Home For COLPs How It Works About Contact Run the Diagnostic
The infrastructure

Not a tool. Not a platform.
Proof.

REACH LAW sits above every AI tool in your firm and creates the permanent record that governance decisions were made. Here is exactly how.

See where you stand
The canonical distinction

REACH LAW does not decide what is compliant.
It proves how compliance decisions were made.

The COLP retains judgment. REACH LAW creates the permanent, retrievable record that judgment was exercised at the moment it was needed.

The architecture

Three layers. One accountability chain.

Layer 01
Decision Audit

Every compliance decision recorded at the point it is made

When a fee earner uses an AI tool to produce output that touches a compliance-relevant matter, REACH LAW captures the decision context what was used, what was produced, what governance check was applied, who authorised it, and when. Not as a log. As evidence the SRA can inspect the moment it is requested.

Layer 02
Privacy Validator

A binary fail-closed gate on every AI output

Every AI-generated output passes a privacy and compliance validation gate before it can be used. Fail-closed not 98% accurate, not mostly safe. It passes or it does not. The outcome of every validation is permanently recorded. There is no middle state.

Layer 03
COLP Dashboard

Real-time governance posture for the named individual

The COLP sees the firm's governance posture in real time RED, AMBER, and GREEN across every AI-assisted matter. When the SRA requests evidence, the COLP can produce a complete timestamped record of how every compliance decision was made and governed.

The traffic light system

Three verdicts. Unambiguous. Recorded.

Red Stop

File work cannot proceed

Non-compliance detected. Immediate COLP or COFA authorisation required before any further action. The file is blocked. The finding is timestamped. Careers are at stake.

Amber Review

Authorisation required

Possible breach. Grey area. COLP or COFA authorisation required before proceeding. File work is paused pending clarification. The ambiguity is recorded.

Green Proceed

Compliant no stoppage

No COLP or COFA intervention needed. Fully compliant. No issues raised. May proceed without stoppage or delay. The clean record is logged.

Deployment

From diagnostic to live governance in four steps.

Step 01

Exposure Diagnostic

Ten sections mapping your regulatory baseline, AI tool ecosystem, and current governance posture. Output is your configuration specification.

Step 02

Specification Review

Your REACH LAW configuration is reviewed with you. Every governance engine scoped to your firm's specific regulatory footprint.

Step 03

Deployment

Infrastructure goes live. COLP certification walkthrough. Every AI tool is registered. The audit layer activates. Day one is fully governed.

Step 04

Ongoing Governance

REACH LAW operates continuously. Every compliance decision recorded. The COLP dashboard reflects live posture. Evidence retrievable from day one.

Regulatory coverage

The full multi-body environment your firm operates inside.

SRA

Code of Conduct, Regulation 19, COLP accountability, the profiler database, and enforcement patterns.

UK GDPR / ICO

Data processing accountability, lawful basis documentation, and AI-assisted processing obligations.

MLR 2017

AML risk assessment, CDD obligations, enhanced due diligence, SAR obligations, and AI-assisted client screening.

ECCTA 2023

Failure to prevent fraud, corporate liability, and the AI-specific risk surface it creates for law firms.

FCA / SM&CR

For dual-regulated firms. Senior Managers accountability mapping and FCA AI governance expectations.

Consumer Duty

FCA Consumer Duty outcomes framework. Evidence of good client outcomes and AI-assisted advice governance.

Ready to start

Can your firm produce it if asked today?

The diagnostic tells you in four minutes.

Run the Exposure Diagnostic