These pages are in English. The product is not. The directory entries, the customer portal and the contract annexes are in German, and contracts are governed by German law. How we check.
Since 2 August 2026 Article 50 applies
The evidence layer of your AI governance: AI CostGuard documents your AI tools, monitors what vendors state, and turns that into traceable records for GDPR and the AI Act — every statement with source, quotation and retrieval date. It rests on KI-Radar: a directory of 270 AI tools, checked on data processing under Art. 28 GDPR, processing location, training on customer data, and certifications.
AI register Monitoring Records AI Act & GDPR
Overview · Sample GmbH
The problem
AI tools arrive through the business units, not through IT. Whoever has to count them starts from zero.
A certification disappears, a training clause appears — usually without notice.
“We checked that back then” does not survive an audit. What is asked for is what the assessment rested on, and when.
GDPR, the AI Act, Article 50 — and each obligation needs a document somebody signs.
In four steps
From the first list to a record ready for signature — without you maintaining a database.
Enter tools or upload a list — an invoice will do. Purpose, owner and legal entity alongside.
Each tool is linked to our verified directory. The ratings are there at once — you research nothing.
If a vendor changes something about one of your tools, you get a notice with before and after.
Every quarter a dated document per entity, with quotation and source for every statement. At the touch of a button.
AI governance
Anyone deploying AI carries six duties that cannot be delegated — only evidenced. What the register contributes to each:
A register per legal entity: tool, purpose, department, and the person who answers for it. Also from an uploaded list or an invoice.
Provider or deployer, and which class of the AI Act the system falls into. Recorded per system, not as a blanket verdict on the company.
Which of your systems need a notice, whom the duty falls on, and the sentence that belongs on the page.
Record per system whether the people working with it need training — and what happened about it.
DPA, processing location, training on customer data and certifications — evidenced per tool, with source and date, checked daily. This is the part everyone else researches themselves.
A dated quarterly record with a checksum over the underlying facts. Every earlier state remains traceable — including the one that no longer holds.
Governance is more than evidence. The rest is yours — or another tool's.
There is no request-and-approval workflow for new AI tools. Whoever needs one runs it where the rest of procurement runs.
We do not manage policies or works agreements. We evidence what your tools commit to; what you make of that is yours to decide.
Conformity assessment, technical documentation and the design of human oversight under Annex III are outside this register. It tells you which systems might be affected — not how to discharge the duties.
Reports under Article 73 do not run through us. What we provide is the documented state before.
In short: we are the evidence layer of your AI governance, not the decision layer. Decisions are made at your end — evidence is kept here.
Our chain of evidence
Other directories hand you a verdict. We hand you the verdict and the source it came from — verbatim, as of the day of retrieval. The methodology in detail →
Trust centre, data processing agreement, privacy policy — from the vendor itself only, never second-hand.
The deciding statement is recorded verbatim. You read the sentence the rating rests on.
Every statement carries the day we last looked. Not “current”, but a date.
The page is stored unchangeably. Even if the vendor rewrites or deletes it tomorrow.
A person decides and gives reasons. The predecessor stays readable — nothing is quietly overwritten.
Your document, dated, with quotation and reference. In six months it still says the same.
Inside the product
Register
| Tool | DPA | Host. | Train. | Cert. |
|---|---|---|---|---|
| ChatGPT | ||||
| Claude | ||||
| Copilot | ||||
| Midjourney |
changes
OpenAI · privacy policy
training statement changed — 14 July 2026
Anthropic · terms of use
hosting region added — 6 July 2026
Colossyan · security page
SOC 2 Type II added — 1 August 2026
Records
Register Q2/2026
PDF · 1.2 MB · ready
DPA record
PDF · 802 KB
Article 50 check
PDF · 612 KB
Public and free
Our directory of verified AI tools is open to everyone — without signing up. Four questions per tool, each with evidence: is there a data processing agreement? Where is data processed? Is training done on your data? Which certifications are in place?
Search the directory| Tool | DPA | Hosting | Training | Cert. |
|---|---|---|---|---|
| ClickUp AI | ||||
| Surfer SEO | ||||
| Prezi AI | ||||
| Midjourney |
demonstrably met only under conditions demonstrably not met not assessed
Free, no sign-up
All three run in the browser, need no email address and give you the result at once.
Six questions tell you which of your AI systems need a notice, whom the duty falls on and what to write.
Under two minutes · no sign-up · result at once
Start the quick checkHow far along is your company with the duties of the AI Act? Ten questions, a result per area — and the points where it first gets stuck.
Ten questions · score per area · no sign-up
Start the readiness checkWhat does your AI really cost? Pick use case, model and volume — the calculator shows the list price and the real markup.
Right here on the page · nothing to submit
To the calculatorAI Cost Calculator
No expertise needed. Pick your use case, the model and your volume — the calculator converts tokens, minutes and credits into euros and shows the hidden costs that appear on no invoice.
The gap between list price and real cost is exactly what an audit brings back.
Check my saving potentialEstimate based on public model prices (approximate, in EUR). Your actual markup is measured in the audit.
Plans
The directory is open to everyone, no sign-up. What you pay for is the work on it: taking in your tools, keeping them current, and turning that every quarter into a dated document that survives an audit.
KI-Radar
€0 / month
Look things up and watch what changes at your tools.
Full directory
Every verified tool with evidence, source and date.
Watchlist, up to five tools
Mark what you use. Anyone who has to keep more keeps a register — and that is Pro.
Change alerts
You hear about it when something changes at one of those five.
No commitment
Create an account, leave whenever you like.
ProMost chosen
€249 / month net
For one legal entity that would rather not maintain its own AI register.
Everything in KI-Radar
Directory, watchlist, change alerts.
AI register under the AI Act
Initial build and ongoing maintenance — we keep it, not you.
Quarterly record
A dated document that survives an audit.
Article 50 check
Which of your systems need a notice — and which one.
Max
€590 / month net
For groups with several legal entities.
Everything in Pro, per entity
Its own register, its own record, its own owners.
Up to five legal entities
Consolidated group roll-up for the board.
Alert on certification changes
If a vendor loses its ISO 27001, it is in your inbox the next morning — with the name of the standard.
Standards filter and column in the record
Which of your tools are certified to ISO 42001 — as at the cut-off date.
Prices net on a twelve-month term. Monthly payment on request with a 10% surcharge. Compare everything →
What we work from
Measured on from live operation. The figures are recalculated on every publication.
Walk through a finished tenant — register, classifications, Art. 50 notices, sources and a quarterly record, exactly as a customer gets it. No sign-up, no email address.
Open the demo See the sample record (PDF)
The free tier carries no commitment: directory, watchlist and change alerts, cancellable at any time.
Quarterly record Q2/2026 · Sample GmbH