Sacred Logic™

Standards & references

Last updated 25 July 2026

How to read this page

The Sacred Logic™ Charter Mark scheme is designed to align withrecognised AI-governance and assurance standards. Listing a standard below means our assessment framework and operating model draw on its good practice — it does not mean we are certified, accredited, endorsed or conformity-assessed by the body that issues it. References may be updated as standards, legislation and regulatory guidance evolve.

ISO/IEC 42001

Artificial intelligence management systems

The management-system standard for governing AI responsibly across its lifecycle — the closest analogue to what the Charter Mark assesses at an organisational level.

ISO/IEC 23894

Artificial intelligence — Guidance on risk management

Risk-management practice for AI: identifying, analysing and treating AI-specific risks, which our Human Values Framework draws on for points on robustness and proportionality.

ISO/IEC 27001

Information security management systems

The baseline for protecting the confidentiality, integrity and availability of information — relevant to our privacy, data-governance and security expectations.

ISO/IEC 17065

Conformity assessment — Requirements for bodies certifying products, processes and services

The principles good certification bodies follow — impartiality, competence, consistent decision-making — which shape how we run assessment and human validation.

NIST AI Risk Management Framework

Govern, Map, Measure, Manage

A widely-used, voluntary framework for managing AI risk; its functions inform the structure of our assessment criteria.

OECD AI Principles

Recommendation on Artificial Intelligence

Intergovernmental principles for trustworthy AI — human-centred values, transparency, robustness and accountability — reflected across the Human Values Framework.

EU Artificial Intelligence Act

Regulation (EU) 2024/1689

The risk-based obligations for AI systems placed on the EU market. The Charter Mark is a voluntary complement to it, not a substitute for it.

UK data protection legislation

UK GDPR & Data Protection Act 2018

Requirements governing lawful processing of personal data, which apply to how we operate the platform and public register.

No accreditation or endorsement claimed

Reference to any external standard or legal framework on this site does not imply formal certification, accreditation, endorsement or conformity assessment by the relevant issuing body. The Charter Mark is a voluntaryassurance scheme; it complements, but does not replace, an organisation's own legal or regulatory obligations. See our Disclaimer and Certification Rules.

The framework we actually assess against

Certification is decided against our own published Human Values Framework— ten domains covering human oversight, robustness, privacy, transparency, accountability, fairness, societal and environmental wellbeing, and three Sacred Logic additions on authorship integrity, cultural and epistemic diversity, and lifecycle stewardship. The standards above informed its design; the framework is what evidence is measured against.

This page is a good-faith summary and has not yet been reviewed by a lawyer. Standard names and numbers are the property of their respective issuing bodies.