Skip to content
Live · The Signal · W37
Monday, September 14, 2026
AI Lately

AI is about people, and what they have been up to lately.

Brussels Sets the Clock

The EU AI Act crossed its August 2026 deadline with transparency duties rather than the high-risk regime once expected, after a Digital Omnibus reshaped the calendar and split the field's labs into signers, partial signers, and one conspicuous holdout.

Edited by Ryan Elliott Dennis6 min read · 1,360 words · 8 sources
The United States Capitol building
The United States Capitol building. Photo · Pexels
A single missed disclosure under Europe's new transparency rules can cost a company 7 percent of its global revenue, yet the bloc's toughest AI obligations just moved two years down the road.

Aug. 2, 2026, arrived in Brussels as advertised, and Europe's artificial-intelligence law crossed a second major deadline: chatbots gained a duty to declare themselves, AI-altered images and audio gained a duty to carry a label, and the European Commission's AI Office gained fresh enforcement powers over both 12. The date carried less weight than early drafters intended, though, because a Nov. 19, 2025, proposal reshaped the calendar months earlier, pushing the Act's toughest high-risk obligations to December 2027 and August 2028 3. Twenty-one companies had already signed the voluntary code meant to ease that transition; two of the field's most closely watched labs signed differently, or skipped the signature altogether 4.

A Clock Set in Stages

The Artificial Intelligence Act entered into force on Aug. 1, 2024, and its authors built compliance in stages rather than as a single cliff 1. Prohibitions on systems Brussels judged an unacceptable risk — social scoring, manipulative subliminal techniques, certain biometric categorization — landed first, on Feb. 2, 2025 1. General-purpose AI model obligations followed six months later, on Aug. 2, 2025, requiring providers to publish technical documentation and respect copyright rules 1. Most other operator duties, including several transparency requirements, arrived at the two-year mark, Aug. 2, 2026 1. High-risk system requirements, the Act's heaviest lift, sat originally near the three-year mark, a deadline the Commission would soon move on its own initiative.

Staggered deadlines gave companies a runway, and gave regulators time to build the machinery meant to enforce a law longer than several national constitutions combined. Brussels used that runway differently for different obligations: voluntary where officials hoped goodwill would suffice, mandatory where the stakes justified a harder line.

Twenty-One Signatures, Two Exceptions

The Commission published its General-Purpose AI Code of Practice on July 10, 2025, a voluntary framework spanning transparency, copyright, and safety and security, overseen by a Signatory Taskforce the AI Office chairs directly 4. Twenty-one companies signed on, including Amazon, Anthropic, Google, IBM, Microsoft, Mistral AI, OpenAI, and a roster of smaller labs such as Aleph Alpha, Cohere, and Fastweb 4. Microsoft framed its participation as continuity rather than concession. Chief Responsible AI Officer Natasha Crampton wrote on the company's EU policy blog that Microsoft planned to build AI Act compliance directly into product development, a post that predates the code's publication by nearly six months 5.

xAI took a narrower path, signing only the code's Safety and Security chapter and leaving transparency and copyright commitments to the side 4. Meta stands apart entirely: its name carries a gap in the AI Office's own signatory roster, a conspicuous absence given the company's scale in the field 4. A voluntary code rewards a company willing to trade paperwork for regulatory goodwill; a holdout wagers instead that litigation, lobbying, or simple delay will prove cheaper than compliance across every jurisdiction where the code might set a global template.

The Omnibus Rewrites the Calendar

Brussels revisited its own timetable on Nov. 19, 2025, when the Commission proposed a Digital Omnibus package carrying a dedicated AI Omnibus provision inside it 3. That provision entered into force July 27, 2026, six days ahead of the Act's next scheduled deadline, and it rewrote the hardest parts of the schedule 3. High-risk AI systems under Annex III — the category covering hiring tools, credit scoring, and similarly consequential decisions — now face compliance duties starting Dec. 2, 2027, more than a year later than industry groups had planned around 3. Physical products carrying embedded high-risk AI, covered under Annex I, gained an even longer runway, to Aug. 2, 2028 3.

Simplification traveled alongside delay. The Omnibus extended SME-style simplified obligations to small mid-cap companies, expanded regulatory sandboxes and introduced a new EU-level sandbox, and streamlined database-registration duties for exempted systems 3. Legislators layered in a fresh prohibition too, barring AI systems built to generate sexual or child-exploitation material made against a subject's consent, and they widened the AI Office's oversight authority over general-purpose models and AI embedded in large online platforms 3. Read as strategy, the Omnibus signals a Commission trading near-term compliance friction for a longer runway on the categories industry lobbied hardest against.

What Aug. 2 Actually Delivered

Obligations that survived the calendar's rewrite proved narrower than the original "high-risk deadline" framing suggested. Interactive AI systems including chatbots gained a duty to disclose their artificial nature to users, a requirement the Commission's July 31 announcement tied directly to reducing manipulation 2. Images, video, and audio edited or generated by AI gained a labeling duty, and AI-generated content broadly gained a requirement for machine-readable marks detectable by automated tools 2. The AI Office, working alongside national authorities in each member state, carries enforcement responsibility for these rules 2.

