AIGO uses external regulations, standards, and guidance as reference sources for framework mappings, comparative analysis, and implementation-oriented traceability.
External source references help organizations understand how AIGO relates to established AI governance, regulatory, risk-management, and management-system frameworks.AIGO does not claim ownership of third-party standards, regulations, or guidance.
When interpreting an external requirement, the authoritative source remains the issuing organization, standards body, regulator, or legal authority.AIGO mappings are analytical and implementation-oriented materials.They should be reviewed against current authoritative sources before being used for:* legal determinations
* regulatory decisions
* contractual commitments
* certification activities
* conformity assessments
* high-impact governance decisions
AIGO includes an interpretive mapping to the European Union Artificial Intelligence Act.Primary legal source:EUR-LexThe AIGO mapping distinguishes, where applicable, between binding EU law, official implementation material, AIGO interpretation, and organization-specific legal determinations.The mapping does not constitute legal advice or establish regulatory compliance.
AIGO includes an interpretive mapping to ISO/IEC 42001.Primary source:ISOISO/IEC 42001 remains the authoritative standard for its own requirements.AIGO does not reproduce the standard and does not represent:* ISO certification
* conformity assessment
* accreditation
* ISO endorsement
* official ISO conformityThe AIGO mapping should therefore be treated as a separate analytical mapping rather than as a replacement for the standard.
AIGO includes an interpretive mapping to the NIST Artificial Intelligence Risk Management Framework.Primary source:NISTAIGO does not represent:* NIST endorsement
* NIST certification
* accreditation
* official NIST conformityThe NIST mapping provides an AIGO-controlled analytical relationship to the NIST AI RMF.
AIGO also provides cross-framework relationships among:* EU AI Act
* ISO/IEC 42001
* NIST AI RMF
* AIGOThese relationships identify connections among governance concepts, requirements, controls, evidence, lifecycle activities, and assurance considerations.They do not imply that the underlying requirements are equivalent or interchangeable.
External requirements and standards can change independently of AIGO.AIGO therefore treats external-source maintenance as an ongoing activity.Mapping materials should be reviewed when:* an external requirement changes
* authoritative guidance changes
* applicability conditions change
* AIGO controls or governance concepts change
* mapping assumptions change
* new implementation or assurance expectations emerge
The AIGO repository is authoritative for the AIGO-controlled mapping artifacts.It is not authoritative for the external standards, regulations, or guidance being mapped.For external obligations, the issuing authority remains authoritative.
An AIGO mapping can improve traceability and implementation planning, but the existence of a mapping does not establish:* legal compliance
* regulatory conformity
* certification
* accreditation
* contractual compliance
* official endorsement by the external authorityOrganizations remain responsible for making their own determinations based on the current authoritative external sources and their specific circumstances.