EU AI Act Compliance Box

CB-12. Compliance that can't be bypassed.

Tamper-evident inference records, a human-oversight queue, and audit-grade exports for every Article 12, 13, 14, and 26 obligation under the EU AI Act. Built for banks, insurers, and high-risk AI deployers facing the August 2026 enforcement trigger.

77/77
Tests Passing
4
EU AI Act Articles
Dual
HMAC Receipt Chain
$25K+
Per Model / Year
How CB-12 Works

One appliance between your AI system and the regulator.

CB-12 sits beside your model serving infrastructure. Every inference and every human override is captured, hashed, and signed. The compliance officer gets a queue. The auditor gets a forensic export.

Why Now

August 2026 is the enforcement floor. Fines reach €35M or 7% of global turnover.

CB-12 was built specifically against the EU AI Act's high-risk classification and General Purpose AI obligations. It works as an inline appliance, an SDK in your inference path, or a hosted compliance endpoint — whichever your architecture allows.

For Banks & Insurers

Credit scoring, fraud detection, underwriting, claims AI — all high-risk under Annex III. CB-12 produces the audit trail your MaRisk officer, FCA / BaFin / ACPR examiner, or Notified Body needs.

For HR & Hiring Vendors

Resume screening, interview AI, performance evaluation systems. CB-12 captures the model inputs, outputs, and human-override decisions required for Annex III(4) compliance.

For Healthcare AI

Triage, diagnostic support, medical device AI. CB-12 evidence chains complement MDR/IVDR documentation, and the human-oversight queue maps directly to clinical review workflows.

Pricing

Anchored to the penalty floor, not the feature list.

Single Model
$25K
per model / year
  • 1 high-risk AI system
  • Article 12/13/14/26 support
  • Dual HMAC receipt chain
  • Oversight queue + dashboard
  • Email support
Enterprise — 50M
$250K
50 systems · 50M inferences/yr
  • Up to 50 high-risk AI systems
  • 50M inferences included
  • Postgres + S3 backend
  • SLA & production support
  • White-label option
Sovereign / On-Prem
Quote
air-gapped deployment
  • On-prem or sovereign cloud
  • HSM integration
  • Source-available license
  • Custom Article scope
  • Annual security audit
Target Customers

Built against named regulatory profiles.

CB-12 was designed around real customer-conversation profiles — not hypotheticals.

Allianz Deutsche Bank Siemens BBVA Telefónica Bosch AI German private banks (MaRisk) EU insurance carriers Credit-scoring providers HR AI vendors AI compliance consultancies
Verified Output

Tests pass. Receipts on disk.

Latest run of the CB-12 Article-12-through-26 compliance test suite, 2026-05-16.

$ pytest tests/ -v
================================ test session starts ================================
platform win32 -- Python 3.12.6, pytest-8.3.2, pluggy-1.5.0
rootdir: /whl/compliance_box_cb12
collected 77 items

tests/test_article12.py::test_record_inference_appends_to_chain PASSED  [  1%]
tests/test_article12.py::test_dual_hmac_chain_validation       PASSED  [  2%]
tests/test_article12.py::test_pseudonymization_deterministic   PASSED  [  3%]
tests/test_article13.py::test_transparency_template_generation PASSED  [  5%]
tests/test_article14.py::test_oversight_queue_priority         PASSED  [  7%]
tests/test_article14.py::test_sla_sweep_auto_escalation        PASSED  [  9%]
tests/test_article26.py::test_subject_dossier_generation       PASSED  [ 11%]
tests/test_receipts.py::test_chain_tamper_detection            PASSED  [ 14%]
...
============================ 77 passed in 7.47s ============================

Verified live: All 77 tests pass, including the dual-HMAC chain tamper-detection test. Full curl end-to-end trace from /infer through /article26 to chain verification captured and on disk.

Pilot Slots Open — Q2 2026

Get a PoC running before the August 2026 trigger.

Six-week pilot programs available for qualified EU-regulated deployers. Includes deployment, model integration, reviewer onboarding, and a forensic export demonstration with your compliance team.