What must exist
CNTD (Executive Decree 44507-MICITT)
Sets good practices for acquisition, development and management of digital technologies in the public sector; Chapter 7 introduces the AI guidelines.
REGIA Costa Rica
The REGIA method applied to Chapter 7 of the CNTD.
REGIA-CR closes the "how" for Costa Rican public institutions that must operate Chapter 7 of the National Code on Digital Technologies (Executive Decree 44507-MICITT). It keeps the 5 pillars of the REGIA framework and adds a Costa Rica-specific pack of instruments.
Country localization: Costa Rica
REGIA-CR localizes the REGIA framework for Costa Rican public institutions, aligned with the CNTD, the ENIA and the Action Plan. It turns guidelines into roles, instruments, evidence and review cycles.
Architecture
REGIA Core defines the operational path. REGIA-CR translates the Costa Rican framework into roles, instruments, evidence and review cycles.
REGIA Core: regional operational framework for responsible AI adoption
REGIA-CR: country localization for Costa Rica, aligned with CNTD, ENIA and Action Plan
CNTD Pack: instruments, traceability and evidence to implement Chapter 7 of the CNTD
“REGIA does not compete with the CNTD. It operationalizes it.”
CNTD Chapter 7 coverage
76
CNTD Chapter 7 guidelines
52
Covered by REGIA Core
24
Gaps closed by REGIA-CR
6
New CNTD Pack instruments
The REGIA-CR analysis maps 76 operational guidelines from Chapter 7 of the CNTD on artificial intelligence. The classification finds that REGIA Core already covers 52 with its existing instruments on governance, risk, rights, transparency, testing, monitoring, audit and training. The remaining 24 guidelines are gaps or insufficiently explicit coverage, and they are closed by 6 new instruments grouped in the REGIA-CR CNTD Pack. It is not a framework rewrite: it is a country extension, traceable, on top of the existing R-E-G-I-A architecture.
Your institution has dozens of operational AI guidelines under the CNTD. REGIA already covers most of them, and REGIA-CR closes the remaining gaps with traceable instruments.
6 instruments to close the 24 gaps
| Code | Instrument | Pillars |
|---|---|---|
| CNTD.N1 | AI incident protocol Defines how to detect, classify, escalate, report and document AI system incidents, including reporting to MICITT when applicable. | G / A |
| CNTD.N2 | AI operational continuity and critical infrastructure Identifies critical dependencies of AI systems and defines fallback, backup and continuity testing before moving to production. | G / I / A |
| CNTD.N3 | AI environmental sustainability Integrates energy efficiency, environmental profile of infrastructure, electronic waste and sustainable procurement criteria for AI systems. | R / G / I / A |
| CNTD.N4 | Accessibility and human-centered design Turns the CNTD's human-centered approach into user research, accessibility, prototyping and verifiable testing. | R / I / A |
| CNTD.N5 | Rights, notices and disclosure duties Standardizes AI usage notices, generated-content labeling, consent, revocation and rectification procedures. | E / G / A |
| CNTD.N6 | Interoperability, API and technical standards Prevents the institution from buying or deploying AI as an isolated black box, incorporating API, standards, portability and architecture requirements. | G / I |
The framework REGIA-CR operationalizes
What must exist
Sets good practices for acquisition, development and management of digital technologies in the public sector; Chapter 7 introduces the AI guidelines.
Country direction
Defines principles, priorities and lines of action for responsible AI adoption in Costa Rica.
Who and when
Links institutions to concrete implementation objectives derived from the Strategy.
Rights and limits
Framework of rights, obligations and limits that will keep evolving; REGIA-CR operates as a technical and institutional layer while the legal framework consolidates.
Frequent clarifications
Want to know where your institution stands against Chapter 7?
Request a CNTD diagnosticMaintenance: REGIA-CR is updated as MICITT and CNTD guidelines evolve.
Scope: REGIA-CR does not constitute an official certification or legal opinion. It is an operational implementation framework that complements each institution's own governance.
REGIA-CR route for CNTD implementation in Costa Rica
Three sequential levels, an institution can enter at any of them. No prices published.
Level
1
Duration
2-4 weeks
Includes
Operational compliance map of the institution against Chapter 7 of the CNTD. Includes a maturity scorecard, gap analysis, risk heatmap and an executive report for leadership.
Result
The institution knows where it stands, what to prioritize and what to execute in the next 90 days.
Level
2
Duration
8-12 weeks
Includes
Hands-on engagement to close gaps with operating instruments: RACI, decision gates, traceability matrix, evidence pack and the 6 CNTD Pack instruments adapted to the institution.
Result
Capabilities in place, owners assigned and the first systems evaluated under REGIA-CR.
Level
3
Duration
6-8 weeks initial + recurring cycles
Includes
Installs a continuous assurance cycle: auditable folder per system, reviewed controls, drills, findings and an improvement plan to sustain CNTD compliance.
Result
Sustained auditable evidence over time and executive reports for leadership, audit and internal control.
Natural path: Level 1 → Level 2 → Level 3. The institution can enter at any level.
Public procurement
Deliverables can serve as input for action plans, terms of reference, internal audit or institutional evidence folders.
Downloadable document
Public methodology handbook of REGIA-CR: REGIA Core + REGIA-CR architecture, relevant Costa Rican framework, operational reading of Chapter 7, the 6 CNTD Pack instruments, the 3-level pathway, and limits of use. Useful to share with leadership or attach to an institutional file.
Contact
Every REGIA implementation starts with a no-commitment conversation to understand the context, current maturity and objectives. Write to me by email or LinkedIn.