Afghan Language AI Governance — ISO/IEC 42001 Evidence in Pashto and Dari
Ariana Nexus builds Afghan language AI governance from Washington, D.C. — ISO/IEC 42001 and NIST AI RMF programs for organizations whose AI reaches Pashto and Dari speakers, carrying evaluation evidence across 24 Afghan languages rather than English-only proxies. Advisory alongside your certifier and counsel, never in place of them.
The certificate is real. So is the gap behind it.
AI governance programs are built to satisfy a framework — a policy set, a risk register, model cards, an audit trail. What populates them is the problem. The register lists the risks the organization already knew to look for, and the evidence behind it comes from the evaluations it already knew how to run. Both stop at English. How the same model behaves in Pashto or Dari appears nowhere in the record.
The frameworks themselves concede the limit. ISO/IEC 42001 certifies that an organization manages AI responsibly; it is the de facto governance standard, but it is not a harmonized standard under the EU AI Act and does not, on its own, make a system compliant. The NIST AI Risk Management Framework is voluntary, yet referenced across federal agencies and demanded by enterprise procurement. The obligation is real and rising — and it is satisfied by evidence, which is exactly where most programs are thin.
So a governance program can earn the certificate and still be blind. Conformance measures whether you followed the framework; coverage measures whether you can actually see your risk. They are not the same thing — and for an organization whose AI reaches Afghan users, the distance between them is all 24 Afghan languages the program never tested.
Ariana Nexus closes that distance: an audit-ready management system aligned to ISO/IEC 42001 and the NIST AI RMF, a Governance Coverage Map that makes the Afghan-language blind spots visible, and Pashto and Dari validation evidence that puts real risk in the register.
the de facto AI-governance standard — and still not a coverage guarantee.
a clean certificate proves you followed the framework, not that you can see your risk.
Ariana Nexus's conformance-versus-coverage diagnostic.
What is Afghan language AI governance?
Afghan language AI governance is advisory and audit-readiness work that makes an AI management system account for how a model behaves in Pashto, Dari, and the rest of the 24 Afghan languages — aligned to ISO/IEC 42001, ISO/IEC 23894, and the NIST AI Risk Management Framework, and ready for EU AI Act obligations, with validation evidence behind every control. Ariana Nexus is a Washington, D.C.–area firm providing Afghan language services and cultural intelligence — interpretation, translation, cultural training, compliance support, and AI data — across 24 Afghan languages. Ariana Nexus advises and prepares organizations for certification alongside accredited bodies and counsel; it does not issue certifications or legal opinions.
A governance program governs only what its evidence can see. Conformance proves you followed the framework; coverage proves you can see your risk — and a program fed by English-only evaluation is conformant on paper and blind to every Pashto and Dari speaker it serves. Audit-ready is not the same as risk-complete.
Conformance is not coverage.
One practice. Three coordinated capabilities.
Three institutional capabilities working as one: governance that covers the risk in Afghan languages — and passes the audit.
HIC · Human Intelligence Collective
Lived-expertise practitioners across all 24 Afghan languages; the cultural gatekeepers who keep every engagement anchored in ground truth, never extractive.
Afghan practitioners whose in-language and cultural judgment makes an Afghan language AI risk assessment real — the human evidence behind impact assessments and controls.
ADF · AI Data Factory
Governed Afghan-language data infrastructure, evaluation benchmarks, and institutional-grade training assets meeting auditable standards.
The validation and benchmark evidence — Sovereign Speech Index results, Cultural Hallucination Audit findings, red-team records — that populates the risk register, model cards, and audit trail.
CCB · Cultural Compliance Bureau
An audit-grade review regime translating cultural intelligence into compliance-ready practice — the governance layer threading through every engagement.
Governance methodology and audit-readiness review; the mapping to ISO/IEC 42001, ISO/IEC 23894, and the NIST AI RMF; independence and assurance; the CCB Sign-Off Mark on governance artifacts.
How Ariana Nexus closes the gap: the Governance Coverage Map
Integrated four-phase system. Three institutional capabilities. Five validation gates. The Governance Coverage Map™ separates conformance from coverage and closes the gap; the Five-Gate Validation Protocol™ governs the evidence and artifacts that make the program audit-ready.
The Five Gates
The Five-Gate Validation Protocol™ — every gate cleared with evidence in the record, not assumed.
the program accounts for linguistic-accuracy risk in Pashto, Dari, and all 24 Afghan languages, with evaluation evidence in the record, not assumed.
the program accounts for cultural and religious risk, with Cultural Hallucination Audit evidence incorporated; cleared by the CCB Sign-Off Mark.
ISO/IEC 42001 (AI management system), ISO/IEC 23894 (AI risk management), ISO 31000, and the NIST AI Risk Management Framework, mapped and documented; EU AI Act obligations addressed where applicable.
the program addresses fairness and harm risk for the Afghan communities the deployment actually reaches — not only English-language users.
policies, risk register, impact assessments, model cards, monitoring logs, and evaluation records documented, traceable, and ready for accredited assessment.
Standards & compliance
Mapped to the registries a Chief AI Officer, a certification auditor, and a compliance lead recognize.
AI MANAGEMENT & RISK
AI GOVERNANCE & LIFECYCLE
ASSURANCE & AUDIT
What governs you — and when it bites.
