Policymakers in Europe are hard at work on all things artificial intelligence, and we’re here to keep you updated. We’ll cover laws and policies that relate to AI, and their implications for Europe, fundamental rights, and democracy. If you’d like to receive CDT Europe’s AI Bulletin via email, you can sign up on CDT’s website.
1. The Latest on the EU’s Proposed Artificial Intelligence Act
Negotiations on the EU AI Act (AIA) are at a critical stage in the European Parliament. Rapporteurs have sped up the timeline for discussions on the file, in hopes of reaching a common position in the coming weeks after months of negotiation, but the latest developments shed light on remaining points of contention.
The negotiating team reportedly reached a compromise on requirements for nationally-designated ‘notified bodies’, which are tasked with verifying that high-risk AI systems conform to the requirements for these systems set out by the AIA. The two co-rapporteurs also held technical discussions that covered what AI applications the AIA prohibits, what criteria define a high-risk AI system, how national competent authorities would go about setting up regulatory sandboxes (tools created under the AIA to test and experiment on AI systems under supervision), and how to define several concepts core to the future legislation.
The most significant outcomes of these negotiations were as follows:
Benifei and Tudorache have significantly revised the rules for classifying AI systems as high-risk, and for amending the AIA’s Annex III, the section of the legislation that lists high-risk uses of AI. The changes would authorise providers that believe their AI system does not pose a significant risk of harm to people’s health, safety, or fundamental rights to submit a “reasoned request” to the national supervisory authority (the authority in charge of overseeing the AIA at the national level) or to the AI Office (the EU body tasked with streamlining enforcement at the EU level) to exempt their AI system from the obligations related to high-risk systems. The revised list of high-risk systems in the all-important Annex III would include:
Categorisation of individuals or groups based on biometric data, in publicly accessible spaces (though subsequent amendments suggest prohibiting these systems entirely);
Real-time and retroactive (‘ex-post’) remote biometric identification in privately accessible spaces, and retroactive remote biometric identification in publicly accessible spaces;
Emotion recognition systems, which the draft proposal classified as limited-risk, and ‘biometric-based systems’ such as the app Lensa, which were missing from the original proposal;
Certain AI systems ‘likely to influence democratic processes like elections’;
AI systems that ‘may have serious effects on a child’s personal development’;
AI systems which deploy subliminal techniques for scientific and therapeutic research purposes;
Some additions in high-risk areas such as critical infrastructure, education, employment, law enforcement and migration, and access to public services.
The co-rapporteurs also clarified the objectives of regulatory sandboxes, namely that they should:
Assist in regulatory compliance;
Enable and facilitate the testing of innovative solutions; and
Test potential adaptations of the Regulation in a controlled environment.
Under the latest amendments, providers would be authorised to use regulatory sandboxes to test AI systems before assessing whether they are high-risk. Benifei and Tudorache suggest that the Commission should wait a year after the AI Act enters into force before defining how sandboxes should be established and supervised. More controversially, they also authorise developers of AI systems to process personal data, and data covered by intellectual property law, for public interest reasons such as the protection of the environment or disease detection.
The two co-rapporteurs revised the conformity assessment procedures, which aim to determine whether providers and developers of high-risk AI systems meet requirements set out in the AIA for placing these systems on the EU market.
Rapporteurs also clarified under what circumstances providers of high-risk AI must resort to an assessment by a ‘notified body’ (a third party that would approve the quality management system and technical documentation established by high-risk providers), or through internal control (which doesn’t involve external audit). The co-rapporteurs agreed that any provider that does not use harmonised standards ‘in full’ would be required to conduct a third-party assessment, and would not be authorised to resort to internal control.
The new text also proposes allowing AI developers to ask for a third-party assessment, regardless of the level of risk of their AI systems, and requiring third-party bodies to consider ‘the specific interest of small AI providers’ in the calculation of compliance fees.
The co-rapporteurs suggested granting the Commission the power to amend the conformity assessment procedures, if it provides ‘substantial evidence’ for doing so after consulting with the AI office and affected stakeholders.
They also reallowed national authorities to deviate from the conformity assessment procedure and put a high-risk AI system into service within their national territory, for exceptional grounds such as the ‘protection of life and health of persons’. They did, however, remove ‘public security’ from these grounds, to limit possible harms. Such deviation would also require mandatory authorisation from judicial authorities, notification to the other member states and the Commission.
Rapporteurs held a critical political discussion on 15 February, with the goal of concluding negotiations on highly sensitive amendments that cover how an AI system is defined, to which entities the Regulation applies, which systems should be categorised as high-risk AI, which AI practices are prohibited, when a provider must register the use of an AI system with the EU,what general principles apply to all AI systems, and whether to require AI developers and deployers to ensure AI literacy for their staff.
The planned meeting agenda also included discussion of new amendments that would prohibit the use of biometric categorisation systems in publicly accessible spaces and real-time biometric identification in privately accessible spaces; these uses were previously only listed as high-risk.
Unfortunately, the 14 rapporteurs barely managed to get through a third of the agenda, failing to reach a conclusion on any of the above points. In light of this, Tudorache told Contexte that the negotiating team was willing to go beyond the deadline for the joint committee vote — originally set for 28 and 29 March — to obtain an agreement on these issues.
On 27 January, the U.S. Administration and the European Commission signed an Administrative Agreement on Artificial Intelligence for the Public Good. Signalling a renewed willingness to step up transatlantic collaboration in the field of AI, the agreement will bring together experts from across the two blocs to further AI research and development projects across five areas of global and societal focus, including climate forecasting and emergency response management. In the spirit of leading global efforts to further research on societal applications of AI, the Commission stressed that, as part of the agreement, they will share findings and resources with like-minded international partners that may lack the necessary capabilities to manage these challenges.
The CAI’s fourth Plenary session took place from 1-3 February, where the draft group is said to have discussed the preamble, provisions on the implementation mechanism of the future legislation, and the cooperation mechanisms between the negotiating parties. Following the Plenary, the CAI published the draft Convention on Artificial Intelligence, Human Rights, Democracy and the Rule of Law, the document that serves as the basis for negotiations.
General-purpose AI Code of Practice Implementation: A Rights Blindspot
CDT Europe's analysis of the entry into application of the European Commission’s enforcement powers towards general-purpose AI (GPAI) models, detailed and operationalised in the GPAI Code of Practice.
As Brussels starts emptying for the summer, the risks of frontier AI models continue to capture the attention of policymakers as a key chapter of the AI Act becomes enforceable, and disclosure rules around the use of AI systems and AI-generated content are further clarified.
CDT Europe’s Feedback on the Draft Guidelines for the Classification of High-Risk AI Systems under the AI Act
CDT Europe responded to the European Commission’s consultation on the draft guidelines for the classification of high-risk artificial intelligence systems.
Open Joint Letter on a Public Reassessment of the EU-US Adequacy Decision
On 29 June, the US Supreme Court ruled that US President Trump can remove the leaders of independent agencies and commissions, overturning nearly 90 years of precedent limiting executive power. This decision raises serious questions about one of the key safeguards underpinning the EU-US Data Privacy Framework adopted in 2023: independent supervision.