Tom Phillips
Tom Phillips
Available for Consulting

Tom Phillips

AI Solutions Architect. Cybersecurity & Applied AI.

CurrentlyShipping Narrate Compliance v2

I build practical AI systems that solve real problems in governance, risk, compliance, and automation — from commercial SaaS platforms to intelligent agents that eliminate manual processes.

Tom Phillips Labs is the working name for it — applied-AI experiments, small tools and shipped products, each one built in the open and written up.

4
Flagship apps shipped
90%+
Manual time saved
24/7
Production uptime
Stack

What's running

26 of 28 active
AI/ML
  • OpenAI GPT-4o
  • Azure OpenAI
  • Anthropic Claude
  • Whisper
  • RAG
  • Dify
  • n8n
  • Vector DB
  • ElevenLabs
  • LangChain
Backend
  • Python
  • FastAPI
  • Supabase
  • PostgreSQL
  • Stripe
Frontend
  • Next.js 16
  • React 19
  • TypeScript
  • Tailwind v4
  • Capacitor
Cloud
  • Vercel
  • Azure
  • Docker
Security
  • RSA Archer
  • OneTrust
  • ISO/IEC 42001
  • EU AI Act
  • RBAC + RLS
Work

Flagship projects

Production systems with interactive sandboxes.

AI auditing & anomaly monitoringLive

Neural Oversight

The AI landscape, distilled daily.

A free AI intelligence hub aggregating 48+ sources into curated daily briefings, with risk scoring, entity graphs, and a real-time regulatory tracker for researchers, policy makers, and governance teams.

  • Risk scoring (1–10) on every story for automated triage
  • Entity intelligence across companies, people & research labs
  • AI chat grounded in cited sources
48+
Sources tracked
~2 min
Read time
None
Paywall

Next.js · TypeScript · Supabase · OpenAI · Vercel

Build notes
AI governance & compliance SaaSLive

Narrate Compliance

From gap assessment to certification, in one platform.

Commercial ISO compliance SaaS — Align (clause-by-clause assessments), Toolkit (100+ generated documents), Narrator AI, Evidence Management, Governance Recorder, and immutable audit logs. Supports companies, consultants, auditors, and admins.

  • ISO/IEC 42001 & EU AI Act aligned workflows
  • GPT-4o evidence analysis with confidence scoring
  • Whisper-powered governance recorder → minutes & tasks
100+
Document templates
4
User types
3
Pricing tiers

Next.js 14 · TypeScript · Supabase · OpenAI · Stripe · Vercel

Build notes
Cross-platform mobile (Capacitor)Live

Dad & Baby

The pregnancy companion built for dads.

A UK-focused cross-platform companion shipped to iOS and Android via Capacitor — week-by-week guidance, NHS-aligned tracking, contraction timer, hospital checklists, and a private community for expectant and new fathers.

  • Week-by-week video guides (weeks 4–40)
  • NHS birth plan builder with PDF export
  • Contraction timer with 3-1-1 labour detection
iOS + Android
Platforms
£4.99/mo
DadPro tier
55+
Glossary terms

Capacitor · TypeScript · iOS · Android · Supabase

Build notes
AI voice cloning · AccessibilityLive

Voice Legacy

Record your voice while you still can. Speak in it when you can't.

A web + native app for people losing their voice — ALS, throat cancer, PPA, Parkinson's. Bank voice samples while you still have your voice; later, type a phrase and hear it played back in your own cloned voice via ElevenLabs. Built deliberately for the family at diagnosis, not for a SaaS demo reel.

  • ElevenLabs voice cloning with consent-gated bank flow
  • Typed phrase or one-tap saved phrase → live TTS playback
  • 12 sensible default phrases seeded for every new account
ALS · PPA
Built for
Web · iOS · Android
Platforms
Never
Audio at rest

Next.js 16 · TypeScript · Supabase · ElevenLabs · Capacitor

Also shipped

Smaller tools

Built to scratch a real itch. Live and free.

Client work

Delivered for enterprise teams

Anonymised case studies — applied AI inside live enterprise environments. Hover to pause, drag to browse.

RAG Agent90%+ time saved per report

Automated Vulnerability Report Analysis

Enterprise security & governance

Cross-references third-party findings against the internal control library and writes the remediation plan.

Difyn8nPythonOpenAI API+2
Read the build notes
Applied AI ApplicationSelf-service · cited

AI-Powered GRC Knowledge Base

Procurement, legal & business teams

Cited, in-plain-English answers sourced live from OneTrust + Archer policy libraries.

DifyVector DBOneTrustRSA Archer+2
Read the build notes
Data PipelineWeekly → real-time

Intelligent Risk Dashboard Automation

Enterprise risk leadership

Pulls Archer + OneTrust on a 15-minute schedule, synthesises the executive narrative, ships it live.

n8nPythonRSA Archer APIOneTrust API+1
Read the build notes
Conversational AI97% faster · 15 min → 30 sec

Automated User Access & Onboarding

Enterprise platform operations

Conversational access-provisioning that replaces a specialist queue with safer, validated self-service.

Difyn8nAzure OpenAI (GPT-4)REST APIs+1
Read the build notes