<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<id>https://saga-compliance.com/learn</id>
	<title>Saga Compliance compliance guides</title>
	<updated>2026-08-16T00:00:00Z</updated>
	<link rel="self" type="application/atom+xml" href="https://saga-compliance.com/learn/feed.xml"/>
	<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn"/>
	<author><name>Saga editorial team</name></author>
	<entry>
		<id>https://saga-compliance.com/learn/eu-ai-act/article-50-transparency</id>
		<title>AI Act Article 50 transparency in practice</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-ai-act/article-50-transparency"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>A decision path for human interaction notices, synthetic-content marking, deepfakes, emotion recognition, and public-interest text.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/gdpr/controller-or-processor</id>
		<title>Controller or processor? Decide per processing activity</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/gdpr/controller-or-processor"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>How to classify data-protection roles from actual decision-making rather than labels in a contract.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/csddd</id>
		<title>Corporate Sustainability Due Diligence Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/csddd"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>EU rules for in-scope companies to address human-rights and environmental impacts in their chains of activities.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/csrd</id>
		<title>Corporate Sustainability Reporting Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/csrd"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>EU rules for standardised corporate sustainability reporting, assurance and digital disclosure.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/csrd-vs-eu-taxonomy</id>
		<title>CSRD vs EU Taxonomy — narrative reporting or activity alignment?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/csrd-vs-eu-taxonomy"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>How ESRS sustainability reporting relates to taxonomy eligibility, alignment, safeguards, and KPIs.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/csrd-vs-sfdr</id>
		<title>CSRD vs SFDR — company report or financial-product disclosure?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/csrd-vs-sfdr"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare corporate sustainability reporting with disclosures made by financial-market participants and advisers.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/dora-vs-iso-27001</id>
		<title>DORA vs ISO 27001 — regulation or management system?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/dora-vs-iso-27001"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>How a voluntary information-security management system supports—but cannot replace—DORA compliance.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/dora/ict-incident-clock</id>
		<title>DORA’s ICT incident reporting clock</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/dora/ict-incident-clock"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Build classification, initial notification, intermediate reporting, and final reporting as one owned operational path.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/dsa-vs-gdpr</id>
		<title>DSA vs GDPR — platform accountability or data protection?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/dsa-vs-gdpr"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare online intermediary duties with personal-data duties across moderation, advertising, recommendations, and user rights.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/eu-aml-vs-mica</id>
		<title>EU AML rules vs MiCA — financial crime or market authorisation?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/eu-aml-vs-mica"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare crypto authorisation and customer protection with anti-money-laundering risk, customer due diligence, and reporting.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eudr</id>
		<title>EU Deforestation Regulation</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eudr"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>EU due-diligence rules for specified commodities and products associated with deforestation and forest degradation.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/eudr-vs-csddd</id>
		<title>EUDR vs CSDDD — commodity traceability or broad due diligence?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/eudr-vs-csddd"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare product-specific deforestation due diligence with broader human-rights and environmental due diligence.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/gdpr-vs-nis2</id>
		<title>GDPR vs NIS2 — privacy incident or cyber incident?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/gdpr-vs-nis2"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare protected interests, incident triggers, clocks, recipients, and the events that require both reports.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/gdpr-vs-ai-act</id>
		<title>GDPR vs the EU AI Act — data protection or AI governance?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/gdpr-vs-ai-act"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare personal-data duties with role- and risk-based AI duties, and see why one AI system can owe both.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/gdpr</id>
		<title>General Data Protection Regulation</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/gdpr"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>The EU framework for protecting personal data and governing how organisations process it.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-ai-act/high-risk-employment</id>
		<title>High-risk employment AI: evidence before deployment</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-ai-act/high-risk-employment"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>How employment use changes AI Act classification, deployer duties, human oversight, monitoring, and worker information.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/iso-9001-vs-iso-27001</id>
		<title>ISO 9001 vs ISO 27001 — quality system or security system?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/iso-9001-vs-iso-27001"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare quality and information-security management systems, their risks, controls, audits, and opportunities for one integrated system.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-ai-act/role-mapping</id>
		<title>Map the AI Act role before the risk class</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-ai-act/role-mapping"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Provider, deployer, importer, distributor, product manufacturer, and GPAI provider duties begin with role.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/mica-vs-mifid-ii</id>
