AI Act: 2 August 2026

5 ottobre 2026

AI Act: 2 August 2026 wasn’t what you think

No avalanche of high-risk requirements: the real deadline was about transparency and enforcement, and it affected far more companies than you might think.


For months, 2 August 2026 was portrayed as the day the AI Act would “explode” into force with all its most demanding requirements. That’s not what happened, and understanding why matters if businesses want to set the right priorities.


What was postponed. Regulation (EU) 2026/1744, published on 24 July and entered into force on 27 July 2026, postponed the application of requirements for high-risk systems listed in Annex III until 2 December 2027. For high-risk systems embedded in regulated products, the new date is 2 August 2028.

What was NOT postponed and affected almost everyone.
→
Transparency obligations (Article 50): companies using chatbots or virtual assistants, or generating synthetic content (text, images, audio), must ensure that this is clearly identifiable.
→ From 2 August, the enforcement regime also extended to obligations that became applicable on that date.
→
No postponement for Public Administrations.


The penalties remain those established under Article 99: up to €35 million (or 7% of global annual turnover) for prohibited practices, and €15 million (or 3%) for breaches of other obligations.

The right question is no longer “When will we have to deal with this?” but “What can we demonstrate today?”.


An inspection, a report, an internal dispute: since August, organisations may be asked to provide concrete evidence of due diligence, rather than statements of intent. An inventory of AI systems currently in use, risk classification, staff training, an obligation already applicable since February 2025, are all part of a governance framework that cannot wait for the official compliance calendar.


Sources: Regulation (EU) 2024/1689, Articles 50 and 99; Digital Omnibus, Council of the EU (29/06/2026)


#AIAct #ArtificialIntelligence #Compliance #GRC #CyberSecurity #DigitalOmnibus #AIGovernance #MagisPartners

Ispezioni ACN NIS2, misure di sicurezza di base NIS2, sanzioni NIS2
5 ottobre 2026
Entro ottobre 2026 scadono i termini NIS2 per le misure di sicurezza di base. Requisiti ACN, controlli e priorità per soggetti essenziali e importanti.
AI Act 2 agosto 2026: cosa รจ cambiato per le imprese
17 settembre 2026
Dal 2 agosto 2026 si applicano nuovi obblighi AI Act su trasparenza e governance, mentre l'alto rischio è slittato. Cosa devono fare le imprese.
17 luglio 2026
Per le organizzazioni nel perimetro Part-IS, la conformità entra nella fase delle evidenze operative.
7 luglio 2026
NIS2 operativa: obblighi di notifica, tempistiche e impatti sull’Incident Response. Scopri come adeguare processi, governance e framework GRC.
1 luglio 2026
Per CISO e Risk Manager, inventario e classificazione dei sistemi AI diventano priorità di governance.
10 giugno 2026
Le sfide legate a ๐˜ค๐˜บ๐˜ฃ๐˜ฆ๐˜ณ๐˜ด๐˜ฆ๐˜ค๐˜ถ๐˜ณ๐˜ช๐˜ต๐˜บ, ๐˜ค๐˜ฐ๐˜ฎ๐˜ฑ๐˜ญ๐˜ช๐˜ข๐˜ฏ๐˜ค๐˜ฆ ๐˜ฆ ๐˜ณ๐˜ฆ๐˜ด๐˜ช๐˜ญ๐˜ช๐˜ฆ๐˜ฏ๐˜ป๐˜ข ๐˜ฐ๐˜ฑ๐˜ฆ๐˜ณ๐˜ข๐˜ต๐˜ช๐˜ท๐˜ข stanno cambiando rapidamente il settore aviation e il mondo delle infrastrutture critiche.
10 giugno 2026
๐Ÿ‡ช๐Ÿ‡บ EU AI Act: cos’è e cosa prevede.
10 giugno 2026
๐Ÿ‡ช๐Ÿ‡บ Direttiva NIS2: UE e la Sicurezza Informatica
10 giugno 2026
Quanto può costarti ignorare il rischio cyber? ๏ปฟ