The technology arm of AI Exponent LLC.
We build open source tools so engineering teams can meet AI regulation without replacing engineering with compliance.
Our Mission
Building AI that deserves to be trusted.
AI Exponent exists to close the gap between AI regulation and practical developer tooling. We believe compliance should be a natural by-product of good engineering, not a bureaucratic afterthought.
Our tools make it straightforward for teams to build AI systems that meet the highest standards of transparency, accuracy, and accountability — on deadlines the law has already set.
What We Build
Four free tools. One evidence chain.
We maintain four flagship open source tools spanning license compliance (Article 53), risk management (Article 9), accuracy benchmarking (Article 15), and prohibited-practice screening (Article 5). Each maps directly to a specific EU AI Act obligation and produces a named regulatory artefact — a signed SBOM, a Risk Management File, a benchmark report, or a prohibited-practice verdict.
Sigil, our runtime governance platform for AI agents, is in active development. It will deliver real-time policy enforcement, tamper-evident audit logging, and EU AI Act Articles 14 & 17 compliance reporting. Early access is open.
Our tools produce documentary evidence for compliance workflows. They do not constitute legal advice and do not substitute for qualified counsel or a notified body. Full legal notices.
Two Arms, One Parent
AI Exponent LLC operates two brands, on purpose.
AI Exponent.com is the technology arm: open source governance tooling, the Sigil runtime platform, and the engineering evidence pipeline behind them. AskAjay.ai is the advisory arm of the same parent company — consulting, courses, and agentic-AI transformation services for the leaders standing up programmes around those tools. Same legal entity, AI Exponent LLC; different audiences, different voices. The split exists so each side can be honest about what it is: tools must be honest about what they do, and advisory must be honest about who is judging — mixing the two is how compliance theatre starts. Visit AskAjay.ai →
Led By

Ajay Pundhir
Founded AI Exponent LLC and writes the code in the four flagship repos on this site — license-compliance-checker, RiskForge, RAG-Benchmarking, LitmusAI. Twelve years on production ML before AI governance was its own category; the advisory arm runs separately at askajay.ai →.
What we've shipped so far
- 4
- Apache 2.0 OSS tools, each mapped to a specific EU AI Act article.
- 8
- EU AI Act articles indexed and explained on the site, citing the Official Journal directly.
- 0
- Compliance claims without a primary-source citation. The authenticity gate is non-negotiable.
Early days. We are not yet publishing user counts, download numbers, or partner logos — partners are named post-pilot, with consent. Once the metrics are honest, they'll appear here.
Why Now
AI regulation is already live — and most teams have no tools to respond.
The EU AI Act (Regulation (EU) 2024/1689) is the biggest regulatory forcing function for responsible AI. Enforcement is already underway: AI literacy (Art. 4) and prohibited practices (Art. 5) from February 2025; GPAI transparency obligations (Art. 53) from August 2025; high-risk system obligations (Arts. 9–15) follow in August 2026.
But the EU AI Act is not the whole picture. Our tools cross-map to frameworks teams actually have to comply with elsewhere — so one evidence workflow produces outputs that satisfy obligations in multiple jurisdictions.
Get in Touch
Questions? We read every one.
For open source support, Sigil early access, or partnership opportunities — reach us at hello@aiexponent.com. For formal or legal matters: legal@aiexponent.com.
Contact us