About TrustHuman
TrustHuman is an independent AI ethics assessment platform. We connect to your AI tool's API endpoint, send carefully designed synthetic test inputs — called probes — and score the responses against specific legal and ethical criteria. You receive a TrustHuman Score™, a detailed findings report, and a Bronze, Silver, or Gold certification.

We are not a consultancy selling reports. We are not a questionnaire. We probe your AI directly to see how it actually behaves.
Any UK organisation that has deployed an AI tool that interacts with or makes decisions about people. Our current focus is four sectors where the risks are most acute and the regulatory pressure is greatest:

  • Financial services — lending, credit assessment, customer service AI
  • HR and recruitment — candidate screening and hiring tools
  • Healthcare — patient triage and support systems
  • Retail and services — customer service chatbots and returns automation

If you are a compliance officer, chief risk officer, data protection officer, or head of digital — and you are not certain your AI tools are behaving fairly, transparently, and securely — TrustHuman is for you.
The main platforms in this space — Credo AI, IBM watsonx.governance, OneTrust — are built for large enterprises with dedicated AI governance teams, significant budgets, and months to implement. They are comprehensive lifecycle management tools.

TrustHuman is different in three ways. It is self-serve — you can run an assessment in under 30 seconds without a procurement process. It uses live probe testing — we test how your AI actually behaves, not how you say it behaves. It is built for the UK mid-market — specifically mapped to UK GDPR, the Equality Act 2010, the EU AI Act, and ICO guidance.
Not yet. TrustHuman certifications are currently issued on the basis of our own methodology and scoring framework. We are honest about this — our Bronze, Silver, and Gold certifications represent a rigorous and legally-mapped assessment, but they do not yet carry UKAS accreditation.

Pursuing UKAS accreditation as a formal certification body is on our roadmap. In the meantime, our reports provide the specific, evidence-based findings that your compliance team and legal advisers need to make informed decisions. On the roadmap
Before, live, or after every change
Both — and in between. You can run an assessment before you deploy a tool (to check what you're about to put live), on your live system (to see how the AI you're actually running behaves), and again after any change — a new data source, a model update, a new integration. Compliance isn't a one-time event; the AI running today isn't always the one you checked last month, so TrustHuman is designed to be run whenever you need that certainty.
No. A common misconception is that compliance checking only happens after the fact. You can assess a tool before it goes live — useful when you're evaluating or about to deploy something new — as well as on a live system and after changes. Checking before you deploy can save you from putting a non-compliant tool in front of customers in the first place.
Possibly. Even if you haven't changed the tool, the rules can change, your usage can drift, or a model update from your vendor can shift its behaviour. Re-running an assessment periodically — and after any change your end — is how you stay confident it's still compliant, not just compliant on the day you first checked.
Today, TrustHuman gives you repeatable, on-demand assessments — you run a check whenever you need one (before deploying, live, or after changes), as often as you like. Continuous real-time monitoring is on our roadmap, but our current strength is giving you a clear, thorough assessment at any point you choose. On the roadmap
The assessment
You provide your AI tool's API endpoint URL and authentication credentials. TrustHuman sends six synthetic test inputs — two per pillar — directly to your tool and captures the responses. An independent assessment engine then scores each response against specific legal and ethical criteria. The entire process takes under 30 seconds.

No real customer data is used at any point. All probes are synthetic inputs designed specifically for testing purposes.
TrustHuman currently tests across three pillars — the three areas where AI tools create the greatest legal and reputational risk for UK organisations:

Bias and Discrimination (40%) — does the AI treat people differently based on age, postcode, or socioeconomic background? Mapped to the Equality Act 2010 and EU AI Act Annex III.

Transparency and Explainability (35%) — does the AI disclose that it is an AI when asked? Can it explain its decisions? Mapped to EU AI Act Article 50 and UK GDPR Article 22.

Data Privacy and Security (25%) — is the AI vulnerable to prompt injection attacks? Does it handle data subject rights requests correctly? Mapped to UK GDPR and the ICO AI Code of Practice.
The TrustHuman Score™ is a weighted average of your pillar scores, from 0 to 100. A higher score means better alignment with legal and ethical requirements. The weighting reflects the relative regulatory risk of each pillar.

  • 90–100 · Gold — Excellent alignment. Continue monitoring.
  • 75–89 · Silver — Good alignment with minor gaps. Address priority findings.
  • 60–74 · Bronze — Adequate. Material gaps present. Supervised deployment recommended.
  • Below 60 · Not Certified — Significant compliance failures. Immediate remediation required.
This is a fair question and we take it seriously. A few things make gaming difficult in practice:

First, the probe inputs are not disclosed to assessed organisations. Second, the probe library will expand and rotate over time — there is no fixed set to optimise against. Third, from Phase 2 we will use a multi-model assessment panel, which makes the scoring behaviour less predictable than a single model.

More fundamentally — if an organisation puts genuine effort into making their AI behave fairly, transparently, and securely in order to pass the assessment, that is exactly the outcome we are trying to achieve. The probes are proxies for real compliance. An AI that passes them has genuinely improved.
AI tools change. Models are updated by vendors. Prompts and configurations drift. A tool that passed an assessment six months ago may behave differently today.

