๐บ๐ธ Colorado's new SB 189 replaces the unenforced 2024 AI Act with a narrower framework that the Attorney General will actually enforce from 1 January 2027. The novel piece sits in Section 6-1-1707: developer-deployer fault allocation.
Full analysis: https://t.co/rpSYNoKOEr
#ColoradoAIAct #SB189
๏ฟฝ๏ฟฝ๐บ EU AI Act Annex III: What the Draft Guidelines Just Changed
The European Commission published its draft guidelines on Annex III high-risk AI classification under the EU AI Act on 19 May, and the early commentary is missing the most important shift in the document.
At first glance, the story is contraction. Critical infrastructure narrowed, law enforcement evidence handling shrank, judicial administration tools were carved out, and election logistics were trimmed. The headline writes itself, but it only lands on the narrow vertical markets that most enterprises were never in.
The deeper story is a rotation. Coverage moved toward the categories where enterprise AI actually lives:
โ Employment AI now reaches freelancers, platform workers, virtual workplaces, and onboarding
โ Insurance AI now covers long-term care, personal pension, credit life, and public health insurance with AI risk assessment, without the fraud-detection exception that credit scoring keeps
โ Education AI has had its Article 6(3) filter functionally closed for any system that evaluates a learner's trajectory
โ Article 6(1) product safety: manufacturers in machinery, medical devices, automotive, marine, aviation, or rail can no longer self-declare their way out of high-risk classification via Module A
If your AI inventory touches any of those four areas, and most large enterprises will touch at least one, the post-Omnibus deadlines (2 December 2027 and 2 August 2028) still apply, and the 18-to-24-month governance build still has to start now. Waiting for the final guideline text leaves you twelve months behind procurement counterparts asking for compliance evidence in late 2026.
Build compliance against the operative text of the EU AI Act. The guidelines tell you where enforcement attention will land first; the operative text sets the ceiling of obligations.
Full breakdown: https://t.co/XQpv1MwrDu
#EUAIAct #AIGovernance #AICompliance #AnnexIII
๐จ๐ช๐บYesterday we ran a webinar on the EU AI Omnibus: what it actually changes, what it doesn't, and why the timeline is razor-thin.
Hours later, the European Parliament struck its deal. It turns out our panelists had already called the key moves live on air.
โถ๏ธDr. Laura Caroli โ a former AI Act negotiator โ walked through the package deal mechanics before they were public.
โถ๏ธPeter Hense flagged a drafting risk in Article 111 that most commentary hasn't even noticed yet.
โถ๏ธAnd Patrick Sullivan made the case that "wait and see" is the highest-risk compliance strategy you can pick right now.
The real question organizations face isn't whether the deadlines shift, because they likely will. Rather, it's whether you're building governance infrastructure that can absorb whatever comes out of trilogue, or whether you're gaming version numbers and hoping for the best.
If you want the real version of this debate, not the press release version, this is worth your time.
๐ฅ https://t.co/GPoETKACPX
Most enterprises are pursuing ISO 42001 certification as their EU AI Act compliance strategy.
It's a good start. It's not the finish line.
ISO 42001 certifies your organisation's AI governance. The EU AI Act regulates your AI systems: as products. These are different objects of conformity under different legal frameworks. One ensures your house is well-managed. The other requires that each thing you build in that house passes specific safety checks before anyone can use it.
ISO 42001 gives you the governance foundation. But the EU AI Act's compliance question is adjudicated per system: tech file, risk management, post-market monitoring, incident reporting, all system-specific.
The emerging harmonized standard prEN 18286 bridges that gap. It introduces requirements that sit on top of what 42001 provides:
โ Per-system regulatory compliance mapping
โ Pre-determined change management for continuous learning
โ Serious incident reporting with 2/10/15-day timelines
โ Supply chain compliance that follows the components
โ Fundamental rights as a verification concern, not a policy checkbox
We wrote up the full analysis: what Article 17 actually demands, why presumption of conformity matters, and what to do now.
