EU AI Act Omnibus Agreed: More Time, Limited Substantive Change
Summary
The Council of the EU and the European Parliament have agreed on amendments to the EU AI Act, primarily introducing delays to compliance obligations rather than substantive changes. Compliance for stand-alone high-risk AI systems, including those in employment, biometrics, and critical infrastructure, is now due by December 2, 2027, extended from August 2026. High-risk AI systems embedded in regulated products like medical devices will face requirements from August 2, 2028. Other changes include a December 2, 2026, deadline for providers of synthetic content to ensure machine-readable marking and a new prohibition on AI systems generating non-consensual sexual content or child sexual abuse material, also effective December 2, 2026. The agreement also allows processing special category personal data for bias detection with safeguards, softens AI literacy obligations, and extends exemptions for SMEs to small mid-cap companies. This omnibus proposal primarily grants businesses more preparation time.
Key takeaway
For legal professionals advising on AI compliance, the EU AI Act's omnibus agreement provides crucial deadline extensions, not a substantive overhaul. You should update your organization's compliance roadmap to reflect the new December 2, 2027, deadline for high-risk systems and December 2, 2026, for transparency and new prohibitions. Use this additional time to refine governance frameworks and integrate the new prohibition on non-consensual sexual content into risk assessments.
Key insights
The EU AI Act's recent amendments primarily extend compliance deadlines, offering businesses more preparation time without major substantive changes.
Principles
- Regulatory compliance often involves phased implementation.
- Simplification packages can extend preparation timelines.
- Data processing for bias detection requires safeguards.
In practice
- Update AI policies for new prohibited content.
- Refresh AI Act implementation trackers with new deadlines.
Topics
- EU AI Act
- AI Regulation
- Compliance Deadlines
- High-Risk AI Systems
- Synthetic Content
- Data Governance
Best for: CTO, VP of Engineering/Data, Executive, Legal Professional, Consultant, Director of AI/ML
Related on AIssential
See Counsel's argued verdicts on the open AI decisions leaders are weighing →
Editorial summary, takeaway, and curation by AIssential. Original article published by Debevoise Data Blog.