Cleo
CompanyLegal Data
Request a demo
Anaelle GuezNaomie Halioua
Request a demo
Cleo

AI-powered regulatory intelligence.

contact@cleolabs.co

Solutions

  • Product Compliance

Company

  • About
  • Research
  • Blog
  • Skills
  • Compliance Guides

Jurisdictions

  • 🇪🇺 European Union
  • 🇫🇷 France
  • 🇩🇪 Germany
  • 🇬🇧 United Kingdom
  • 🇺🇸 United States

Legal

  • Privacy
  • Terms
  • Security

Events

  • VivaTech ParisJun 11–14, 2026

© 2026 Cleo Labs. All rights reserved.

GDPREU DataSOC 2 Type IIISO 27001

Blog

News & insights

Company updates, regulatory intelligence insights, and product news from Cleo Labs.

ESPR (Regulation EU 2024/1781): what it requires, which products it covers, and when obligations apply
Product Compliance2026-06-08

ESPR (Regulation EU 2024/1781): what it requires, which products it covers, and when obligations apply

Regulation (EU) 2024/1781 — the Ecodesign for Sustainable Products Regulation (ESPR) — entered into force on 18 July 2024, replacing Directive 2009/125/EC. It extends ecodesign obligations to almost all physical goods sold in the EU, introduces the Digital Product Passport (DPP) and bans destruction of unsold consumer goods. This guide explains what ESPR requires, which products are in scope, how it interacts with REACH, the Battery Regulation and GPSR, and what to prepare before the delegated acts are published.

Anaelle GuezAnaelle Guez
Read more →
Why we open-sourced our MCP server — week 1 retrospective
Behind the scenes2026-06-04

Why we open-sourced our MCP server — week 1 retrospective

Seven days after open-sourcing the Cleo skills_library and its MCP server, here is the honest retrospective: the decision, what shipped in a week, what worked (dev.to traction, npm wedge), what flopped (awesome-llm-apps rejection, bad Show HN timing), and the roadmap for the next 60 skills.

Alexandre BlochAlexandre Bloch
Read more →
Product Compliance2026-06-04

France fines Shein €22M again: what the DGCCRF actually sanctioned, and why traceability is now non-negotiable for every brand

On 3 June 2026, France’s consumer authority (DGCCRF) fined Shein over €22M — €5.77M and €16.73M across two entities — for hiding garment origin, undeclared microplastics, a denied 14-day withdrawal right and non-compliant order confirmations. Not a DSA case and not a safety ban: a transparency case that pushes France’s total fines on Shein past €210M and resets the traceability baseline for every textile brand.

Anaelle GuezAnaelle Guez
Read more →
How to use Cleo Skills MCP in Cursor in 60 seconds
Engineering2026-06-03

How to use Cleo Skills MCP in Cursor in 60 seconds

Step-by-step guide: plug the @cleo-labs/skills-mcp package into Cursor, get 45 product compliance skills in any project, and run your first real compliance query in under a minute. No API key required for the base catalog.

Alexandre BlochAlexandre Bloch
Read more →
5 real compliance checks done with Claude Code in under 60 seconds
Product Compliance2026-06-02

5 real compliance checks done with Claude Code in under 60 seconds

Five product compliance scenarios — retinol cosmetics, Bluetooth CE marking, Japan supplement export, toy EN 71-3 migration limits, EU Battery Regulation deadlines — answered in 49 seconds total with the Cleo skills_library on Claude Code. With timings, citations and the cost they would have been the traditional way.

Naomie HaliouaNaomie Halioua
Read more →
Cleo now runs on Claude Opus 4.8 — and we ran the eval to prove it matters
Product2026-06-01

Cleo now runs on Claude Opus 4.8 — and we ran the eval to prove it matters

MARIA, the engine behind Cleo, moved to Claude Opus 4.8. We ran a head-to-head eval against Opus 4.7 on 5 real product cases, grading every cited regulation against the official source. 4.8: 5/5 correct verdicts vs 4/5, and a 2.7% citation-error rate vs 9.4%.

Naomie HaliouaNaomie Halioua
Read more →
Legal Atlas: the world's law, machine-readable
Product2026-05-31

Legal Atlas: the world's law, machine-readable

Cleo opens up Legal Atlas — a machine-readable legal database aggregating legislation, case law and doctrine from 1,494 official sources across 177 jurisdictions, exposed through a single REST API. Built for legal-tech, law firms and AI agents.