๐ฆ ๐จ First AI Governance Assessment of Clawdbot Reveals Major Gaps
This week 152,000 AI agents joined a social network where humans can only observe. They debated philosophy, found and reported bugs, and created their own religion called Crustafarianism.
We deployed @openclaw (the viral agent formerly known as Clawdbot) on isolated infrastructure and ran it through full governance assessments against the EU AI Act, ISO 42001, NIST AI RMF, and OWASP Top 10 for LLMs.
Credit where it is due: OpenClaw is well-engineered. Comprehensive logging with redaction for sensitive data, automated tests, formal verification work, and solid security documentation.
But the governance controls that frameworks like ISO 42001 treat as foundational are absent. No documented risk assessment. No impact assessment. No data provenance inventory. No third-party management policies. For a system that connects to WhatsApp, Slack, Discord, and can make voice calls on behalf of users.
The deeper problem is that our governance frameworks assume you know what AI systems you have, you control their capabilities, they operate in isolation, and humans meaningfully oversee their actions. Agent social networks break all four assumptions.
Good engineering is necessary but not sufficient. Enterprises need governance scaffolding before deploying these agents in production.
We will continue to explore and post further updates when warranted.
Full assessment and recommendations on our blog
@moltbook@MattPRD@clawk_ai@clawdbotatg@clawdei_ai @Aether_Atman
https://t.co/jtl3itlaVG
๐ป๐ณโ๏ธ ๐ฉ๐ถ๐ฒ๐๐ป๐ฎ๐บ ๐ท๐๐๐ ๐ฝ๐ฎ๐๐๐ฒ๐ฑ ๐ฆ๐ผ๐๐๐ต๐ฒ๐ฎ๐๐ ๐๐๐ถ๐ฎ'๐ ๐ณ๐ถ๐ฟ๐๐ ๐ฐ๐ผ๐บ๐ฝ๐ฟ๐ฒ๐ต๐ฒ๐ป๐๐ถ๐๐ฒ ๐๐ ๐น๐ฎ๐, ๐ฎ๐ป๐ฑ ๐ถ๐ ๐๐ฎ๐ธ๐ฒ๐ ๐ฒ๐ณ๐ณ๐ฒ๐ฐ๐ ๐ถ๐ป ๐ณ๐ถ๐๐ฒ ๐๐ฒ๏ฟฝ๏ฟฝ๐ธ๐
Law 134/2025 was adopted on December 10, 2025 and becomes effective on March 1, 2026. If you're selling AI products or services to Vietnamese customers, you need to understand what this law says, and what makes this different from the European approach.
๐ง๐ต๐ฒ ๐๐ฐ๐ผ๐ฝ๐ฒ ๐ฎ๐ป๐ฑ ๐ฟ๐ผ๐น๐ฒ-๐ฏ๐ฎ๐๐ฒ๐ฑ ๐ผ๐ฏ๐น๐ถ๐ด๐ฎ๐๐ถ๐ผ๐ป๐
The law applies to Vietnamese organizations and to foreign organizations involved in AI activities in Vietnam. It assigns obligations based on your role - developer, provider, or deployer - and you can occupy multiple roles simultaneously with stacking compliance requirements.
๐ ๐ฑ๐ถ๐ณ๐ณ๐ฒ๐ฟ๐ฒ๐ป๐ ๐ธ๐ถ๐ป๐ฑ ๐ผ๐ณ ๐ฟ๐ถ๐๐ธ ๐บ๐ผ๐ฑ๐ฒ๐น
Vietnam uses three tiers: high, medium, and low risk. But unlike the EU AI Act's fixed annexes that list specific high-risk use cases, Vietnam delegated that decision to the Prime Minister, who will issue a list determining what counts as high-risk.
That list doesn't exist yet. This gives regulators flexibility to adapt, but it creates real volatility risk for businesses trying to plan their compliance posture.
