🔥 ISMS Copilot 2.5 has arrived


December 2025 edition

ISMS Copilot latest updates

How we made ISMS Copilot a better GRC assistant this month.

ISMS Copilot 2.5 is here

The biggest update since we launched the new app: Dynamic Framework Knowledge Injection.

Ok, the name is a bit scary, but put it simply:

When you ask about a standard or a regulation (ISO 27001, GDPR, SOC 2, HIPAA, NIS 2, DORA, CCPA, ISO 42001, or ISO 27701), the framework is automatically detected and relevant knowledge is injected into the AI before it responds.

This means:

  • Almost zero hallucinations: AI receives verified framework knowledge before replying, so the risk it's wrong is drastically reduced!
  • 9 frameworks currently supported: ISO 27001:2022, ISO 42001, ISO 27701:2025, SOC 2, HIPAA, GDPR, CCPA, NIS 2, DORA
  • Reliable detection: Framework detection uses pattern matching not performed by an AI, so it's predictable and reliable.

Generic AI tools make mistakes on specifics (ask for infosec standards control numbers...) because they rely on vague training data or web searches. ISMS Copilot 2.5 gives you answers that check for the actual list of controls from a framework before replying.

👉 Try ISMS Copilot 2.5​

Behind the scenes

Framework detection was a big progress to improve answers' accuracy.

But what makes a good AI assistant are the essentials (you ask, it does precisely what you want - unless it's not aligned with its purpose).

That's exactly what we worked on:

  • Long requests: Fixed root causes that could prevent very long answers from being displayed
  • Document generation: More reliable generation even for long documents
  • Adjusted guardrails: Fixed over-sensitive filters that refused legitimate compliance requests (we know how much this was frustrating).

What's next

We're preparing ISMS Copilot for becoming way, way more helpful:

  • More frameworks (NIST 800-53, ISO 9001, PCI DSS)
  • Pick your model provider (OpenAI, Gemini, Anthropic, Grok, Mistral... that's your call!). We'll offer a default one, but in case you prefer Claude's or Gemini's style... you'll just have it.
  • Agents assigning tasks instead of just chatting
  • Integrations with GRC tools

And some other cool surprises.

We're committed to build what compliance professionals actually need.

And since we have no investors... we only win by making you happy.

Got feedback or requests? We're listening.

​Share your thoughts​

In the meantime, try ISMS Copilot 2.5. 👉 chat.ismscopilot.com​

Better ISMS

Read more from Better ISMS
ISMS Copilot and heyGRC

Hi, You know ISMS Copilot as the chat where you do ISO 27001, SOC 2 and GDPR. heyGRC is the other half of that job. It reads your pull requests and flags a compliance problem while the change is still open, not months later in front of an auditor. If you are on ISMS Copilot Standard, Pro or Business, 100 private heyGRC reviews a month are already part of your plan, on one organization. Your price does not change. Open it with the same account: https://app.heygrc.com Sign in with the same...

ISMS Assistants chat playground

Hi, You already know ISMS Copilot as the chat for GRC work. Introducing the platform: the same knowledge, ready to ship to your customers and your products, without you standing up a training pipeline, model stack, or compliance chatbot from scratch. One console: https://platform.ismscopilot.com For consultants and compliance platforms: Assistants If you advise clients, you already own the relationship. What you often lack is a way to extend support between workshops, or to capture leads with...