Compliance / Regulatory Intelligence · Crestline Small Finance Bank
Demo · last ingest 9 min ago Blind mode AP

Regulatory feed · Q1 2026

Ingested, classified, and routed within seconds of publication. Human-in-loop on all material memos.
Regulations · ingested
47
Q1 · across 5 regulators. 100% on time.
Material / Critical
12
3 board escalation · 9 CCO action
Avg classify time
47s
vs industry ~2 hrs (analyst read)
Memos pending CCO
4
2 critical · 2 material
All · 9 RBI · 5 TRAI · 2 SEBI · 1 BIS · 1
Demo note. Click any regulation to drill into extracted obligations, control mapping, and the auto-drafted CCO memo. RBI FREE-AI Report is the hero — 14 obligations, Apr 10 deadline, delivered on time.
Back to feed
RBI Circular DPSS.CO.OD.No./2026 · Published Mar 22, 2026 · Deadline Apr 10, 2026 Critical

Framework for Responsible and Ethical Enablement of AI in Financial Services (FREE-AI)

RBI's master framework governing AI use in scheduled banks, NBFCs, and fintech partners. Establishes board-level governance, bias testing, explainability, audit-log retention, grievance redressal, and cross-border data flow controls. Binding for all entities with customer-facing AI by Apr 10, 2026.

Obligations
14
Extracted from 42-page circular
Controls mapped
22
18 with evidence · 4 gaps
Classify time
42s
Ingest → extract → map → draft
Status
On time
CCO-approved Apr 9, 17:22 IST
Summary
Obligations 14
Control mapping 22
Draft memo

What it covers

The FREE-AI Report is RBI's first comprehensive framework for AI deployment in regulated financial services. It lands on five pillars: governance, accountability, risk, fairness, and transparency.

Who it applies to

  • All scheduled commercial banks, small finance banks, payments banks, and co-operative banks
  • NBFCs with AUM above ₹500 crore, and all NBFC-account aggregators
  • Third-party fintech partners processing customer data on behalf of regulated entities

Key obligations (summary)

  • Board-approved AI governance framework, reviewed every 6 months
  • Designated AI Officer at senior management level, reporting to the Audit Committee
  • Bias testing on all customer-facing models, every 6 months, documented
  • Audit log retention of 7 years for all AI-driven decisions with financial impact
  • Customer-facing labeling wherever AI materially influences the outcome
  • Grievance redressal within 30 days for AI-influenced decisions
  • Incident reporting to RBI within 24 hours for material AI failures
Source: RBI Master Circular · DPSS.CO.OD.No./2026 · 42 pp.

Classification

Impact levelCritical
Entity applicabilityIn scope
Score (0–100)87
Board escalationRequired
Regulator contactDPSS desk
Linked circulars3

Next steps

Board reviewApr 28
Audit sign-offMay 15
External auditSep 30

Obligations · all regulations

Every obligation across the ingested corpus, mapped to controls with evidence or gap.
Obligations · total
47
Across 9 active circulars
With evidence
39
83% · audit-ready
Gaps open
6
3 with remediation plan
Critical open
2
Both board-level escalation
All · 47 With evidence · 39 Gap · 6 Critical · 2
ObligationSourceControlEvidenceDeadlineStatus

Approvals · CCO queue

Nothing ships automatically. Every memo requires human sign-off. 4 pending.
Human-in-the-loop by design. The agent drafts; the CCO approves. Every approval is logged with timestamp and user, forming part of the audit trail.

Regulator corpus

Sources currently being monitored. Each regulator fetched, parsed, and scored continuously.

Reserve Bank of India · RBI

Master directions, circulars, notifications across scheduled banks, NBFCs, and payment systems.

1,247 circulars · last ingest 9m ago

Telecom Regulatory Authority · TRAI

Consumer protection, unsolicited commercial communication, data localization.

312 notifications · last ingest 2h ago

SEBI

Digital lending disclosure, market conduct, fintech partnership rules.

89 circulars · last ingest 14h ago

Bureau of Indian Standards · BIS

Open banking API standards, data exchange formats.

41 standards · last ingest Apr 15

Ministry of Home Affairs · MHA

KYC, anti-money laundering, cybersecurity advisories.

On deck · Q2 ingest

CERT-In

Cyber incident reporting requirements and advisories.

On deck · Q2 ingest