Compliance Management

BC-130 Level 1 Cross-Industry 9 providers 27 API surfaces 5 rated strong or better

Ensuring adherence to laws, regulations, and internal policies.

Compliance Management (BC-130) is a level-1 business capability in the Cross-Industry model. The catalog holds 27 API surface(s) from 9 provider(s) that can perform some part of it, 5 of them rated strong or better. Reach is the vendor surface that lands on this capability — it is not a claim about what any particular organisation has deployed.

Where this capability definition comes from. This capability is part of a published business-architecture model that API Evangelist did not author. It is redistributed here under CC-BY-4.0. Turbo EA Capabilities by Vincent Verdet — Turbo EA, https://github.com/vincentmakes/turbo-ea-capabilities, CC BY 4.0 Changes: Consolidated from 333 per-L1 YAML files into one JSON; English only (upstream i18n/ omitted); descriptions whitespace-normalised. No capability was added, removed, renamed or re-parented. Source repository · NOTICE and third-party framework attributions

Sub-capabilities

Regulatory Compliance Management BC-130.10

Compliance with sector-specific regulations.

3 providers, 14 API surfaces

Policy Management BC-130.20

Policy lifecycle - drafting, approval, attestation, retirement.

1 provider, 3 API surfaces

Ethics & Conduct Management BC-130.30

Code of conduct, ethics, whistle-blowing programmes.

no catalog coverage

Anti-Bribery & Corruption Management BC-130.40

ABC programmes, third-party due diligence, gifts and hospitality.

no catalog coverage

Privacy & Data Protection Management BC-130.50

GDPR/equivalent compliance, data subject rights, privacy by design.

6 providers, 9 API surfaces

Providers that reach this capability

Ordered by rating band. Reach means a provider publishes an API surface that can perform some part of this capability — it is not a claim that any particular organisation has deployed it.

Strong 5 Solid coverage with minor gaps
Developing 4 Usable, with meaningful gaps to close

Workflows that realise this capability

Arazzo workflows whose own sourceDescriptions call APIs that carry this capability. The link is derived, not asserted: each workflow declares x-realizes-capability-ids with the spec and confidence behind it.

This page carries no rating. Capabilities are not rated. A capability is a description of what a business does, not a thing a company publishes, so a Kin Score would have nothing to measure.
The edge table is a Pro feature. This page shows which providers and tags reach Compliance Management. The underlying tag → capability edges — each with the quoted fragment of the provider's own OpenAPI that evidences it, a calibrated confidence score, and the contract-provenance gate it passed — are available through the API, along with company-level capability maps. Only edges at confidence ≥ 0.7 with evidence found verbatim in the source contract are published at all.

See plans →  ·  How the edges are graded →