{"product_id":"ai-governance-paket-ai-act-compliance-2026","title":"AI Governance Package 2026 – AI Act Compliance Word\/PDF\/Excel","description":"\u003ch2\u003eAI Governance \u0026amp; AI Act Compliance Package 2026\u003c\/h2\u003e\u003cp\u003eA complete document package for Swedish companies and organizations looking to implement structured, documented, and practical artificial intelligence governance. The package combines an \u003cstrong\u003eAI policy, AI system register, risk assessment, supplier audit, impact assessment, and a governance and approval workflow\u003c\/strong\u003e into a cohesive methodology.\u003c\/p\u003e\u003cp\u003eYou receive \u003cstrong\u003esix professionally designed templates in both Word and PDF\u003c\/strong\u003e, as well as a practical \u003cstrong\u003eAI register in Excel\u003c\/strong\u003e with dropdowns, status, risk classification, AI Act role, DPIA\/FRIA screening, and an overview. In total, the Word\/PDF material spans \u003cstrong\u003e48 pages\u003c\/strong\u003e.\u003c\/p\u003e\u003cp\u003eThe templates were legally reviewed on \u003cstrong\u003eSeptember 27, 2026\u003c\/strong\u003e, and are based on the AI Act (EU) 2024\/1689 in its consolidated version following \u003cstrong\u003eRegulation (EU) 2026\/1744 – Digital Omnibus on AI\u003c\/strong\u003e, alongside GDPR and current EU guidance.\u003c\/p\u003e\u003ch2\u003eWhat's included\u003c\/h2\u003e\u003ch3\u003e1. AI Policy for Companies – Word + PDF\u003c\/h3\u003e\u003cp\u003eThe complete 19-page AI policy contains practical rules for how employees may use AI, which tools are permitted, what information may be entered, and how the organization should manage human oversight, AI literacy, data protection, security, HR, copyright, transparency, and incidents.\u003c\/p\u003e\u003cp\u003eThe policy includes, among other things:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003ea traffic light model for green, yellow, and red AI usage,\u003c\/li\u003e\n\n\u003cli\u003eprohibited and high-risk use cases,\u003c\/li\u003e\n\n\u003cli\u003eapproval of new AI tools,\u003c\/li\u003e\n\n\u003cli\u003eGDPR, personal data, and trade secrets,\u003c\/li\u003e\n\n\u003cli\u003einformation security, AI agents, API keys, and prompt injection,\u003c\/li\u003e\n\n\u003cli\u003ehuman oversight and fact-checking,\u003c\/li\u003e\n\n\u003cli\u003eArticle 50 and AI-generated content,\u003c\/li\u003e\n\n\u003cli\u003eHR, recruitment, and other high-impact decisions,\u003c\/li\u003e\n\n\u003cli\u003eAI literacy according to Article 4,\u003c\/li\u003e\n\n\u003cli\u003eincident reporting, roles, and annual review.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003ch3\u003e2. AI System Register and Classification – Word + PDF + Excel\u003c\/h3\u003e\u003cp\u003eA ready-made structure for inventorying the organization's AI systems and use cases. The register helps the business document who owns a system, how it is used, what data it processes, what role the organization has under the AI Act, and what controls are required.\u003c\/p\u003e\u003cp\u003eThe register template covers, among other things:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003eAI-ID, system, supplier, and version,\u003c\/li\u003e\n\n\u003cli\u003ebusiness process and intended purpose,\u003c\/li\u003e\n\n\u003cli\u003eaffected persons and data types,\u003c\/li\u003e\n\n\u003cli\u003epersonal data and sensitive personal data,\u003c\/li\u003e\n\n\u003cli\u003emodel training, storage, and third-country transfers,\u003c\/li\u003e\n\n\u003cli\u003escreening of Article 5, Article 6, and Annex I\/III,\u003c\/li\u003e\n\n\u003cli\u003escreening of transparency requirements in Article 50,\u003c\/li\u003e\n\n\u003cli\u003eDPIA and FRIA screening,\u003c\/li\u003e\n\n\u003cli\u003ehuman oversight, incident owner, and approval,\u003c\/li\u003e\n\n\u003cli\u003estatus: idea, pilot, approved, conditional, paused, or decommissioned.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003cp\u003e\u003cstrong\u003eThe Excel version\u003c\/strong\u003e also includes an overview with key figures, dropdowns, risk classification, expired reviews, and a classification guide.\u003c\/p\u003e\u003ch3\u003e3. AI Risk Assessment – Word + PDF\u003c\/h3\u003e\u003cp\u003eA structured risk analysis for new or modified AI use cases. The template uses a simple probability × consequence model but clearly distinguishes between internal risk prioritization and legal permissibility.