The EU AI regulation applies to everyone who uses AI, not only developers. We help you get an overview and implement the obligations pragmatically, aligned with data protection and information security.
| Date | What applies |
|---|---|
| 2 February 2025 | Prohibition of certain AI practices (Art. 5) and AI literacy obligation for employees (Art. 4) |
| 2 August 2025 | Obligations for providers of large general-purpose AI models |
| 2 August 2026 | General application, including transparency obligations for chatbots and AI-generated content (Art. 50), supervision and penalties |
| 2 December 2027 | Obligations for high-risk AI under Annex III, e.g. recruitment, credit scoring and critical infrastructure (postponed by the "Digital Omnibus") |
| 2 August 2028 | Obligations for high-risk AI in regulated products under Annex I |
This overview is for general information and does not replace legal advice. Details and sources are in the white paper.
Where is AI used today, including hidden in standard software? Which use cases fall into which risk class? The result is a concrete action plan.
Approved tools, data rules, approval processes and responsibilities, tailored to your organisation.
Role-specific AI literacy training with attendance records, from staff to management.
Labelling chatbots and AI content, human oversight and logging in your AI applications.
AI inventory in IT asset management, coordination with data protection and ISMS, so AI compliance does not become a parallel project.
If you wish, we implement the right platform as well: secure, sovereign and as a managed service.
Managed AI services →Obligations, deadlines and a 90-day plan on 14 pages for management, including a self-check. The white paper is available in German.
In a 30-minute consultation we clarify which obligations apply to you and which steps pay off first.
An IT problem you would like taken off your plate?
30-min IT consultation