		<title>MiCA vs MiFID II — crypto-asset or financial instrument?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/mica-vs-mifid-ii"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Why classification comes first when a token or service may sit under crypto or traditional securities law.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/nis2/scope-per-legal-entity</id>
		<title>NIS2 scope belongs to the legal entity</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/nis2/scope-per-legal-entity"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>A repeatable scope assessment across sector, establishment, size, special cases, national law, and group structure.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/nis2-vs-dora</id>
		<title>NIS2 vs DORA — which cybersecurity regime governs you?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/nis2-vs-dora"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>How the EU’s two cybersecurity regimes divide the territory: who each covers, whose incident clocks apply, and what happens when a group falls under both.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/nis2-vs-iso-27001</id>
		<title>NIS2 vs ISO 27001 — statutory measures or certification?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/nis2-vs-iso-27001"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Compare NIS2’s statutory cyber duties with an ISO 27001 management system and certification boundary.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/nis2/incident-reporting-sequence</id>
		<title>NIS2’s 24-hour, 72-hour, and one-month sequence</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/nis2/incident-reporting-sequence"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Turn the directive’s staged reporting into an incident workflow that works outside office hours.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/dora/register-of-information</id>
		<title>The DORA register of information as a live control</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/dora/register-of-information"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>What the ICT third-party register needs to connect, and why a procurement spreadsheet is rarely enough.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/gdpr/72-hour-breach-assessment</id>
		<title>The GDPR 72-hour breach assessment</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/gdpr/72-hour-breach-assessment"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>A practical, source-led way to separate detection, awareness, risk assessment, notification, documentation, and communication.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/dora/threat-led-penetration-testing</id>
		<title>Threat-led penetration testing under DORA</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/dora/threat-led-penetration-testing"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Separate ordinary resilience testing from the advanced TLPT duty for designated financial entities.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/nis2/management-accountability</id>
		<title>What NIS2 management accountability requires</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/nis2/management-accountability"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Move management approval and training from a signature to an evidenced oversight cycle.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/gdpr/data-protection-impact-assessment</id>
		<title>When a DPIA becomes operating evidence</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/gdpr/data-protection-impact-assessment"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>A DPIA is a living decision record for high-risk personal-data processing, not a launch checklist.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/whistleblowing-vs-gdpr</id>
		<title>Whistleblowing vs GDPR — confidentiality and data protection together</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/whistleblowing-vs-gdpr"/>
		<published>2026-08-16T00:00:00Z</published>
		<updated>2026-08-16T00:00:00Z</updated>
		<summary>Reconcile protected reporting, restricted case access, investigation, retention, notices, and data-subject rights.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/cbam</id>
		<title>CBAM — Carbon Border Adjustment Mechanism</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/cbam"/>
		<published>2026-08-15T00:00:00Z</published>
		<updated>2026-08-15T00:00:00Z</updated>
		<summary>A source-led guide to CBAM scope, the 50-tonne threshold, authorised declarants, emissions, certificates, and the definitive regime.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-battery-regulation</id>
		<title>EU Battery Regulation: 2026 compliance guide</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-battery-regulation"/>
		<published>2026-08-15T00:00:00Z</published>
		<updated>2026-08-15T00:00:00Z</updated>
		<summary>A practical guide to EU Battery Regulation scope, carbon-footprint rules, recycled content, due diligence, battery passports, producer duties, and deadlines.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-cra</id>
		<title>EU Cyber Resilience Act (CRA)</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-cra"/>
		<published>2026-08-15T00:00:00Z</published>
		<updated>2026-08-15T00:00:00Z</updated>
		<summary>A practical 2026 briefing on CRA scope, SaaS and remote processing, reporting deadlines, support periods, and the 2027 compliance date.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-data-act</id>
		<title>EU Data Act: cloud switching and SaaS obligations</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-data-act"/>
		<published>2026-08-15T00:00:00Z</published>
		<updated>2026-08-15T00:00:00Z</updated>
		<summary>A practical 2026 guide to EU Data Act cloud-switching duties for SaaS, contract terms, export rules, fees, exemptions, and key dates.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-accessibility-act</id>
		<title>European Accessibility Act: scope and digital-service duties</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-accessibility-act"/>
		<published>2026-08-15T00:00:00Z</published>
		<updated>2026-08-15T00:00:00Z</updated>
		<summary>A practical guide to European Accessibility Act scope, e-commerce duties, microenterprise relief, Swedish enforcement, and transition rules.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/csrd-vs-csddd</id>
		<title>CSRD vs CSDDD — reporting duty or conduct duty?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/csrd-vs-csddd"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>CSRD requires audited sustainability reporting; CSDDD requires action on human-rights and environmental impacts. Compare their scope, duties and dates.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/dora</id>
		<title>Digital Operational Resilience Act</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/dora"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>The EU operational-resilience framework for in-scope financial entities and their ICT risk.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/dsa</id>
