From mycelium
Assesses EU AI Act applicability, risk classification (Annex III), and Article 50 transparency for products with AI/ML components. Documents in threat-model.yml and decision-log.md.
How this skill is triggered — by the user, by Claude, or both
Slash command
/mycelium:regulatory-reviewThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Assess whether the product falls under AI regulation and identify compliance requirements.
Assess whether the product falls under AI regulation and identify compliance requirements.
ai_toolDetermine AI presence: Does this product contain AI/ML components?
EU AI Act risk classification (Regulation 2024/1689):
Article 50 transparency check (applies from 2 August 2026):
Product-type-specific checks:
Document findings:
.claude/canvas/threat-model.yml with regulatory classification.claude/canvas/privacy-assessment.yml if data processing is involved.claude/harness/decision-log.mdDetermine compliance path:
## Regulatory Review: [Product Name]
AI Components: [Yes/No]
Risk Classification: [Minimal/Limited/High/Unacceptable]
### Annex III Assessment
| Category | Applicable? | Rationale |
|----------|------------|-----------|
| Biometric | No | ... |
| Critical infra | No | ... |
| ... | ... | ... |
### Transparency Requirements
- AI disclosure needed: [Yes/No]
- Synthetic content marking: [Yes/No]
- Deepfake disclosure: [Yes/No]
### Compliance Path
[What needs to happen before delivery]
### Decision
Regulatory Gate: [Pass/Fail/N-A]
Mycelium is not a legal compliance tool. This skill raises awareness and prompts assessment of regulatory applicability. For actual compliance decisions, consult qualified legal counsel specializing in AI regulation.
npx claudepluginhub haabe/mycelium --plugin myceliumClassifies AI systems under EU AI Act Annex III and US-state high-risk laws. Helps identify provider vs deployer obligations and prohibited practices.
Guides AI governance and compliance including EU AI Act risk classification, NIST AI RMF assessments, responsible AI principles, ethics reviews, and regulatory requirements for AI systems.
Reviews marketing AI system description cards against EU AI Act risk-tier criteria, classifies systems, flags documentation obligations, and identifies deployment-readiness gaps.