Alexandre BlochAlexandre Bloch
Read more →
We open-sourced 40 product compliance skills for AI agents
Product Compliance2026-05-29

We open-sourced 40 product compliance skills for AI agents

Cleo Labs just released a library of 40 production-grade compliance skills for Claude Code and AI agents. Install in 30 seconds. Powered by the Cleo Legal API. Open-source under MIT.

Naomie HaliouaNaomie Halioua
Read more →
Product Compliance2026-05-28

Temu fined €200M under the DSA: what the Commission actually said, and why it matters for every European brand

On 28 May 2026, the European Commission imposed a €200M fine on Temu under the Digital Services Act for failing to identify, analyse and assess the systemic risks of illegal products on its platform. The first DSA fine targeting illegal products on a marketplace — and what it means for European brands selling cosmetics, toys, electronics and jewellery.

Anaelle GuezAnaelle Guez
Read more →
Product Compliance2026-05-27

Why your PLM is only as good as the regulatory data you feed it

Most PLM compliance modules are empty shells. The gap between having a PLM and being compliant is about the regulatory data you inject. Here's why data quality is the real bottleneck — and how to fix it.

Alexandre BlochAlexandre Bloch
Read more →
Product2026-05-26

What’s new at Cleo — May 2026

The data behind Cleo grew more this month than in our entire first year. 50,101 regulations indexed (×2), 27,500+ authorities (+45%), +11 new countries including China, 134 organizations tracking 2,839 real products, +6 API filters, and Cleo as a connector inside ChatGPT.

Naomie HaliouaNaomie Halioua
Read more →
Product2026-04-30

What’s new at Cleo — April 2026

Four product launches this month: +18 new countries (now 106 total, 234M+ legal documents), in-app AI chat with slash commands and @entity mentions, Cleo Insight as a connector inside Claude / Cursor / ChatGPT, and a public API v1 with seven endpoints.

Naomie HaliouaNaomie Halioua
Read more →
Cleo Labs raises €1.5M to automate product regulatory compliance at a global scale
Company2026-04-29

Cleo Labs raises €1.5M to automate product regulatory compliance at a global scale

Round led by Larry Berger, with Kima Ventures, Financière Saint-James, and several tech ecosystem figures — plus additional funding from Deel. Cleo Labs will accelerate technology development, structure European expansion, and prepare for entry into the U.S. market.

Naomie HaliouaNaomie Halioua
Read more →
CE marking in 2026: from physical goods to digital products
Product Compliance2026-04-28

CE marking in 2026: from physical goods to digital products

CE marking is the European passport for products. Roughly 25 harmonisation directives and regulations cover machinery, electrical equipment, radio devices, toys, medical devices, PPE, construction products and more — and from December 2027, software and connected devices join the list under the Cyber Resilience Act. Here is what 2026 actually requires across both worlds.

Anaelle GuezAnaelle Guez
Read more →
When a lipstick becomes a legal risk: what 2025's cosmetic recalls reveal about product compliance
Product Compliance2026-04-27

When a lipstick becomes a legal risk: what 2025's cosmetic recalls reveal about product compliance

In 2024, cosmetics accounted for 36% of all alerts on EU Safety Gate — the leading category, ahead of toys, clothing and electronics. Three recent recalls (MCI/MI in leave-on creams, heavy metals in makeup, French PFAS law n°2025-188) show why compliance in cosmetics is not an event but a regulatory flow that has to be tracked across living annexes.

Anaelle GuezAnaelle Guez
Read more →
One toy, two legal outcomes: why magnetic toys get recalled in some markets and not others
Product Compliance2026-04-26

One toy, two legal outcomes: why magnetic toys get recalled in some markets and not others

A product can look identical across markets — its legal status will not. Four real magnetic toy recalls from the UK and Canada show how a single technical threshold (flux index, small parts cylinder, warnings) separates a sellable product from one yanked off the shelves.

Anaelle GuezAnaelle Guez
Read more →
Global Product Compliance in 2026: Why We Won the Pitch by Deel
Company2026-04-17

Global Product Compliance in 2026: Why We Won the Pitch by Deel

Every physical product sold globally faces 100+ regulations across R&D, manufacturing, labelling, and customs. Here's how Cleo Labs is automating global product compliance with AI — and why Deel just picked us as their winner at Station F.

