AI Act

← All instruments
applies partiallyhorizontal
Type
regulation
Layer
horizontal
Status
applies partially
In force
2024-08-01
Key date
2026-08-02 high-risk obligations
Last verified
2026-07-21

Artificial Intelligence Act (AI Act)

Stub — deep dive in preparation. Key metadata above is sourced from EUR-Lex; the full explainer for this instrument is still being written. The Cyber area has a dedicated page on the AI Act’s cybersecurity provisions (Art. 15 / Art. 55).

Regulation (EU) 2024/1689 — the first comprehensive horizontal AI framework: risk-based obligations for providers and deployers of AI systems and general-purpose AI (GPAI) models placed on the EU market.

What it does (at a glance)

  • Prohibited practices (social scoring, certain biometric uses) — banned outright.
  • High-risk systems (Annex I & III) — conformity assessment, risk management, data governance, human oversight, robustness/cybersecurity.
  • GPAI models — transparency and copyright duties; extra obligations for models with systemic risk.
  • Transparency duties for chatbots, deepfakes and emotion recognition.

Key dates (staged application)

  • In force 1 August 2024.
  • Prohibitions: 2 February 2025.
  • GPAI obligations: 2 August 2025.
  • High-risk obligations: 2 August 2026. ⚠️ VERIFY — the November 2025 Digital Omnibus discussed adjusting parts of this timeline; check the current state of the procedure.

Sources