Firms’ human rights due diligence (HRDD) and communication on their human rights impacts are not only elements in the Corporate Responsibility to Respect human rights (Pillar Two), but also to be promoted by States as part of their State Duty to Protect (Pillar One) through regulatory strategies aiming at shaping business conduct. Analysing the EU’s 2014 Non-Financial Reporting Directive as an example of governmental regulation for promoting responsible business conduct, the article discusses conditions for HRDD and reporting as a communication process to stimulate organizational change in accordance with the UN Guiding Principles to avoid harm, including through affected-stakeholder engagement. Applying socio-legal regulatory theory along with organizational and accounting literature, the article finds that the Directive’s predominant focus on ex-post measures appears to be a neglected opportunity to induce ex-ante organizational learning and changed business conduct to prevent adverse human rights impact. It offers recommendations for regulators and stakeholders for stronger regulation.