Artifacts

GRC Artifact Index

Find the right page for your regulation, framework, or control program. Filter by topic, search by keyword, and open the artifact that matches your scope.

Explore artifacts
EU AI Act timeline artifact preview
Featured
Living Timeline

Regulatory deadlines in one living timeline.

Compare deadlines across CRA, NIS2, DORA, the EU AI Act, and other supported frameworks. Open the free universal view or build a timeline limited to the rules, systems, and deadlines that apply to your organisation.

Free universal timeline - broad coverage. Custom timelines can be scoped to your stack.

Sorena regulatory universal timeline preview
Privacy
Read

UK GDPR Timeline and Implementation Guide

UK GDPR guide to scope, roles, lawful bases, rights, accountability, breaches, children, automated decisions, international transfers, and 2025-2026 amendments.

Sorena AIArtifactsUKGeneral Data Protection Regulation
Read UK GDPR Timeline and Implementation Guide
Platform
Read

UK Online Safety Act Timeline and Implementation Guide

Check regulated user-to-user and search-service scope, illegal-content duties, child-access assessments, child-risk assessments, deadlines, and Ofcom evidence.

Sorena AIArtifactsUKOnline Safety Act
Read UK Online Safety Act Timeline and Implementation Guide
Privacy
Read

US CCPA Timeline and Implementation Guide

Apply the CCPA with its CPRA amendments and 2026 regulations, including scope, rights, GPC, contracts, risk assessments, cybersecurity audits, ADMT, data brokers, and enforcement.

Sorena AIArtifactsUSCalifornia Consumer Privacy Act
Read US CCPA Timeline and Implementation Guide
Cybersecurity
Read

China Cryptography Law and Commercial Cryptography Compliance Guide

Classify commercial cryptography use, screen product and service routes, and prepare testing, certification, import/export, supplier, and China release evidence.

Sorena AIArtifactsAPACChina Cryptography Law
Read China Cryptography Law and Commercial Cryptography Compliance Guide
Cybersecurity
Read

China Cybersecurity, Data Security, and Network Review Compliance Guide

Map network operator, CII, data security, cybersecurity review, app governance, MIIT filing, MLPS, and connected-device security evidence.

Sorena AIArtifactsAPACChina Cybersecurity Law
Read China Cybersecurity, Data Security, and Network Review Compliance Guide
ESG
Read

China WEEE and E-Waste Recovery Compliance Guide

Route waste electrical and electronic products through recovery, qualified disposal, recycler/disposal-operator licensing, contracts, and lifecycle records.

Sorena AIArtifactsAPACChina E Waste Law
Read China WEEE and E-Waste Recovery Compliance Guide
Privacy
Read

China Personal Information Protection and Data Export Compliance Guide

Map PIPL processing duties, app minimization, separate consent, PIPIA, SCC filings, data export security assessment, and cross-border transfer evidence.

Sorena AIArtifactsAPACChina Privacy Law
Read China Personal Information Protection and Data Export Compliance Guide
Product
Read

China RoHS Hazardous Substances Compliance Guide

Apply the China RoHS function-and-voltage scope, actor duties, substance information, environmental protection use period marking, and additional catalogue/conformity route.

Sorena AIArtifactsAPACChina Rohs Regulation
Read China RoHS Hazardous Substances Compliance Guide
Product
Read

China Telecom Network Access and Wireless Equipment Compliance Guide

Separate network access permits, radio and micro-power requirements, 2400/5100/5800 MHz rules, mobile terminal app duties, and connected-device launch evidence.

Sorena AIArtifactsAPACChina Telecom Wireless Regulation
Read China Telecom Network Access and Wireless Equipment Compliance Guide

Guidance tailored to your needs

Get guidance tailored to your organisation, systems, and deadlines, with specific actions for the teams responsible.

Talk to an expert