EU AI Act compliance platform

The most complete tool for your EU AI Act report

Analyze, detect, document AI, and automate your AI Act compliance in a few clicks.

Free tier
3 plans for your business
Responsive support

Fulfai scans your environments, then generates and automates your EU AI Act compliance.

fulfai/dashboard

AI systems detected

RepositoryRisk
GitHub

acme-corp/api-gateway

Complete

Limited
GitLab

acme/platform-ai

Analyzing…
High
AWS

prod-ml-bucket

Analyzing…
Minimal
Azure

contoso-ai-training

Analyzing…
Limited
GitHub

acme-corp/frontend-app

Analyzing…
Limited
GitHub

acme-corp/data-pipeline

Complete

Minimal

Multi-source scanning, 20+ connectors including GitHub

GitHub
GitHub
GitLab
GitLab
Bitbucket
Bitbucket
AWS
AWS
Azure
Azure
Google Cloud
Google Cloud
Microsoft 365
Microsoft 365
Databricks
Databricks
Hugging Face
Hugging Face
Apache Airflow
Apache Airflow
n8n
n8n
Slack
Slack
GitHub
GitHub
GitLab
GitLab
Bitbucket
Bitbucket
AWS
AWS
Azure
Azure
Google Cloud
Google Cloud
Microsoft 365
Microsoft 365
Databricks
Databricks
Hugging Face
Hugging Face
Apache Airflow
Apache Airflow
n8n
n8n
Slack
Slack
CLI

Scan also via the command line

npm install fulfai
bash
$ npx fulfai login
✓ Logged in
$ npx fulfai scan
✓ 12 AI systems synced
• openai [limited · OpenAI]
• @ai-sdk/xai [limited · xAI]
• langchain [limited · LangChain]
  • No repo OAuth needed — works on local and private code.
  • Your source code never leaves your machine — only the AI inventory is sent.
  • Drop it into CI/CD to track AI on every build.
Audit & regulator

Stay permanently ready for a European AI Office audit

Up-to-date AI inventory, risk classification and automatically generated documentation: your compliance file is ready at any time.

Learn more
EU AI ACT

Understand your obligations and the risks

Regulation (EU) 2024/1689 sets obligations for every company that builds or uses AI. Here's the essential.

Heavy financial penalties

Fines are based on worldwide annual turnover — whichever amount is higher.

€35M / 7%

Prohibited AI practices (manipulation, social scoring, mass biometric surveillance…)

€15M / 3%

Breach of the obligations for high-risk systems

€7.5M / 1%

Incorrect or misleading information provided to authorities

A risk-based approach

Unacceptable risk

Banned — social scoring, manipulation, real-time mass biometric identification.

High risk

Strict obligations — HR, credit, health, biometrics, critical infrastructure.

Limited risk

Transparency — tell users they interact with AI, label generated content.

Minimal risk

No obligations — spam filters, games, recommendations.

What your company must put in place

  • Inventory of every AI system and agent in use
  • Risk classification of each system
  • Technical documentation and logging of decisions
  • Continuous monitoring and post-deployment tracking
  • Human oversight and incident handling
  • Transparency toward users and authorities

A timetable already under way

Feb 2025

Ban on unacceptable-risk practices

Aug 2025

Obligations for general-purpose AI models (GPAI)

Aug 2026

Obligations for high-risk systems (Annex III)

Aug 2027

AI embedded in regulated products (Annex I)

Fulfai detects your AI systems, classifies them by risk, and automates your documentation and continuous monitoring.

Get started for free
AUTOMATIC REPORT

Automate scans and receive email reports to prove control over your AI system

When a scan finishes, you get an email summarizing the risks and AI systems detected.

Inbox · team@acme-corp.com
From:Fulfai <no-reply@fulfai.com>
To: team@acme-corp.com
Subject: Automatic scan report - acme-corp/api-gateway
Delivered by email

Automatic scan report

Fulfai

Repository: acme-corp/api-gateway

Source: github

Date: 12/06/2026 14:32

Risk summary

1
High risk
2
Limited risk
3
Minimal risk

Detected AI features

OpenAI GPT-4high

Using the OpenAI API for text generation and automated classification.

Version: 1.2.0

LangChainlimited

AI agent orchestration and prompt chaining over customer data.

