Twenty-four jurisdictions, one primitive layer

Each regime is a typed compliance primitive in one engine. Data-protection jurisdictions: LGPD (Brazil), GDPR (EU), MiCAR and MiCA Title V CASP (EU), DPDP (India), PDPA (Singapore), UAE (ADGM/VARA), PDPL (UAE federal), POPIA (South Africa), NDPA (Nigeria), CCPA (California), PIPEDA (Canada), Quebec Law 25, PIPA (South Korea), PDP (Indonesia), APPI (Japan), LFPDPPP (Mexico), Decree 13 (Vietnam), PDPA (Malaysia), and the data-protection acts of Kenya, Ghana, Colombia, Tanzania and Uganda.

Plus eight AI-governance frameworks: Japan AI Promotion Act, Hiroshima ICOC (G7), EU AI Act, Korea AI Basic Act, CAIDP Universal Guidelines, UNESCO Recommendation on the Ethics of AI, Singapore IMDA MGF-Agentic v1.0, and the L1-L5 AI Governance Stack — aligned with the CAIDP submission to the UN Global Dialogue on AI Governance (UN GA Resolution 79/325).