ACCOMPLISH

ACCOMPLISH increases the readiness of enterprises of any size to face an era of unprecedented regulatory scrutiny by simplifying, integrating and automating compliance in their data/AI operations, their data/AI assets, their solutions and eventually their overall organisations. ACCOMPLISH delivers a novel AI-based compliance and certification framework cross-cutting the regulatory/legal, environmental, cybersecurity and business/industry-specific compliance perspectives to modernise, automate and trace the compliance and certification processes with the help of open-source, well-defined and extensible compliance policy models while always ensuring a human-in-the-loop (HITL) approach explaining the compliance requirements and results, as well as proactively alerting about any potential risks/violations.

SYNTACTIC

European organisations face a double bind. Real-world data in many sensitive domains is scarce, fragmented, biased or too confidential to share, while the obligations that govern its use — GDPR, the AI Act, the Data Act and sector-specific rules — keep expanding. Synthetic data can close the data gap, but current pipelines offer little proof that a generated dataset is representative, unbiased and lawful to use, which leaves organisations unable to rely on it where it would help most.

SYNTACTIC builds a European “one-stop-shop” platform for the entire synthetic data lifecycle, organised as five toolboxes over a FAIR-by-design foundation: synthetic data generation, with multi-modal privacy-preserving generative models, digital-twin augmentation, model unlearning, robustness and explainability; regulatory auditing and management, with automated checks against GDPR, the AI Act and the Data Act, translation of legal obligations into technical ones, and auditable DPIA/FRIA workflows; data lifecycle management, covering provenance, curation, versioning, annotation and benchmarking against real-world data; cybersecurity, enforcing zero-trust, threat intelligence and DevSecOps; and an interoperability gateway that connects securely and semantically to European Data Spaces and initiatives such as the AI Regulatory Sandboxes and AI-on-Demand. A dedicated Knowledge Hub adds guided workflows, training modules and best practice to raise AI literacy and compliance awareness among European SMEs and professionals.

The platform is developed in an agile, iterative cycle and validated in six pilots spanning telecommunications, maritime, Green Deal and industrial compliance, finance, aerospace (IRIS²) and healthcare — each measuring gains in data quality and representativeness, bias mitigation, regulatory alignment and secure data-space interoperability. By coupling generative modelling with compliance-by-design, SYNTACTIC aims to reduce the cost and time of compliance and widen access to high-quality synthetic datasets, with results reusable beyond the project.

GLASS

The rapid growth of Information and Communication Technology (ICT) and its ubiquitous presence in our everyday life has significantly affected the way government services are delivered today. This poses constant challenges to safeguard the data confidentiality and integrity of eGovernment services, while increasing their adoption and usage by citizens and businesses. GLASS catered for a ‘European Common Services Web’, bringing closer together citizens, businesses and European governments. The project introduced a citizen-centric eGovernance model that enabled beneficiaries to participate in a network for big data exchange and service delivery, which was by design digital, efficient, cost-effective, interoperable, cross-border, secure and promoted the once-only priority. The GLASS solution comprised (i) a reliable and efficient mechanism for data sharing, capable of addressing the complexity of the processes and their high demand on resources; (ii) an auditing mechanism ensuring immutability and transparency; (iii) an ecosystem for delivering mobile services tailored to the needs of its users; (iv) a single sign-on platform to manage the transactions with multiple services; and (v) an intercommunication layer, responsible for the secure exchange of information among operational stakeholders, as well as the integration of already existing eGovernance systems with newly developed ones. GLASS brought together twelve (12) interdisciplinary partners from eight (8) countries to deliver a novel eGovernance model and address the challenges that governance structures in the EU were facing at the time -from divergent and legal groundwork to physical and technological limitations- towards the further democratization and openness of the public administration services.

ORPHEUS

Small and medium-sized enterprises make up the overwhelming majority of European businesses, yet most operate without dedicated security staff, without complete visibility of their own systems and dependencies, and without a dependable route to expert help when an incident occurs. ORPHEUS addresses that implementation gap by joining prevention, incident readiness and response support into a single operational service continuum, rather than adding another set of standalone tools that need specialist configuration to be useful.

The platform brings together four connected capabilities. A Cybersecurity Toolkit maps IT, OT and AI assets and the dependencies between them, detects vulnerabilities and misconfigurations, and produces risk assessments and evidence packages aligned with the Cyber Resilience Act. A multilingual, non-commercial cyber helpline, driven by agentic AI, triages incidents, recommends immediate containment actions and escalates to human experts with the evidence already gathered. An Incident Lifecycle Management Layer turns a report into a tracked case and generates authority-ready notifications for structured exchange with national CSIRTs and CERTs. A modular cyber range converts recurring incident patterns and regulatory obligations into practical exercises for SME staff and first responders.

ORPHEUS is validated in four real-world settings: secure uptake of generative AI services by SMEs, cross-border incident response with national CSIRTs, SME cyber-resilience training, and a small manufacturing plant with OT/ICS equipment. SMEs are recruited across several NIS2-relevant sectors through innovation clusters and European Digital Innovation Hubs.