Naomie HaliouaNaomie Halioua
Read more →
"Detective Work We Shouldn't Have to Do": Why Data Quality Is the Blind Spot of ML Compliance
AI2026-03-31

"Detective Work We Shouldn't Have to Do": Why Data Quality Is the Blind Spot of ML Compliance

A new research paper interviews EU-based data practitioners and exposes 5 systemic gaps between GDPR requirements and ML pipeline reality.

Naomie HaliouaNaomie Halioua
Read more →
8 Products That Are Legal Here, Illegal There
Product Compliance2026-03-24

8 Products That Are Legal Here, Illegal There

Kinder Surprise, Red Bull, melatonin gummies — these everyday products are perfectly legal in one country and completely banned in another. Here's why, and what it means for brands selling internationally.

Anaelle GuezAnaelle Guez
Read more →
TRISM: Why Agentic AI Doesn't Have a Trust Problem — It Has an Architecture Problem
AI2026-03-17

TRISM: Why Agentic AI Doesn't Have a Trust Problem — It Has an Architecture Problem

A landmark paper introduces TRISM, the first framework to separate trust, risk, and security in multi-agent AI systems. 66 citations in 3 months — here's why compliance teams should pay attention.

Alexandre BlochAlexandre Bloch
Read more →
Cosmetic Regulation by Country: EU vs US vs Japan vs Brazil vs China
Product Compliance2026-03-14

Cosmetic Regulation by Country: EU vs US vs Japan vs Brazil vs China

A cosmetic product sold globally must comply with completely different regulatory frameworks in each market. The EU bans over 1,600 ingredients; the US bans 11. Japan requires quasi-drug classification for anti-aging claims. China mandates animal testing for imported ordinary cosmetics. This guide maps the key differences across five major markets.

Anaelle GuezAnaelle Guez
Read more →
Digital Product Passport (DPP): What Retail Brands Need to Know
Product Compliance2026-03-13

Digital Product Passport (DPP): What Retail Brands Need to Know

Starting in 2027, the EU will require Digital Product Passports for textiles, electronics, batteries and more — every product will need a QR code linking to a structured dataset on its composition, origin, repairability and end-of-life. Here's how retail brands should prepare under ESPR (Regulation 2024/1781).

Anaelle GuezAnaelle Guez
Read more →
Global Chemical Product Compliance: CAS Numbers, Formulations & Multi-Country Regulations
Product Compliance2026-03-12

Global Chemical Product Compliance: CAS Numbers, Formulations & Multi-Country Regulations

From CAS number screening to full formulation compliance across 106 countries — chemicals, packaging, labeling, and regulatory forecasting for South Africa, Mexico, EU, Brazil, China, India, and beyond.

Anaelle GuezAnaelle Guez
Read more →
Multi-Market Product Compliance for Retail & Consumer Goods: The Definitive Guide
Compliance2026-03-11

Multi-Market Product Compliance for Retail & Consumer Goods: The Definitive Guide

Launching a product across 106 countries? Map every regulation — ingredients, labeling, safety, packaging — with AI-powered compliance intelligence.

Anaelle GuezAnaelle Guez
Read more →
What If Someone Fed Your Compliance AI a Fake GDPR Text?
AI2026-03-10

What If Someone Fed Your Compliance AI a Fake GDPR Text?

Most compliance AI assumes regulatory text is authentic. A new research paper introduces DEF, the first framework that detects falsified legal documents.

Naomie HaliouaNaomie Halioua
Read more →
Multi-Agent AI for Compliance: What 2026 Research Says
AI2026-03-09

Multi-Agent AI for Compliance: What 2026 Research Says

Peer-reviewed 2026 studies confirm multi-agent AI can evaluate compliance across GDPR, AI Act, NIS2, and DORA — faster and more accurately.

Naomie HaliouaNaomie Halioua
Read more →
GPSR Compliance Guide for Consumer Goods Brands (2026)
Product Compliance2026-03-08

GPSR Compliance Guide for Consumer Goods Brands (2026)

The EU General Product Safety Regulation (GPSR, Regulation 2023/988) replaced the General Product Safety Directive on December 13, 2024. It applies to every non-food consumer product sold in the EU — from cosmetics to electronics to toys. Here is what brands need to do, with risk assessment, documentation and online-marketplace obligations.

