Consulting
AI Governance &
Agentic Systems
Architecture
Current HUMMBL service packaging, pricing, and engagement paths live
on services. This page remains as a legacy
consulting overview and is noindexed in favor of Services.
Polycentric Agent Coordination
AI Governance & Compliance
EU AI Act Readiness
Platform / SRE
Claude / Anthropic
Delegation & Identity
Four engagement models, all backed by production-grade governance
primitives. Start with an assessment, scale to enterprise support.
Important Note: HUMMBL provides technical readiness
analysis, control design, and implementation support. I do not provide
legal advice, issue formal certifications, or make regulator-issued
determinations. For current service scope and pricing, use
Services.
Assessment
Readiness Audit
Starting at $5K / 1 week
I review your agent architecture against the six EU AI Act Annex III
requirements and deliver a gap analysis with specific remediation
steps.
- Architecture review (agents, delegation, logging)
- Compliance gap analysis (SOC2, GDPR, EU AI Act)
- Governance primitive recommendations
- Written report with prioritized remediation plan
Ongoing
Governance Retainer
Starting at $4K /mo
Dedicated advisory hours each month. I become your team's governance
architect on an ongoing basis.
- 10–25 hours / month of advisory + implementation
- Architecture reviews as your system evolves
- Compliance monitoring and audit preparation
- 3-month minimum, scoped to current governance needs
Project
Implementation Sprint
Starting at $15K / 2–4 weeks
Hands-on implementation of governance primitives in your codebase.
Delegation tokens, audit logging, kill switches, compliance mapping.
- Deployment-oriented governance code (your repo)
- Integration with your existing agent framework
- Test suite and CI pipeline for governance
- Handoff documentation and team training
Enterprise
Enterprise Support
$25K+ /yr
Priority response, control review cadence, evidence program support,
and security posture review for regulated deployments.
- Enterprise support package and response planning
- Control review cadence for governance-sensitive changes
- Evidence program support and security posture review
- Deployment and procurement support
Specialized work routes through the four live offers above. These tracks
are scoped during architecture review and do not create separate public
price ladders.
Governance
Agentic AI Governance
Scoped via canonical ladder
Governance architecture for autonomous AI agents: delegation chains,
identity management, human oversight, and polycentric agent
coordination protocols.
- Agent autonomy boundary definition
- Delegation token architecture (HMAC-signed)
- Kill switch and circuit breaker implementation
- Agentic coordination governance
- Singapore Agentic AI Framework alignment
Compliance
AI Employment Compliance
Scoped via canonical ladder
Bias audit, notice, and impact assessment compliance for AI hiring
tools. Covers NYC LL144, Illinois HB 3773, Colorado AI Act, and EEOC
guidance.
- Technical implementation of bias monitoring controls
- Disparate impact analysis by protected class
- Candidate notice and opt-out procedures
- Documentation and record retention
- Multi-state compliance mapping
Readiness
ISO 42001 Readiness
Scoped via canonical ladder
Readiness analysis and control design for an AI Management System
(AIMS). Prepare evidence and controls for review by an accredited
registrar.
- AIMS scope and context definition
- AI risk assessment and treatment process
- Policy suite and procedure documentation
- Internal audit and management review
- Evidence planning and readiness review
Framework
NIST AI RMF Implementation
Scoped via canonical ladder
Implement the four NIST AI RMF functions (Govern, Map, Measure,
Manage) with deployment-oriented governance primitives.
- AI risk governance structure design
- Risk categorization and mapping
- Trustworthiness measurement framework
- Control implementation and monitoring
- Federal procurement alignment
Compliance
EU AI Act Support
Scoped via canonical ladder
Implementation support for Annex III requirements. Prepare technical
documentation, control design, and evidence planning ahead of
notified body assessment.
- Risk classification and scoping
- Technical documentation package
- Quality management system for AI
- Post-market monitoring plan
- Notified body evidence readiness
Sector
Financial AI Governance
Scoped via canonical ladder
AI model risk management for financial services. Covers SEC
disclosure, UK FCA guidance, and OSFI E-23 requirements.
- AI model risk management framework
- Algorithmic trading oversight
- Consumer outcome testing
- Board-level AI governance structure
- Regulatory disclosure preparation
Strategy
Cross-Framework Mapping
Scoped via canonical ladder
Map your existing governance controls across applicable frameworks.
Route overlap analysis and gap closure through the enterprise
support or implementation sprint path.
- Current-state governance inventory
- Multi-framework gap analysis
- Unified architecture design
- Prioritized implementation roadmap
- ROI quantification and business case
Review
AI Claims & Disclosure Review
Scoped via canonical ladder
Audit AI marketing claims and disclosure practices against FTC
Section 5, SEC requirements, and California AB 2013.
- AI capability claims audit
- Training data disclosure review
- Marketing materials compliance check
- SEC filing AI disclosure preparation
- Remediation recommendations
01
Discovery Call
30-minute call to understand your agent architecture and compliance
needs. Free, no commitment.
02
Scope & Proposal
Written proposal within 48 hours. Fixed price, clear deliverables,
defined timeline.
03
Execute
I work in your codebase or deliver standalone. Daily async updates,
weekly sync calls.
04
Deliver & Handoff
Written report, working code, documentation. Your team owns
everything.
About
Reuben Bowlby
Founding Architect of Founder Mode, an AI orchestration platform
running 12 concurrent Claude terminals with contract-driven cost
governance and agent-first security.
I built HUMMBL's governance stack from scratch: delegation tokens
(HMAC-SHA256 signed), append-only governance bus, compliance mapper
(SOC2 + GDPR + OWASP + EU AI Act), and quality scoring via Arbiter.
All stdlib-only Python, zero third-party runtime dependencies.
Creator of
Base120, a public
120-operator reasoning substrate. Extended model experiments are not
presented as public release metrics. Published
hummbl-governance
on PyPI.
By the Numbers
Production Evidence
15,600+
Aggregate Validation Tests