\u003c\/p\u003e\u003cp\u003eRisk areas addressed include, among others:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003elegal classification,\u003c\/li\u003e\n\n\u003cli\u003edata protection,\u003c\/li\u003e\n\n\u003cli\u003einformation security,\u003c\/li\u003e\n\n\u003cli\u003ehallucinations and data quality,\u003c\/li\u003e\n\n\u003cli\u003ediscrimination and fundamental rights,\u003c\/li\u003e\n\n\u003cli\u003ehuman oversight,\u003c\/li\u003e\n\n\u003cli\u003etransparency,\u003c\/li\u003e\n\n\u003cli\u003ecopyright and intellectual property rights,\u003c\/li\u003e\n\n\u003cli\u003evendor lock-in and operational dependency,\u003c\/li\u003e\n\n\u003cli\u003ecustomer trust and reputational risk.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003cp\u003eThe template includes a risk register, control questions, responsibilities, mitigation, residual risk, and a pre-formatted approval decision.\u003c\/p\u003e\u003ch3\u003e4. AI Supplier Assessment – Word + PDF\u003c\/h3\u003e\u003cp\u003eA practical due diligence template for the procurement and approval of external AI services, language models, APIs, AI agents, and other AI platforms.\u003c\/p\u003e\u003cp\u003eThe assessment covers, among other things:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003ethe roles of the supplier and customer under the AI Act,\u003c\/li\u003e\n\n\u003cli\u003eproduct information and usage restrictions,\u003c\/li\u003e\n\n\u003cli\u003edata processing agreements and sub-processors,\u003c\/li\u003e\n\n\u003cli\u003emodel training on customer data,\u003c\/li\u003e\n\n\u003cli\u003estorage locations and third-country transfers,\u003c\/li\u003e\n\n\u003cli\u003eSSO\/MFA, permissions, logging, and encryption,\u003c\/li\u003e\n\n\u003cli\u003eprompt injection, data exfiltration, and agent permissions,\u003c\/li\u003e\n\n\u003cli\u003eincident management, backup, and continuity,\u003c\/li\u003e\n\n\u003cli\u003elicense terms, input\/output, liability, and SLA,\u003c\/li\u003e\n\n\u003cli\u003eexit, export, deletion, and vendor lock-in.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003ch3\u003e5. AI Impact Assessment with DPIA and FRIA Screening – Word + PDF\u003c\/h3\u003e\u003cp\u003eA broad impact analysis that helps the organization describe an AI use case and assess whether further legal analysis is required.\u003c\/p\u003e\u003cp\u003eThe template covers:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003edescription of process, purpose, and affected groups,\u003c\/li\u003e\n\n\u003cli\u003eAI Act screening against Article 5, Article 6, and Article 50,\u003c\/li\u003e\n\n\u003cli\u003eDPIA screening according to GDPR Article 35,\u003c\/li\u003e\n\n\u003cli\u003eFRIA screening according to the AI Act Article 27,\u003c\/li\u003e\n\n\u003cli\u003eimpact on privacy, equal treatment, working life, accessibility, and other rights,\u003c\/li\u003e\n\n\u003cli\u003esafeguards, transparency, complaint channels, and follow-up.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003cp\u003eThe template does \u003cstrong\u003enot\u003c\/strong\u003e assume that a DPIA or FRIA is always mandatory. Instead, it helps the business document the screening and identify when a full assessment might be needed.\u003c\/p\u003e\u003ch3\u003e6. AI Governance and Approval – Word + PDF\u003c\/h3\u003e\u003cp\u003eThis template ties the package together into a practical control system. It contains roles, RACI, decision workflows, approval matrices, control plans, and decision protocols for AI use cases.\u003c\/p\u003e\u003cp\u003eThe workflow follows the principle:\u003c\/p\u003e\u003col\u003e\n\n\u003cli\u003eProposal\u003c\/li\u003e\n\n\u003cli\u003eRegistration\u003c\/li\u003e\n\n\u003cli\u003eClassification and screening\u003c\/li\u003e\n\n\u003cli\u003eRisk analysis\u003c\/li\u003e\n\n\u003cli\u003eApproval decision\u003c\/li\u003e\n\n\u003cli\u003eDeployment\u003c\/li\u003e\n\n\u003cli\u003eOngoing follow-up\u003c\/li\u003e\n\n\u003cli\u003eReview or decommissioning\u003c\/li\u003e\n\n\n\u003c\/ol\u003e\u003ch2\u003eLegally updated for 2026\u003c\/h2\u003e\u003cp\u003eThe package takes into account the changed timeline following the Digital Omnibus on AI. This means, among other things, that:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003eAI literacy rules according to Article 4 apply,\u003c\/li\u003e\n\n\u003cli\u003etransparency requirements according to Article 50 apply from \u003cstrong\u003eAugust 2, 2026\u003c\/strong\u003e,\u003c\/li\u003e\n\n\u003cli\u003eadditional prohibitions according to the amended Article 5 begin to apply on \u003cstrong\u003eDecember 2, 2026\u003c\/strong\u003e,\u003c\/li\u003e\n\n\u003cli\u003eChapter III, Sections 1–3 for high-risk AI according to Article 6.2 and Annex III begin to apply, under current legal status, on \u003cstrong\u003eDecember 2, 2027\u003c\/strong\u003e,\u003c\/li\u003e\n\n\u003cli\u003ecorresponding rules for high-risk AI according to Article 6.1 and Annex I begin to apply on \u003cstrong\u003eAugust 2, 2028\u003c\/strong\u003e.