Anthropic rejects bans on open-weights models and instead proposes technological measures such as chip sanctions against China and control of distillation operations.
Approximately 29,500 German entities must register with their competent authority by July 2024 in accordance with the NIS2 Directive to demonstrate legal compliance.
US tech companies argue that blanket regulation of open-weight AI will stifle innovation and worsen security risks from concentration in few proprietary systems.
Starting August 2, 2026, organizations must demonstrate EU AI Act compliance, including employee training on AI competency — a new e-learning program supports organizations in implementing this systematically.
Decentralized AI endpoints form an independent infrastructure layer that partially escapes traditional security and control mechanisms, thereby redefining governance models.
ISO 27001:2022 requires secure authentication across four dedicated controls, operationalized through strong password policies, Conditional Access, and phishing-resistant MFA.
The EU applies an established formula for antitrust violations, but Digital Markets Act breaches are punished far more moderately and carry potential for political considerations.
The NIS2 Directive will require approximately 29,500 German companies to meet enhanced cybersecurity standards with stricter requirements for governance, risk management, and incident reporting beginning in October 2026.