Anaelle GuezAnaelle Guez
Read more →
Product Compliance in the EU: The Complete Guide for Tech Companies
Compliance2026-03-06

Product Compliance in the EU: The Complete Guide for Tech Companies

Product compliance is the fastest-growing challenge for EU tech companies. This guide covers every framework from CE marking to AI Act.

Anaelle GuezAnaelle Guez
Read more →
Regulatory Compliance in France: A Complete Guide for Tech Companies
Compliance2026-03-05

Regulatory Compliance in France: A Complete Guide for Tech Companies

From CNIL enforcement to Sapin II and the Duty of Vigilance law, here's everything tech companies need to know about regulatory compliance in France.

Anaelle GuezAnaelle Guez
Read more →
CSRD 2026: The Real Challenges of Sustainability Reporting for Large Groups
Compliance2026-03-04

CSRD 2026: The Real Challenges of Sustainability Reporting for Large Groups

Beyond the directive itself, CSRD compliance is a massive data aggregation challenge. Here are the concrete problems large companies face.

Anaelle GuezAnaelle Guez
Read more →
Product Compliance vs. Corporate Compliance: What's the Difference and Why It Matters
Compliance2026-03-03

Product Compliance vs. Corporate Compliance: What's the Difference and Why It Matters

Most companies confuse product compliance with corporate compliance. The distinction matters, especially in the EU, where product-specific regulations are multiplying faster than ever.

Anaelle GuezAnaelle Guez
Read more →
GDPR Enforcement by Country: Fines and Trends in 2026
Compliance2026-03-02

GDPR Enforcement by Country: Fines and Trends in 2026

A data-driven breakdown of how GDPR enforcement varies across EU member states. Compare fines, enforcement patterns, and DPA priorities in 2026.

Anaelle GuezAnaelle Guez
Read more →
NIS2 Compliance Guide: What Every EU Business Must Know
Compliance2026-03-01

NIS2 Compliance Guide: What Every EU Business Must Know

NIS2 dramatically expands cybersecurity obligations across the EU. This guide covers who's in scope, what's required, the penalties for non-compliance, and how to prepare.

Alexandre BlochAlexandre Bloch
Read more →
UK Post-Brexit Compliance: What EU Companies Must Know in 2026
Compliance2026-02-28

UK Post-Brexit Compliance: What EU Companies Must Know in 2026

The UK regulatory landscape has diverged from the EU since Brexit. From UK GDPR to FCA Consumer Duty, here's what European companies need to track.

Anaelle GuezAnaelle Guez
Read more →
The Compliance IT Stack in 2026: Why Fintechs Need Regulatory Intelligence, Not More GRC Tools
FinTech2026-02-27

The Compliance IT Stack in 2026: Why Fintechs Need Regulatory Intelligence, Not More GRC Tools

GRC platforms were built for 5 regulations. Fintechs face 50+. Here's why compliance IT teams are switching to AI-powered regulatory intelligence.

Alexandre BlochAlexandre Bloch
Read more →
Brazil's LGPD vs GDPR: Key Differences for Compliance Teams
Compliance2026-02-26

Brazil's LGPD vs GDPR: Key Differences for Compliance Teams

Operating in both Brazil and the EU? Here's a practical comparison of LGPD and GDPR covering legal bases, DPO requirements, data transfers, and penalties.

Anaelle GuezAnaelle Guez
Read more →
Product Compliance Checklist: Launching a Fintech Product Across the EU
FinTech2026-02-25

Product Compliance Checklist: Launching a Fintech Product Across the EU

Launching a fintech in the EU means navigating PSD2, MiCA, DORA, AML6, GDPR, and the AI Act. This checklist covers every regulatory step.

Anaelle GuezAnaelle Guez
Read more →
EU AI Act Compliance Guide 2026: What You Need to Know Now
Compliance2026-02-24

EU AI Act Compliance Guide 2026: What You Need to Know Now

With high-risk AI system requirements taking effect in August 2026, compliance teams have months, not years, to prepare. A practical guide to AI Act obligations, timelines, and how to build readiness.

Anaelle GuezAnaelle Guez
Read more →
DORA Compliance Deadline Tracker: Key Dates and Action Items for 2026
Compliance2026-02-23

DORA Compliance Deadline Tracker: Key Dates and Action Items for 2026

DORA is fully applicable, but many financial entities are still catching up. A practical tracker of every key deadline, requirement, and action item for ICT risk management compliance in 2026.