Penalties attached to the Act carry real weight regardless of which obligations apply on a given date. Violations of Article 5's prohibited practices draw fines up to €35 million or 7% of global annual turnover, whichever runs higher; violations of other operator duties draw up to €15 million or 3%; misleading a regulator draws up to €7.5 million or 1% 1. A single infringement, put plainly, can exceed a year of profit for a mid-sized company, a ceiling high enough to concentrate any general counsel's attention on categories still years from taking effect.

Brussels Builds a Bureaucracy, Labs Build a Desk

Enforcement machinery grew alongside the law it enforces. The AI Office now counts more than 125 staff across six units spanning excellence in AI and robotics, regulation and compliance, AI safety, policy coordination, societal good, and health applications 6. A recruitment drive for roughly 40 additional contractual agents — technology specialists, legal officers, operations specialists, paralegals — carries an application deadline of Sept. 8, 2026, evidence Brussels expects its regulatory workload to keep expanding through the year 6. Executive Vice-President Henna Virkkunen holds the Commission portfolio spanning Tech Sovereignty, Security and Democracy, the seat from which an Apply AI Strategy and a proposed European AI Research Council both originate 7.

Laboratories staffed their own answer to that machinery. Anthropic named Mariano-Florentino (Tino) Cuéllar its first chief global affairs officer on Aug. 4, 2026, a global remit spanning European and international policy that arrived amid separate friction with Washington over export controls and a Pentagon supply-chain designation 8. The appointment reads as an acknowledgment that a single Washington-facing policy chief covers too much territory for a company operating simultaneously under EU obligations, U.S. export rules, and a patchwork of state legislatures. Crampton's blog post, published months before the code itself, reads in hindsight as an early instance of the same instinct: treat Brussels as a standing beat with a permanent budget line, staffed years ahead of the deadline that eventually justifies it.

By the numbers

  • €35 million or 7% of global turnover: the ceiling for Article 5 prohibited-practice violations, whichever runs higher 1.
  • Twenty-one companies signed the Commission's General-Purpose AI Code of Practice as of the AI Office's mid-2026 roster 4.
  • Six months separated the Act's entry into force from its first prohibitions, effective Feb. 2, 2025 1.
  • July 27, 2026, marked the AI Omnibus's entry into force, eight months after its Nov. 19, 2025, proposal 3.
  • December 2027 is the new compliance date for Annex III high-risk systems, a delay from the earlier August 2026 target 3.
  • Over 125 staff already work across the AI Office's six units, with roughly 40 more roles in active recruitment 6.

What to watch

Sept. 8, 2026, closes the AI Office's current hiring window, and the roles it fills will show whether Brussels intends genuine capacity for inspecting general-purpose models or simply enough staff to process paperwork. Annex III's December 2027 deadline gives high-risk system providers roughly fifteen extra months to build conformity assessments, a runway worth tracking through early compliance announcements from health care, hiring, and credit-scoring vendors. Meta's continued gap in the Code of Practice signatory list deserves another look whenever the AI Office refreshes its roster, since a later signature would reverse the company's current posture. Anthropic's Cuéllar hire, paired with Microsoft's years-early Brussels investment through Crampton, points toward a broader pattern worth tracking: dedicated European policy leadership becoming standard among frontier labs rather than an afterthought bolted onto a Washington team.

Sources

  1. Wikipedia contributors, "Artificial Intelligence Act," Wikipedia, retrieved Sept. 4, 2026, https://en.wikipedia.org/wiki/Artificial_Intelligence_Act
  2. European Commission, "Commission Starts Enforcing AI Act Rules and New Transparency Requirements From 2 August," Digital Strategy, July 31, 2026, https://digital-strategy.ec.europa.eu/en/news/commission-starts-enforcing-ai-act-rules-and-new-transparency-requirements-2-august
  3. European Commission, "AI Omnibus Enters Into Force," Digital Strategy, July 27, 2026, https://digital-strategy.ec.europa.eu/en/news/ai-omnibus-enters-force
  4. European Commission, "Code of Practice for General-Purpose AI," Digital Strategy, July 31, 2026, https://digital-strategy.ec.europa.eu/en/policies/contents-code-gpai
  5. Natasha Crampton, "Innovating in Line With the European Union's AI Act," Microsoft EU Policy Blog, Jan. 15, 2025, https://blogs.microsoft.com/eupolicy/
  6. European Commission, "AI Office," Digital Strategy, Aug. 1, 2026, https://digital-strategy.ec.europa.eu/en/policies/ai-office
  7. European Commission, "Henna Virkkunen," College of Commissioners, June 24, 2026, https://commission.europa.eu/about/organisation/college-commissioners/henna-virkkunen_en
  8. CNBC Staff, "Anthropic Names Global Affairs Chief as Trump Tensions Persist," CNBC, Aug. 4, 2026, https://www.cnbc.com/2026/08/04/anthropic-names-global-affairs-chief-as-trump-tensions-persist.html

Cite this piece

AI Lately Desk, "Brussels Sets the Clock," AI Lately, Aug 4, 2026, https://ailately.com/articles/eu-ai-act-august-2026-milestone

Tags: EU AI Act · AI Office · GPAI Code of Practice · Digital Omnibus · European Commission

Related, lately

More →