all ten risks with practical mitigations.
the new threat model for AI agents and MCP, released December 2025.
gated. ~25 readiness items across governance, risk, lifecycle, operations, and monitoring.
gated. Article 16 obligations and a 90-day plan for the August 2, 2026 high-risk deadline.