Skip to content
TECHNOMATON | Docs SAI Certified Trainers

AI Act | Overview

Regulation: EU 2024/1689 Effective: August 2, 2026 (for high-risk AI) Scope: Artificial Intelligence


What is the AI Act?

The AI Act is the world’s first comprehensive regulation of artificial intelligence. It classifies AI systems by risk level and establishes corresponding obligations.

Risk Classification

CategoryObligationExamples
PROHIBITED (Art. 5)STOP — do not useReal-time biometric ID without consent, Emotion recognition of children, Subliminal manipulation, Social scoring
HIGH-RISK (Art. 6, Annex III)Full obligationsCredit scoring, Employment decisions, Health diagnostics, Law enforcement, Education access
MEDIUM-RISK (Art. 52)TransparencyChatbots (must be labeled as AI), Deepfakes (must be labeled), Emotion recognition (outside prohibited)
LOW-RISKMinimal obligationsSpam filters, Recommendation systems (no rights impact), Analytics (anonymous)

Key Obligations

For HIGH-RISK AI Systems

ObligationDescriptionDeadline
Risk ManagementDocumented risk management processBefore deployment
Data GovernanceTraining data quality, bias testingOngoing
Technical DocumentationModel card, training info, limitationsBefore deployment
Record KeepingAudit log, min. 5 yearsOngoing
TransparencyUser information about AIBefore deployment
Human OversightHuman-in-the-loop capabilityAlways
Accuracy & RobustnessTesting, monitoring, drift detectionOngoing

For GPAI (General-Purpose AI)

If using Claude, GPT-4, Gemini, or other GPAI:

  • ✅ Audit Terms of Service
  • ✅ DPA (Data Processing Agreement)
  • ✅ Know limitations (hallucinations, bias, knowledge cutoff)
  • ✅ Monitoring: log prompts + outputs
  • ✅ NEVER send PII/health/financial data to GPAI without encryption

Your Role

RoleDefinitionExample
ProviderDeveloped/trains AIOwn ML models
DeployerDeploys AI for end-usersUses Claude in product
ImporterImports AI from non-EUImport US AI system
DistributorDistributes AI to third partiesReselling AI solutions

Timeline

Penalties

ViolationPenalty
Prohibited practicesup to €35M or 7% global annual turnover
High-risk violationsup to €15M or 3% global annual turnover
Other violationsup to €10M or 2% global annual turnover
Providing false informationup to €7.5M or 1% global annual turnover

Example: Company with €100M global annual turnover = max penalty €7M for high-risk violation.


Next Steps

  1. Conduct AI inventory
  2. Classify risks
  3. Review checklist

Resources