Our general guidance is a full reassessment every six months for Tier 1 customers, or whenever the underlying model, configuration, or deployment context changes significantly. Tier 2 customers receive continuous monitoring with automated alerts when scores drift — removing the need to remember to reassess.
Technical questions
TrustHuman uses a structured assessment methodology built on pre-calculated scores mapped directly to UK and EU regulatory frameworks — the Equality Act 2010, UK GDPR Article 22, EU AI Act Article 50, and the ICO AI Code of Practice 2024.

The engine does not use one AI model to assess another in real time. Regulatory text is pinned and versioned so your assessment is always traceable to a specific legal reference.

Claude by Anthropic supports certain elements of the platform experience, but the compliance scoring methodology is independent of any single AI model's judgement. Technical
You can — and it might give you some useful directional insight. But it will not give you what TrustHuman gives you for four specific reasons:

No methodology — an ad-hoc conversation has no structured probe set, no legal mapping, and no scoring rubric. The results are not reproducible and not comparable.

No independence — TrustHuman is a third party with no relationship to the AI vendor. That independence matters when presenting findings to a board, a regulator, or a legal team.

No reproducibility — TrustHuman runs the same probes the same way every time, against pinned regulatory text.

No certification — a chat transcript is not a certification. TrustHuman produces a Bronze, Silver, or Gold certificate your compliance register can reference.
All probes use synthetic inputs only — no real customer data is used or transmitted at any point during an assessment. Your API credentials are used only to make the probe calls and are not stored by TrustHuman.

Assessment results are not retained beyond the current session in our current implementation. Tier 2 will introduce optional result storage for trend monitoring, covered by a formal data processing agreement. Technical
TrustHuman can assess any AI tool that is accessible via a REST API endpoint — which covers the vast majority of deployed customer-facing AI tools. You need to be able to provide an endpoint URL, an authentication method, and the input and output field names.

Tools that cannot currently be assessed include AI tools with no API access, tools that require browser-based interaction only, or tools behind enterprise firewalls without external access. If you are unsure whether your tool is compatible, contact us at hello@trusthuman.co.uk and we will confirm.
Compliance and legal
Every finding in a TrustHuman report maps to a specific legal or regulatory obligation:

  • Equality Act 2010 — bias and discrimination findings
  • UK GDPR Article 22 — right to explanation for automated decisions
  • EU AI Act Article 50 — AI disclosure obligations
  • EU AI Act Annex III — high-risk AI system requirements
  • ICO AI Code of Practice — data privacy and security findings
  • UK GDPR — data subject rights handling

This means every finding in your report has a direct legal hook — giving your legal team exactly what they need to prioritise remediation. Legal
TrustHuman certifications are not a substitute for regulatory compliance — they are evidence of due diligence. No single certification satisfies all regulatory obligations on its own.

What a TrustHuman report does provide is documented, evidence-based proof that you assessed your AI tool against specific regulatory criteria, identified findings, and were in a position to act on them. Regulators and courts look favourably on organisations that can demonstrate active and structured governance of their AI systems.

We are not lawyers and this is not legal advice. If you have specific regulatory obligations, we recommend speaking with a qualified legal adviser about how TrustHuman assessment can support your compliance programme. Legal
The EU AI Act is now in force. High-risk AI system obligations — including AI tools used in employment, credit, healthcare, and essential services — began applying in August 2026. UK businesses that operate in the EU or use AI tools from EU vendors are directly affected.

Key obligations for high-risk AI systems include: maintaining a risk management system, ensuring transparency with users including disclosure of AI status, enabling meaningful human oversight, and keeping documentation sufficient for regulatory audit.

TrustHuman's three-pillar assessment maps directly to the most commonly failed obligations under the Act. A Silver or Gold certification demonstrates that you have actively assessed your AI against these requirements. Legal
It is not too late — but it is urgent. The enforcement window has opened, which means regulators can now act on complaints and conduct investigations. The ICO has signalled active interest in AI governance in regulated sectors including financial services, healthcare, and employment.

The best thing you can do right now is document that you are actively assessing and improving your AI governance posture. A TrustHuman assessment is a concrete, timestamped record of exactly that. Legal
Pricing
Tier 1 is a one-off point-in-time assessment. Pricing will be confirmed when we open for paying customers — if you want to be first to know, email hello@trusthuman.co.uk and we will let you know as soon as it is live.

The free demo assessment — available now at trusthuman.co.uk/tier1 — uses pre-built scenarios across four industries and gives you a clear sense of what a full assessment report contains.
Tier 2 — Monitor is a monthly subscription that runs scheduled probe assessments on your AI tool and alerts you when scores change. It removes the need to remember to reassess and gives you a continuous audit trail. Pricing is per AI tool per month.

Tier 3 — Resolve adds dedicated TrustHuman consultancy to Tier 2 monitoring. A named consultant works alongside your team to remediate the findings the probes identify. Tier 3 is priced as a retainer and is currently available to a small number of design partners while we build out the consultancy capability.

Both tiers are in development. Contact hello@trusthuman.co.uk to register interest. Coming soon
Yes — and we encourage it. The free demo at trusthuman.co.uk/tier1 lets you run a full three-pillar assessment against a pre-built AI scenario in your industry. You will see exactly what the probe inputs look like, what a flawed AI response looks like, and what the full report contains — including risk flags, regulatory exposure, and recommended actions.

If you would like a guided demo or a conversation about your specific situation, email hello@trusthuman.co.uk and we will arrange a call.
Still have a question?
Email us at hello@trusthuman.co.uk — we reply to every message personally.
Try the free demo → Get in touch