The rules, in plain English.
Expert guides to the regulations Qgentic files — written by the team that built the validators. Each one is grounded in the actual rulebook, and honest about where a boundary or a judgement call lives.
DORA — Digital Operational Resilience Act
The DORA Register of Information, explained
Who must file, the eleven ITS templates and what each captures, and the four things that trip firms up.
How to validate an LEI (ISO 17442)
The MOD 97-10 check digit, a worked example, and why a bad LEI fails a DORA register.
DORA ICT subcontracting: mapping the chain
Why the whole chain matters, what the subcontracting table captures, and where concentration risk hides.
Operational resilience (UK)
UK operational resilience reporting, explained
Important business services, impact tolerances, mapping and self-assessment — and how it differs from DORA.
Impact tolerances & important business services
Naming important business services and setting tolerances that survive a severe-but-plausible scenario.
Operational resilience scenario testing
Choosing severe-but-plausible scenarios, testing against tolerances, and turning the results into evidence.
Making Tax Digital
MTD for practices: a capacity plan
Quarterly reporting multiplies every client by five. The arithmetic, where the hours actually go, and what to automate first.
MTD bridging software for VAT, explained
Digital links, the nine-box return, and filing VAT from your ERP or spreadsheet under Making Tax Digital.
Making Tax Digital for Income Tax (ITSA)
Quarterly updates, who's mandated and when, and how ITSA runs on the same engine as VAT.
MTD digital links explained
What qualifies as a digital link, what breaks the chain, and why re-typing a figure is the classic failure.
AI governance
The EU AI Act register & risk classification
The risk tiers, Annex III high-risk areas, technical documentation and incident clocks — explained.
UK AI governance: model inventory & ATRS
No UK AI Act — but real instruments: SS1/23 model risk management and the ATRS transparency record.
EU AI Act technical documentation (Annex IV)
What the Annex IV set must contain for a high-risk system, and why completeness is the gate.