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003cp\u003eThe package is therefore designed so that the business can work with classification and preparation now without incorrectly treating future high-risk requirements as if all were already fully applicable.\u003c\/p\u003e\u003ch2\u003eWho is the package for?\u003c\/h2\u003e\u003cp\u003eThe package is particularly useful for Swedish companies and organizations that use ChatGPT, Microsoft Copilot, Gemini, Claude, generative AI in business systems, AI-based recruitment, analysis tools, code assistants, RAG solutions, AI agents, or other AI functions.\u003c\/p\u003e\u003cp\u003eIt can be used by, for example:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003eCEO and management team,\u003c\/li\u003e\n\n\u003cli\u003eboard of directors,\u003c\/li\u003e\n\n\u003cli\u003eIT manager and information security officer,\u003c\/li\u003e\n\n\u003cli\u003eData Protection Officer (DPO),\u003c\/li\u003e\n\n\u003cli\u003eHR,\u003c\/li\u003e\n\n\u003cli\u003elegal and compliance,\u003c\/li\u003e\n\n\u003cli\u003eprocurement,\u003c\/li\u003e\n\n\u003cli\u003esystem owners and business owners,\u003c\/li\u003e\n\n\u003cli\u003econsultants helping companies with AI governance.\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003ch2\u003eFormat and delivery\u003c\/h2\u003e\u003cp\u003e\u003cstrong\u003eDigital product – immediate download after purchase.\u003c\/strong\u003e\u003c\/p\u003e\u003cp\u003eThe delivery contains 14 files:\u003c\/p\u003e\u003cul\u003e\n\n\u003cli\u003e6 editable Word files (DOCX)\u003c\/li\u003e\n\n\u003cli\u003e6 PDF versions\u003c\/li\u003e\n\n\u003cli\u003e1 AI system register in Excel (XLSX)\u003c\/li\u003e\n\n\u003cli\u003e1 Read me file\u003c\/li\u003e\n\n\n\u003c\/ul\u003e\u003cp\u003eTotal: \u003cstrong\u003e48 Word\/PDF pages + Excel workbook\u003c\/strong\u003e.\u003c\/p\u003e\u003ch2\u003eImportant regarding customization\u003c\/h2\u003e\u003cp\u003eThe AI Act is risk-based, and obligations depend on the organization's role, the system's function, the area of use, and other applicable regulations. The package is therefore a professional template and governance framework that must be adapted to the business's actual AI systems, data processing, industry, collective agreements, information classification, and technical environment.\u003c\/p\u003e\u003cp\u003eA specific high-risk use case or extensive processing of personal data may require separate legal, technical, labor, or data protection analysis.\u003c\/p\u003e\u003ch2\u003eFrequently asked questions\u003c\/h2\u003e\u003ch3\u003eIs the AI policy included?\u003c\/h3\u003e\u003cp\u003eYes. The complete AI policy for companies 2026 is included in the package.\u003c\/p\u003e\u003ch3\u003eDo we get both Word and PDF?\u003c\/h3\u003e\u003cp\u003eYes. All six templates are delivered in both editable Word version and PDF.\u003c\/p\u003e\u003ch3\u003eIs Excel included?\u003c\/h3\u003e\u003cp\u003eYes. The AI system register is also delivered as a practical Excel workbook with 50 register rows, dropdowns, a classification guide, and an overview.\u003c\/p\u003e\u003ch3\u003eIs the package only for high-risk AI?\u003c\/h3\u003e\u003cp\u003eNo. It is intended for broad AI governance and can also be used for generative AI and other use cases with low or limited risk. High-risk and prohibition screening are included to help the organization identify when specific legal control is needed.\u003c\/p\u003e\u003ch3\u003eDoes the package replace a DPIA or FRIA?\u003c\/h3\u003e\u003cp\u003eNo. The package contains screening and documentation materials. If the actual use triggers a requirement for a full DPIA or FRIA, it must be carried out with the depth required by legislation.\u003c\/p\u003e","brand":"Svenska Dokumentmallar","offers":[{"title":"Default Title","offer_id":55510982099286,"sku":"AI-GOV-PACK-2026","price":199.0,"currency_code":"SEK","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0827\/2373\/3846\/files\/ai-governance-ai-act-compliance-paket-2026.png?v=1790497979","url":"https:\/\/mallbutiken.se\/en\/products\/ai-governance-paket-ai-act-compliance-2026","provider":"Mallbutiken","version":"1.0","type":"link"}