MGLA
Multi-Gap Live Analysis
Vol. III · FAQ · Frequent queries on the framework

Bridging the normative and the technical.

Concise answers to the questions we receive most often from in-house counsel, CISOs, DPOs and regulators evaluating MGLA.

§ 01   Framework
01.

What is MGLA, in one sentence?

A live regulatory analysis framework that continuously evaluates the gaps between law, system, contract and jurisdiction across nine regulated domains.

02.

What core features does MGLA v1.0 offer?

Multi-layer gap analysis (normative, technical, contractual, jurisdictional), a continuous rule-execution engine, evidence-bound findings, and dynamic action loops that replace periodic audits.

03.

How does MGLA differ from a GRC platform?

GRC platforms record what humans assert about controls. MGLA evaluates the live distance between obligations and the systems that operate beneath them — bound to evidence, on every change, on every loop.

§ 02   Method
01.

How does MGLA ensure continuous evaluation?

Through dynamic action loops: every obligation is re-evaluated on every relevant change to a system, contract or regime — not on a quarterly schedule.

02.

Which operational states can MGLA analyse?

Normative (laws, directives, standards), technical (systems, models, configuration), contractual (DPAs, SCCs, MSAs) and jurisdictional (establishment, processing, residence).

03.

What kind of rule execution does MGLA support?

Structured, versioned rule sets that bind obligations to evidence. Each rule is reproducible, auditable internally, and timestamped to the loop in which it fired.

§ 03   Practice
01.

Is MGLA customisable to specific industry needs?

Yes. The rule-execution layer is parameterised against your normative footprint — the regimes, contracts and systems specific to your operation.

02.

How does MGLA handle simultaneous regimes (AI Act + GDPR + NIS2)?

The four layers are evaluated jointly. A single inference call can carry GDPR, AI Act and NIS2 obligations at once; MGLA reports each one against the same evidence.

03.

How is MGLA delivered?

Under a private-access programme. The framework is onboarded against the specific normative footprint of each institution, with named counterparts on both sides.

§ 04   Assurance
01.

Is the platform certified?

The framework infrastructure operates under ISO 27001 controls and is aligned with ISO 42001 for AI management. Assurance documentation is provided under access agreements.

02.

Are findings legally privileged?

Findings are produced as evidence-bound technical assessments. Their treatment in privilege depends on counsel arrangements at the institution; we work with both.

03.

Is the framework open-source?

No. The MGLA framework, architecture and methodology are proprietary to IT Law 2035. The reasoning is transparent under access; the implementation is not.

§ 05   Comprehensive analysis, proven accuracy

A non-exhaustive selection.
ISO 27001
Information security

Certified controls across the framework infrastructure ensure operational analysis remains protected at every stage.

Rule execution engine
Versioned · reproducible

Every finding is bound to a versioned rule and the evidence that produced it. Reasoning is internally auditable.

Continuous governance
Live state assurance

Action loops replace audit cycles; integrity is maintained across normative, technical, contractual and jurisdictional layers.

Question not covered here? Reach the framework team directly.

For matters that fall outside this list — onboarding, joint evaluations with regulators, multi-jurisdictional assessments — we respond under named correspondence.

Contact IT Law 2035 →
MGLA
Multi-Gap Live Analysis™

A live regulatory analysis framework, developed and maintained by IT Law 2035.

Framework
Reading
Institution
MGLA™ Multi-Gap Live Analysis™ · © 2026 IT Law 2035The MGLA framework, architecture and methodologies are proprietary.