What CTOs Need to Know About Article 26
Deployer obligations under Article 26 are specific and technical. Human oversight, logging, data governance — what your engineering team actually needs to build.
Read more →Practical guidance on EU AI Act compliance for businesses with customer-facing AI systems.
Deployer obligations under Article 26 are specific and technical. Human oversight, logging, data governance — what your engineering team actually needs to build.
Read more →Article 50 requires AI disclosure at first contact. Most businesses think a footer disclaimer is enough. It isn't.
Read more →How EU AI Act fines are calculated. The three penalty tiers up to €35 million or 7% of global turnover, the Article 99 factors that set the actual amount, and the lower caps for SMEs and startups.
Read more →Article 27 requires deployers of high-risk AI to conduct an FRIA before going live. What that actually looks like in practice.
Read more →The Act applies to any organisation whose AI system affects people in the EU, regardless of where the company is based. Extraterritorial scope explained.
Read more →Social scoring, manipulative AI, real-time biometric surveillance — these prohibitions took effect in February 2025. Are you sure none of your systems qualify?
Read more →Providers of high-risk AI systems must supply deployers with detailed usage instructions. Most current documentation falls short of what the Act requires.
Read more →Article 72 requires ongoing surveillance of your AI system in production. Logging, drift detection, incident triggers — the compliance work doesn't stop at launch.
Read more →Article 73 sets 2-, 10- and 15-day deadlines to report serious incidents involving high-risk AI. What counts as a serious incident, who you notify, and when the clock starts.
Read more →Both regulate data, both carry massive fines, but they cover different ground. How to handle compliance for both without duplicating work.
Read more →