// TOPIC
#privacy
3 articles
◆◆Intermediate
01AI Compliance in Practice: EU AI Act, SOC 2, and HIPAA
Risk tiers, documentation duties, audit trails, and health-data rules for teams shipping LLMs under the EU AI Act, SOC 2, and HIPAA in 2026.
#compliance#security#privacy
19 min◆◆Intermediate
02Document Ingestion Pipelines: The Unglamorous 80% of RAG
PDF parsing, metadata design, PII scrubbing, chunk-at-ingest vs chunk-at-query, and incremental index updates — the ingestion work that determines whether RAG succeeds or fails.
#rag#data-engineering#vector-search
19 min◆◆Intermediate
03PII Handling, Sensitive Data Leakage, and Privacy Controls
Where PII leaks in LLM systems — prompts, logs, embeddings, fine-tunes — and the scrubbing, masking, and retention controls that actually hold up.
#security#privacy#guardrails
16 min