will be distracted by the readable content of a page when looking at its layout.
      • The standard chunk of Lorem Ipsum used since the 1500s

      We look forward to helping you with your compliance needs!

      Fields marked with a star (*) are required

      Fill out a simple form and our team will be in touch.

      Experience a live customized demo, get answers to your specific questions , and find out why Strike Graph is the right choice for your organization.

      What to expect:

      • Lorem Ipsum is simply dummy text of the printing and typesetting industry.
      • Lorem Ipsum is simply dummy text of the printing.
      • It is a long established fact that a reader will be distracted by the readable content of a page when looking at its layout.
      • The standard chunk of Lorem Ipsum used since the 1500s

      We look forward to helping you with your compliance needs!