Responsible AI · AI Privacy · AI Governance
I turn AI governance principles, privacy law, and software-compliance research into practical risk-assessment processes and working tools. I am Currently a Research Fellow with UQ and CSIRO, leading responsible-AI work in the Tech4HSE program for AI-intensive XR systems.
My work sits where regulation meets real systems: taking frameworks like the EU AI Act, GDPR, and Australia's Privacy Act and building automated ways to check whether AI and software systems actually comply, before they reach users.
Focus areas
- AI risk assessment & high-risk AI classification (EU AI Act, NIST AI RMF, ISO/IEC 23894)
- Automated privacy-policy & compliance checking (LLM-assisted extraction, evidence-based reporting)
- Data governance & accountability (DataBOM, provenance, tamper-evident audit records)
- Large-scale empirical privacy analysis of real-world app ecosystems
Selected published work & tools
- Pico — detects excessive data collection in voice-assistant apps at scale (ICSE 2024)
- Skipper — checks whether apps behave as their privacy policy claims (ASE 2022)
- UQ-AAS21 — 65,195-skill dataset behind the studies above (ADMA 2021)
Full profile: xie00059.github.io
Email: fuman.xie@hotmail.com