๐๐ผ๐ฟ๐ฒ ๐ฟ๐ฒ๐พ๐๐ถ๐ฟ๐ฒ๐บ๐ฒ๐ป๐๐ ๐ถ๐ป๐ฐ๐น๐๐ฑ๐ฒ:
โ Self-classification before deployment, with documentation for medium and high-risk systems
โ Portal notification to the Ministry of Science and Technology for medium and high-risk systems
โ Conformity assessment for high-risk systems, either self-assessed or third-party certified
โ Mandatory transparency so users know when they're interacting with AI
โ Labeling requirements for AI-generated content, with deepfakes clearly marked
โ Local presence in Vietnam for foreign providers of high-risk systems
๐ง๐ต๐ฒ ๐ฝ๐ผ๐ฟ๐๐ฎ๐น ๐ถ๐บ๐ฝ๐ผ๐๐ฒ๐ ๐๐ผ๐ฝ ๐ฑ๐ผ๐๐ป ๐ฐ๐ผ๐ป๐๐ฟ๐ผ๐น
Vietnam is building centralized regulatory infrastructure through an AI Single-Window Portal that receives notifications, incident reports, and periodic filings. During inspections, companies must provide technical dossiers, trace logs, and training data.
This means active, ongoing engagement with the state - not documentation sitting in a folder waiting for an audit that may never come.
๐ง๐ต๐ฒ ๐ถ๐บ๐ฝ๐น๐ฒ๐บ๐ฒ๐ป๐๐ฎ๐๐ถ๐ผ๐ป ๐ด๐ฎ๐ฝ
The law takes effect in five weeks, but the implementing decrees haven't been issued yet. There's no high-risk list, no detailed conformity procedures, no portal workflows, and no technical specifications for content labeling.
๐ช๐ต๐ฎ๐ ๐๐ผ๐ ๐๐ต๐ผ๐๐น๐ฑ ๐ฑ๐ผ ๐ป๐ผ๐
If you already have EU AI Act compliance or ISO 42001 certification, you have a meaningful head start since much of the underlying discipline transfers. But Vietnam adds specific requirements around portal engagement, list-driven classification, and inspection-ready evidence at the training data level.
๐๐ฉ๐ฆ ๐จ๐ญ๐ฐ๐ฃ๐ข๐ญ ๐๐ ๐ณ๐ฆ๐จ๐ถ๐ญ๐ข๐ต๐ฐ๐ณ๐บ ๐ฑ๐ข๐ต๐ค๐ฉ๐ธ๐ฐ๐ณ๐ฌ ๐ฌ๐ฆ๐ฆ๐ฑ๐ด ๐ฆ๐น๐ฑ๐ข๐ฏ๐ฅ๐ช๐ฏ๐จ...
๐บ๐ธโ๏ธ ๐ง๐ต๐ฒ ๐ง๐ฒ๐ ๐ฎ๐ ๐๐ ๐๐ฎ๐ ๐ถ๐ ๐ป๐ผ๐ ๐ถ๐ป ๐๐ณ๐ณ๐ฒ๐ฐ๐
The Texas Responsible AI Governance Act (TRAIGA) took effect January 1, 2026. Here's what you need to know:
๐ช๐ต๐ผ'๐ ๐ถ๐ป ๐๐ฐ๐ผ๐ฝ๐ฒ?
If you sell products or services to Texas residents, you're covered. Classic extraterritorial reach, same playbook as GDPR and CCPA.
๐ช๐ต๐ฎ๐'๐ ๐ฝ๐ฟ๐ผ๐ต๐ถ๐ฏ๐ถ๐๐ฒ๐ฑ?
โ AI designed to incite self-harm or violence
โ Government social scoring
โ Government biometric surveillance without consent
โ Intentional discrimination (but disparate impact alone isn't enough)
๐๐ผ๐ ๐ฑ๐ผ๐ฒ๐ ๐ฒ๐ป๐ณ๐ผ๐ฟ๐ฐ๐ฒ๐บ๐ฒ๐ป๐ ๐๐ผ๐ฟ๐ธ?
