Google automatically activates AI functions to collect data from Gmail and search services—a practice that Google’s own Gemini chatbot describes as “privacy-violating opt-out fatigue.”
The open model ecosystem is fragmenting into specialized manufacturers, sovereign AI providers and product companies with distinct licenses and motivations — creating procurement and compliance complexity for CDOs while weakening central control.
Claude is increasingly being deployed for agentic tasks rather than pure conversations, revealing new data evaluation methods and more differentiated usage patterns.
The proposed U.S. federal law makes reporting of severe AI security incidents a legal requirement with a seven-day deadline and penalties up to $2 million per violation.
The “AI Incident Reporting Act” draft makes reporting of critical AI incidents a legal obligation instead of voluntary practice, with penalties of up to two million dollars.
Giotto.ai and KPS combine AI technology with SAP integration to offer enterprises AI infrastructure that can be operated without external cloud providers.
Companies are liable for errors in their AI systems just as they are for errors by employees—a rule that prevents AI deployment from being misused to evade liability for erroneous outputs.
Saxony expands police powers to include AI-powered suspect search and facial recognition, requiring CDOs to intensify data protection monitoring and compliance for biometric data processing.
A British predictive policing model comprising at least 23 AI models showed no reliable results, highlighting the practical and regulatory limits of predictive policing.