Blog

Field notes on AI governance

Long-form guides for finance, security, and IT leaders building real AI accountability — without banning the tools their teams rely on.

Blog / All posts

July 30, 20267 min read

The EU AI Act's August 2 obligations are here. The inventory comes first.

August 2, 2026 is the EU AI Act's general applicability date, but the Digital Omnibus moved the high-risk deadlines to 2027 and 2028. What arrives now is the transparency regime, and the inventory question every framework asks first.

July 17, 20267 min read

What enterprise AI supervision actually means, and what it does not

Enterprise AI supervision gives Compliance a documented process for identifying activity that needs attention, reviewing it responsibly, and proving what was and was not covered.

June 25, 20266 min read

When an AI agent runs up your bill overnight: who owns it, and how to stop it

An autonomous AI agent can run up your bill overnight. Govern each one with an owner, an approved model scope, a budget with an automatic cutoff, and a kill switch.

June 8, 20265 min read

Introducing Tallin: the runtime control plane for AI

Tallin is the runtime control plane for AI use by humans, apps, and agents: every AI actor gets an owner, a model scope, a budget, a policy, an audit trail, and an off switch. Here is why we built it, and how to become a design partner.

May 29, 20269 min read

How to track AI usage across your company (without banning it)

A 90-day framework for building an honest AI usage ledger that covers ChatGPT, Claude, Copilot, and Gemini — without forcing employees off the tools they rely on.

May 28, 20268 min read

Your AI policy is paperwork without these 3 controls

An AI policy auditors take seriously isn't a Notion doc — it's a document backed by three specific runtime controls. Here's what each one looks like in practice.

May 27, 20268 min read

Why your OpenAI bill keeps growing — and 4 ways to make it stop

Mid-market OpenAI bills don't grow because employees are reckless — they grow because procurement, attribution, and gateway controls are missing. Here's how to fix each one.

Turn AI policy into a ledger you can defend.

Tallin is the system of record for AI usage across your company: provider telemetry, gateway traffic, billing evidence, identity context, discovery signals, and the gaps you still need to close.

Blog | Tallin