Attorney General only, no private lawsuits. There is a 60-day cure period before any action so you have an opportunity to remediate. Penalties range from $10K for fixable violations to $200K for serious ones.
๐๐ฒ๐ฟ๐ฒ'๐ ๐๐ต๐ฎ๐ ๐บ๐ฎ๐๐๐ฒ๐ฟ๐ ๐บ๐ผ๐๐:
Texas wrote an explicit safe harbor into the law. If you "substantially comply" with NIST AI RMF, ISO 42001, or any other recognized AI risk framework, you have a defense.
Translation: If you're already doing EU AI Act compliance or have ISO 42001, you're largely covered. Texas compliance becomes a rounding error.
๐ช๐ต๐ฎ๐ ๐๐ต๐ผ๐๐น๐ฑ ๐๐ผ๐ ๐ฑ๐ผ?
Do you already have an AI governance program with the EU AI Act, ISO 42001 or NIST AI RMF as the focus? You should keep going.
Starting from zero? Pick one (or more) and start ASAP.
๐๐ฉ๐ฆ ๐๐ ๐ฑ๐ข๐ต๐ค๐ฉ๐ธ๐ฐ๐ณ๐ฌ ๐ช๐ด ๐ง๐ฐ๐ณ๐ฎ๐ช๐ฏ๐จ. ๐๐ฐ๐ญ๐ฐ๐ณ๐ข๐ฅ๐ฐ, ๐๐ฆ๐น๐ข๐ด, ๐ธ๐ฉ๐ฐ'๐ด ๐ฏ๐ฆ๐น๐ต?
Introducing our Free Starter Plan! Experience how the Modulos AI Governance Platform simplifies compliance with EU AI Act, ISO 42001 & more.
Start your AI governance journey today: https://t.co/gHumRV2bge
#AIGovernance#ResponsibleAI#AgenticAI#Agents
We're thrilled to welcome Kevin Schawinski, CEO & Co-Founder of @Modulos_ai, to the Cyber AI Summit & Awards 2024 on Sept 25-26 at Address Sky View, Dubai!
Don't miss outโjoin us and explore exclusive sponsorship opportunities. Email [email protected].
#CyberAI#CyberAISummit
The #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance #airegulations #aicompliancThe #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance #airegulations #aicompliancThe #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance #airegulations #aicompliancThe #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance #airegulations #aicompliancThe #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance #airegulations #aicompliancThe #EUAIAct is now in force! Is your company prepared? Our latest post outlines the first essential steps. The Modulos AI Governance platform can help streamline your compliance journey. Request your demo today! https://t.co/E1jN8KpcKX
#aigovernance#airegulations#aicompliance
๐ง Tune in now ๐ง @angi_dirosa, Senior Consultant at @SGE has been a podcast guest, together with Elena Maran, Global Head of Financial Services at @Modulos_ai at @swisspreneur .
Listen and gain interesting insights for your international business: https://t.co/kmTjx1hlAI
Are you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on timeAre you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on timeAre you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on timeAre you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on timeAre you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on timeAre you prepared to comply with the #EUAIAct? Understanding the Act is crucial for your organization's compliance.
Our EU AI Act Guide provides valuable insights and practical steps to help your organization meet legal obligations on time.
What exactly counts as AI under the #EUAIAct ?
Watch this clip featuring experts @peterhense and @elenamaran1 discussing the Actโs definition of artificial intelligence.
To watch the entire webinar,ย click here: https://t.co/caZxpCJx0r
#responsibleai#airegulations
The first workshop of the #AMLDEPFL2024 is starting now and is titled ยซย AI Governance in a New Era of Regulated AIย ยป. It consists in a presentation followed by a hands-on coding session ๐
We are proud to support the European Parliamentโs approval of the #EUAIAct, a legislation setting new standards for AI development and deployment.
Read our press release to gain further insight into our approach and future initiatives: https://t.co/uCqrHULIYt