EU begins enforcing AI regulations

The European Union began enforcing its Artificial Intelligence Act on August 2, rolling out new transparency requirements designed to clarify when users interact with AI-generated content.
Under the rules, chatbots and other interactive AI systems must disclose that users are engaging with AI, not a human. Deepfakes—images, videos, or audio altered or created by AI—must be labeled, and AI-generated content must include machine-readable marks to improve detectability.
The measures aim to reduce deception and manipulation while providing businesses with clearer compliance obligations. More than 180 organizations have already signed the EU’s Code of Practice on transparency for AI-generated content, which outlines how to implement the new requirements.
General-purpose AI models face stricter scrutiny
The EU’s AI Office now oversees enforcement for providers of general-purpose AI (GPAI) models—systems capable of performing a wide range of tasks, from powering chatbots to AI agents. The most advanced GPAI models, which may pose systemic risks, face additional obligations.
These include addressing threats like large-scale chemical, biological, radiological, or nuclear incidents, as well as risks to cybersecurity and AI systems acting outside human control. Providers must also document training data, adopt copyright policies, and publish detailed summaries of the content used to develop their models.
Related: Euro Faces Challenges in August Trading
The rules reflect growing concerns about AI’s potential to disrupt critical infrastructure or undermine fundamental rights. Similar debates emerged in the U.S. last year when federal agencies began drafting voluntary guidelines for AI safety, though enforcement remains fragmented compared to the EU’s centralized approach.
Prohibited practices and shared enforcement
The AI Act bans certain harmful AI applications, including systems that manipulate users, exploit vulnerabilities, or engage in unfair social scoring. Enforcement responsibilities are divided among three bodies: the AI Office, national authorities, and the European Data Protection Supervisor.
The AI Office handles enforcement for AI systems tied to general-purpose models, as well as those integrated into major online platforms or search engines under the Digital Services Act. National authorities oversee other AI systems, while the European Data Protection Supervisor regulates AI used by EU institutions.
To support compliance, the AI Office has launched tools for reporting violations, including a complaint portal for individuals and businesses, a whistleblower channel for employees of AI providers, and a dedicated reporting system for downstream developers. All submissions will be treated confidentially.
Member states must ensure their national authorities are adequately resourced to enforce the rules. The AI Office has also published guidelines on prohibited practices, transparency obligations, and risk classification for high-risk AI systems.