Version: 0.3.5

Hugging Face Transformersminimal

Pre-trained NLP models for sentiment analysis.

Version: 4.41

View dashboard

Email sent automatically by Fulfai

TEAMS

Your whole team on one compliance

Invite your colleagues by email: they join your organization and share the same dashboard, the same AI inventory and the same reports.

Email invitation

The owner adds an employee in one click; they receive a link to create their account and join the organization.

Shared data

Scans, detected AI systems and documents are shared in real time across all members.

Roles and permissions

Assign Admin, Member or Viewer roles to decide who can scan, manage or only view.

A centralized organization

Name your organization and steer the whole company's AI compliance from a single place.

Acme Corp
Shared organization
  • SA
    Sarah A.
    sarah@acme.co
    Owner
  • KM
    Karim M.
    karim@acme.co
    Admin
  • LD
    Léa D.
    lea@acme.co
    Member
  • TB
    Tom B.
    tom@acme.co
    Viewer
Shared dashboard and AI inventory

Available on the Business plan — unlimited members.

FEATURES

The shortest path to your EU AI Act compliance

Multi-source scanning

GitHub • GitLab • Bitbucket • AWS S3 • Azure Blob • Google Cloud • Microsoft 365 • Databricks • Hugging Face • Apache Airflow • n8n • Slack • ZIP upload

Real-time AI detection

OpenAI, LangChain, TensorFlow, Hugging Face, Anthropic...

Risk classification

Minimal • Limited • High under the AI Act

EU AI Act questionnaire

Complete form with contextual help

Professional PDF report

Compliance score + action checklist

Smart automation

Hourly, weekly, or monthly scans

SUPPORT

Customer support that's always within reach

With our built-in ticketing system, your company can contact support at any time — a question about a scan, a report or your compliance, we're here.

  • Open a ticket in seconds from your dashboard.
  • Email follow-up and replies until full resolution.
  • Priority support with a 24-hour response for the Business plan.
A question before getting started? Contact us
+98% of AI and AI agents detected
AI feature using openai
Usage of the openai library...
AI libraryLimited
acme-corp/api-gateway10/06/2026 14:32
v0.8.0
THE FULL PROCESS

6 steps to stay compliant

01

Analyze your sources

Connect GitHub, GitLab, AWS S3, Azure Blob repositories or upload your files and folders.

02

Automatic risk detection

Our engine identifies AI libraries and classifies them by risk level (Minimal / Limited / High).

03

Complete the EU AI Act questionnaire

Answer mandatory questions with contextual help (DPIA, governance, transparency, bias...).

04

Generate your PDF report

Get a professional report with compliance score, detected systems list, and action checklist.

05

Plan your next actions

Follow precise recommendations to reduce risks and meet regulatory requirements.

06

Automate compliance

Schedule recurring scans (hourly, every Monday, or on the 1st of each month).

AI ASSISTANT

Fill your documents 10× faster

AI drafts every field of your AI Act, GDPR, DPIA records. You approve, it fills.

fulfai.app/rgpd

Déclaration de conformité RGPD

Registre des traitements · Art. 30

Assistant IA
Acme Corp
Exécution du contratIntérêt légitime
*IA
Décrivez pourquoi vous traitez ces données…
*IA
Identité, contact, données de connexion…
*IA
Pendant la relation contractuelle + …

No data is stored

Privacy by design

We never store your source code. Our scanner only looks for AI agents and AI libraries inside your dependencies — nothing else is kept.

  • Your source code is never stored
  • Only AI agents and AI libraries are searched
  • Aligned with GDPR data minimisation

What we scan

We analyse dependency manifests and import statements (for example package.json, requirements.txt, lockfiles) to identify AI libraries and AI agent frameworks. The scan looks for known AI providers and packages — not the content of your files.

What we do NOT store

We do not retain your source code, repository contents, personal data, or proprietary logic. Only the resulting inventory of detected AI agents and AI libraries (name, version, risk classification) is saved to your account.

How the scan works

The scan reads dependency metadata in memory during the analysis. Once the AI inventory is produced, the raw code is discarded. You can delete any scan and its results at any time from your dashboard.

You receive a personalized data non-retention certificate: this document commits us to analysing your environments without collecting any information other than AI libraries and agents.

Learn more

Ready to secure your AI compliance?

Join teams anticipating European regulation.

Get started for free

No credit card • Try it for free