Skip to main content

140 posts tagged with "Compliance"

Regulatory compliance and legal frameworks

View all tags

SOC 2's 'No Human Request' Problem: Why Your AI Agent Needs a Delegation Chain, Not Just an Audit Log
·Dora Noda·9 min

SOC 2's 'No Human Request' Problem: Why Your AI Agent Needs a Delegation Chain, Not Just an Audit Log

SOC 2 auditors now flag 'no human request' as an accountability gap even with a complete audit log. Here's the credential pattern — encoding who authorized what, not just logging it — that actually satisfies the Trust Services Criteria for an agent-native deploy API.

compliance
security
AI agents
PaaS
+1
Doppler Finally Ships On-Prem — It's Still Not Infisical: What Self-Hosting Secrets Actually Costs
·Dora Noda·9 min

Doppler Finally Ships On-Prem — It's Still Not Infisical: What Self-Hosting Secrets Actually Costs

Doppler shipped an on-prem deployment option in June 2026, but it's Enterprise-only and closed-source. Infisical's MIT core stays free to self-host — until you price out RBAC, SSO, and per-identity billing against Doppler's per-seat model.

self-hosting
PaaS
security
compliance
Vault Went BSL, OpenBao Forked It Back: Which One Should a Self-Hosted PaaS Wire In
·Dora Noda·8 min

Vault Went BSL, OpenBao Forked It Back: Which One Should a Self-Hosted PaaS Wire In

Vault Community Edition's license bars embedding it in a resold product, but OpenBao's Linux Foundation fork now ships free, GA multi-tenant namespaces that Vault keeps locked behind Enterprise — a concrete look at what a self-hosted PaaS should actually wire in for tenant secrets.

self-hosting
PaaS
security
compliance
The Crypto Iron Curtain: EU's 20th Sanctions Package Bans Russian Exchanges, the Digital Ruble, and RUBx
·Dora Noda·11 min

The Crypto Iron Curtain: EU's 20th Sanctions Package Bans Russian Exchanges, the Digital Ruble, and RUBx

On May 24, 2026 the EU's 20th sanctions package shifts crypto enforcement from list-by-list designations to a category ban on every Russian and Belarusian crypto provider — and pre-emptively blocks the digital ruble before its September rollout.

regulation
compliance
stablecoins
digital currency
+1
Maroo Goes Live: Korea's First Sovereign L1 for KRW Stablecoins and AI Agents
·Dora Noda·11 min

Maroo Goes Live: Korea's First Sovereign L1 for KRW Stablecoins and AI Agents

Hashed Open Finance opened the public testnet of Maroo on May 7, 2026 — a sovereign Layer 1 chain where every gas fee is paid in OKRW and every AI agent gets a unique on-chain identity, launched directly into Korea's Digital Asset Basic Act fight.

stablecoins
AI agents
regulation
compliance
+1
Hong Kong's Stablecoin License Drop: Inside the Asia-Pacific Race to Become Crypto's Institutional Hub
·Dora Noda·11 min

Hong Kong's Stablecoin License Drop: Inside the Asia-Pacific Race to Become Crypto's Institutional Hub

Hong Kong granted only 2 of 36 stablecoin license applications in April 2026. Here is how its framework compares with Singapore, UAE, and the US GENIUS Act in the race to become crypto's institutional hub.

stablecoins
regulation
compliance
institutional-investment
+1
Polymarket Hires Chainalysis to Police a Prediction Market That Just Got Too Big to Trust Itself
·Dora Noda·11 min

Polymarket Hires Chainalysis to Police a Prediction Market That Just Got Too Big to Trust Itself

Polymarket's April 30 deal with Chainalysis is the first DeFi-grade insider-trading surveillance system — and the bridge between a $25B prediction-market sector and the U.S. regulators it now has to convince.

DeFi
compliance
regulation
crypto
Confidential APT Goes Live: Aptos Bets on Move-Native Privacy
·Dora Noda·10 min

Confidential APT Goes Live: Aptos Bets on Move-Native Privacy

Aptos activated Confidential APT on mainnet via Proposal 188, embedding encrypted balances and transfer amounts directly into the Move framework — beating Solana, Aleo, and Aztec to compliant on-chain privacy.

Aptos
privacy
Move
zkp
+1
Chainlink's SOC 2 Triple-Stack: The Compliance Moat That Locks Out Every Other Oracle
·Dora Noda·10 min

Chainlink's SOC 2 Triple-Stack: The Compliance Moat That Locks Out Every Other Oracle

Chainlink became the first oracle platform to hold SOC 2 Type 1, Type 2, and ISO 27001 — the same compliance stack as Stripe and AWS. Here's why every other oracle is now 18 months behind on institutional procurement.

compliance
infrastructure
institutional-investment
RWA
+1
Showing 10–18 of 140 posts