Anaelle GuezAnaelle Guez
Read more →
Agentic AI for Regulatory Compliance: Why the Future of Compliance Is Autonomous
AI2026-02-22

Agentic AI for Regulatory Compliance: Why the Future of Compliance Is Autonomous

Regulatory complexity is outpacing compliance teams. Agentic AI — systems that reason, plan, and act autonomously — is the only viable response.

Naomie HaliouaNaomie Halioua
Read more →
The Real Cost of Non-Compliance in the EU: 2026 Data
Compliance2026-02-21

The Real Cost of Non-Compliance in the EU: 2026 Data

From GDPR's €5B+ in cumulative fines to AI Act penalties of 7% of global revenue, the cost of non-compliance in the EU has never been higher. Here are the numbers that matter.

Anaelle GuezAnaelle Guez
Read more →
The Compliance Officer's Guide to AI Tools in 2026
AI2026-02-20

The Compliance Officer's Guide to AI Tools in 2026

AI tools for compliance are proliferating. But which ones actually deliver? A research-backed guide to evaluating AI compliance platforms, from regulatory monitoring to due diligence.

Naomie HaliouaNaomie Halioua
Read more →
How AI Is Transforming Compliance Monitoring in 2026
AI2026-02-19

How AI Is Transforming Compliance Monitoring in 2026

From keyword alerts to contextual intelligence: how AI-powered monitoring systems are replacing manual regulatory watch and giving compliance teams a decisive edge.

Naomie HaliouaNaomie Halioua
Read more →
RegTech Market 2026: The Definitive Landscape Guide
AI2026-02-18

RegTech Market 2026: The Definitive Landscape Guide

The RegTech market is projected to reach $42B by 2026. This landscape guide maps the key players, emerging categories, and the shift from reactive GRC to proactive regulatory intelligence.

Naomie HaliouaNaomie Halioua
Read more →
How Multi-Agent AI Scores Regulatory Risk: Inside Cleo's Pipeline
AI2026-02-17

How Multi-Agent AI Scores Regulatory Risk: Inside Cleo's Pipeline

A deep dive into the multi-agent AI architecture behind Cleo's regulatory risk scoring, from the 5-stage pipeline to the 30+ specialized agents that achieve 98.5% accuracy.

Naomie HaliouaNaomie Halioua
Read more →
Cybersecurity Compliance for Tech Companies in the EU: NIS2, DORA and Beyond
Compliance2026-02-16

Cybersecurity Compliance for Tech Companies in the EU: NIS2, DORA and Beyond

NIS2 and DORA are rewriting the rules for cybersecurity compliance in the EU. For tech companies, this means new obligations for incident reporting, risk management, and supply chain security.

Alexandre BlochAlexandre Bloch
Read more →
Regulatory Intelligence in 2026: 5 Trends Compliance Leaders Can't Ignore
Compliance2026-02-15

Regulatory Intelligence in 2026: 5 Trends Compliance Leaders Can't Ignore

From the EU AI Act enforcement wave to cross-border data transfer upheaval, here are the five regulatory trends shaping compliance strategy this year.

Naomie HaliouaNaomie Halioua
Read more →
Building Explainable AI for Compliance: Why Transparency Is Non-Negotiable
AI2026-02-13

Building Explainable AI for Compliance: Why Transparency Is Non-Negotiable

Regulators demand that AI-driven compliance decisions be auditable and explainable. Black-box models create risk even when they perform well. Here's how to build AI that regulators trust.

Naomie HaliouaNaomie Halioua
Read more →
Automating Third-Party Due Diligence: From 5 Days to 2 Hours
Compliance2026-02-12

Automating Third-Party Due Diligence: From 5 Days to 2 Hours

Manual third-party screening is slow, expensive, and error-prone. AI-powered due diligence collapses weeks of work into hours, with better coverage and full auditability.

Anaelle GuezAnaelle Guez
Read more →
GDPR in 2026: Beyond the Compliance Checklist
Compliance2026-02-11

GDPR in 2026: Beyond the Compliance Checklist

Eight years after GDPR, enforcement has matured. Here's what compliance teams need to know about the regulation's new reality in 2026.

Anaelle GuezAnaelle Guez
Read more →