The instruments a Chief AI Officer, a certification auditor, and a compliance lead answer to — with the status as it actually stands in June 2026, not as the headlines simplify it.
Status verified against primary EU, ISO, NIST, and U.S. federal and state sources, June 2026. The EU “Digital Omnibus” would defer the high-risk obligations to December 2027 — but it is not yet adopted, so 2 August 2026 remains the operative date.Ariana Nexus builds to the law in force and tracks the law in motion.
Five levels of governance maturity. Most programs stall at two.
Your governance, built to cover and to certify.
From foundations to continuous stewardship.
Scoped, assessed, architected. The AI portfolio, the obligations, and current maturity and coverage gaps mapped.
Built to standard. The management system, risk framework, controls, and documentation designed; blind spots closed via the Coverage Map.
The active state. The program operating; evidence flowing into the register and audit trail; the committee running.
Across the lifecycle. Audit and certification readiness maintained; the program monitored and continually improved.
The receivables
An audit-ready AI management system aligned to ISO/IEC 42001. Policies, controls, risk register, and documentation a certifier can assess.
An Afghan-language Governance Coverage Map. Where your program is conformant, and where it is blind — multilingual and cultural risk made visible.
ISO/IEC 23894 and NIST AI RMF multilingual risk management, operationalized. Risk identified, assessed, and managed across the lifecycle.
EU AI Act readiness, where applicable. Obligations mapped, the 42001 foundation laid, EU-specific gaps named — without overpromising that a certificate equals compliance.
Model cards, impact assessments, and risk records that carry Pashto and Dari evidence. Governance fed by validation, not assumption.
Certification and audit preparation. Readiness for accredited assessment — alongside your certifier and counsel.
Governance training and an operating cadence. The committee, the reviews, the lifecycle.
The regulation differs by border. The governance gap is the same everywhere.
ISO/IEC 42001 is international, the EU AI Act binds anyone serving the EU market, the NIST AI Risk Management Framework anchors the United States, and national AI strategies are multiplying. The obligations differ by jurisdiction; the coverage gap — governance built on English-only evidence — does not. Ariana Nexus builds audit-ready, coverage-complete AI governance worldwide.
The framework changes at the border. The blind spot travels with the program.
For healthcare, coverage is not optional.
A health system’s AI touches Afghan patients who speak Pashto and Dari — and the obligations already say so. AI governance for Afghan patients is not a separate program; governance whose evidence stops at English fails the patient and the audit at the same time.
Common questions about Afghan language AI governance
Is Dari the same as Farsi for AI evaluation?
No. Afghanistan Dari and Iranian Persian differ in vocabulary, register and idiom, and a model evaluated on Farsi data will pass tests it should fail for Dari users. Substituting one for the other is the most common way a multilingual AI evaluation looks complete and is not. Ariana Nexus treats Afghanistan Dari as its own language.
Is Hazaragi a separate language that needs its own AI testing?
Hazaragi is a dialect of Dari, not a separate language, so it is never counted among the 24 Afghan languages. It still matters for testing: a model tuned to Kabuli Dari can degrade for Hazaragi speakers. Ariana Nexus records dialect coverage — Kabuli, Herati, Badakhshani, Hazaragi — inside the Dari evidence, not alongside it.
Is “Afghani” a language? And is “Pashtun” the same as Pashto?
No to both, and the confusion shows up in datasets. Afghani is Afghanistan's currency; the people and the adjective are Afghan. Pashto is the language; Pashtun is the people who speak it. Labels like “Afghani” or “Pashtun” in a training corpus or an evaluation set usually mean nobody who speaks the language checked it.
How much does an Afghan language AI governance review cost?
Ariana Nexus scopes each engagement to the AI portfolio in question — how many systems, which obligations apply, and how much evidence already exists — so there is no list price. The first step is a coverage review that establishes where the program is conformant and where it is blind. Ariana Nexus quotes the program after that scoping.
Does Ariana Nexus issue ISO/IEC 42001 certificates?
No. Ariana Nexus prepares the management system, the risk register and the evidence for accredited assessment, and works alongside the certification body and your counsel. The certificate itself is issued by an accredited certification body, and Ariana Nexus does not provide legal opinions on EU AI Act exposure.
Does an AI system deployed only in the United States still need Pashto and Dari evidence?
Often yes. Afghan families resettled across the United States use hospital portals, benefits systems and school platforms in Pashto and Dari, and Section 1557 and Title VI obligations follow the patient, not the border. An AI system serving those users is in scope whether or not it was designed for them.
Related capabilities:
Afghan-language LLM evaluation and red-teaming
Cultural hallucination audits for AI output in Afghan languages
Who leads the AI & Data Systems Practice

Hussain Ahmad
Leads the practice's model validation, red-teaming, and AI governance engagements.

Maryam Safi
Leads the Cultural Compliance Bureau — the CCB Sign-Off Mark and the multilingual-coverage methodology.
Request an Afghan-language AI Governance Coverage Review.
The Governance Coverage Map™ · Standards adherence (ISO/IEC 42001, ISO/IEC 23894, NIST AI RMF, the EU AI Act) · Five-Gate Validation Protocol™ · Nexus Assurance Trust Center · CCB Sign-Off Mark — Full index at Nexus Assurance.