		<title>Digital Services Act</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/dsa"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU rules for intermediary services, online platforms, content processes, transparency and systemic risks.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-aml</id>
		<title>EU Anti-Money-Laundering Package</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-aml"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>The EU single-rulebook, directive and authority package for anti-money-laundering and counter-terrorist-financing controls.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-ai-act</id>
		<title>EU Artificial Intelligence Act</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-ai-act"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>A risk-based EU framework for organisations that provide, deploy, import or distribute AI systems.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-pay-transparency</id>
		<title>EU Pay Transparency Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-pay-transparency"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU minimum rules intended to strengthen equal pay through transparency and enforcement mechanisms.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-taxonomy</id>
		<title>EU Taxonomy Regulation</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-taxonomy"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>The EU classification system for determining when economic activities qualify as environmentally sustainable.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/eu-whistleblower-directive</id>
		<title>EU Whistleblower Protection Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/eu-whistleblower-directive"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU minimum standards for reporting channels, follow-up and protection of people reporting specified breaches.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/hipaa</id>
		<title>Health Insurance Portability and Accountability Act</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/hipaa"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>US federal privacy, security and breach-notification rules for covered entities and business associates handling protected health information.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/iso-14001</id>
		<title>ISO 14001 — Environmental Management</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/iso-14001"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An international requirements standard for managing environmental responsibilities through a management system.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/compare/iso-27001-vs-soc-2</id>
		<title>ISO 27001 vs SOC 2 — certificate or attestation?</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/compare/iso-27001-vs-soc-2"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>Compare ISO 27001 certification with SOC 2 attestation: what each proves, who requests it, audit cadence, and how one control set can support both.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/iso-45001</id>
		<title>ISO 45001 — Occupational Health and Safety Management</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/iso-45001"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An international requirements standard for occupational health and safety management systems.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/iso-9001</id>
		<title>ISO 9001 — Quality Management</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/iso-9001"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An international requirements standard for quality management systems and consistent delivery.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/iso-27001</id>
		<title>ISO/IEC 27001 — Information Security Management</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/iso-27001"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An international requirements standard for establishing and improving an information security management system.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/mica</id>
		<title>Markets in Crypto-Assets Regulation</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/mica"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU rules for crypto-asset issuers and service providers, including authorisation and conduct requirements.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/mifid-ii</id>
		<title>Markets in Financial Instruments Directive II</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/mifid-ii"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU rules for investment firms and trading venues, market structure, conduct and investor protection.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/nis2</id>
		<title>Network and Information Systems Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/nis2"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>The EU cybersecurity directive covering risk management, governance and incident reporting across critical sectors.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/pci-dss</id>
		<title>Payment Card Industry Data Security Standard</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/pci-dss"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An industry security standard for organisations that store, process or transmit payment-card account data.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/psd2</id>
		<title>Revised Payment Services Directive</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/psd2"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU rules for payment services, account access, customer protection and strong customer authentication.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/soc-2</id>
		<title>SOC 2 — System and Organization Controls</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/soc-2"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>An independent attestation framework for controls at service organisations against selected Trust Services Criteria.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/sfdr</id>
		<title>Sustainable Finance Disclosure Regulation</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/sfdr"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>EU disclosure rules for how financial-market participants and advisers address sustainability risks and impacts.</summary>
	</entry>
	<entry>
		<id>https://saga-compliance.com/learn/uk-modern-slavery-act</id>
		<title>UK Modern Slavery Act 2015</title>
		<link rel="alternate" type="text/html" href="https://saga-compliance.com/learn/uk-modern-slavery-act"/>
		<published>2026-07-31T00:00:00Z</published>
		<updated>2026-07-31T00:00:00Z</updated>
		<summary>UK legislation that includes transparency-in-supply-chains reporting for organisations meeting the statutory conditions.</summary>
	</entry>
</feed>
