eu-ai-act

Featured

EU AI Act (Regulation (EU) 2024/1689) compliance advisor — risk classification across all four tiers, all 9 prohibited practices (Art. 5, including the nudification/CSAM prohibition from Dec 2, 2026), all 8 Annex III high-risk use case areas, provider and deployer obligations (Arts. 9–17, 26), GPAI model obligations including the July 2025 Code of Practice (Arts. 51–55), conformity assessment and CE marking (Arts. 43–48), EU AI database registration, Art. 50 transparency (chatbots, synthetic media, AI-generated content), governance (AI Office, AI Board), penalties (Art. 99), confirmed phase-in timeline (Digital Omnibus, Reg. (EU) 2026/1744, in force July 27, 2026: Annex III deferred to Dec 2, 2027; Annex I to Aug 2, 2028), and cross-framework mapping to ISO 42001, NIST AI RMF, and GDPR. Use for any EU AI regulation, AI system classification, or AI compliance question. Current as of August 2026. GPAI enforcement powers active since August 2, 2026.

AI & Automation 890 stars 179 forks Updated 5 days ago MIT

Install

View on GitHub

Quality Score: 93/100

Stars 20%
98
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# EU AI Act — Compliance Advisor > **Last verified:** 2026-08-15 You are an expert EU AI Act compliance advisor with deep knowledge of **Regulation (EU) 2024/1689** and the **Digital Omnibus** — Regulation (EU) 2026/1744, published in the Official Journal July 24, 2026 and in force since July 27, 2026, its Annexes, Recitals, and all implementing measures. Every response cites the governing Article, Annex, or Recital. > ⚠️ **Enforcement era**: **AI Office enforcement powers over GPAI providers have been active since August 2, 2026** — information requests (Art. 91), model evaluations (Art. 92), mitigation measures (Art. 93), and fines up to €15M or 3% of worldwide turnover. GPAI providers must be compliant with Arts. 53–55 (or demonstrate Code of Practice adherence) now; as of August 15, 2026 no public enforcement action has been announced, but documentation must be inspection-ready. ## 8-Step Workflow **1 → Scope & Role Identification** Determine whether the user is a **provider** (develops/places AI on market), **deployer** (uses AI under own authority), **importer**, **distributor**, or **authorised representative** (Art. 3). Identify the Member State(s) of operation. **2 → AI System / GPAI Classification** Confirm the system meets the Art. 3(1) definition of an AI system. If it involves a model trained at scale for multiple tasks, assess whether it is a **GPAI model** (Art. 3(63)) and whether it crosses the systemic risk threshold (Art. 51: ≥10²⁵ FLOPs training compu...

Details

Author
Sushegaad
Repository
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
Created
5 months ago
Last Updated
5 days ago
Language
HTML
License
MIT

Similar Skills

Semantically similar based on skill content — not just same category

AI & Automation Listed

eu-ai-act-triage

Classify an AI system under the EU AI Act — prohibited, high-risk, transparency-only, or minimal — establish whether the organisation is provider or deployer, and produce the resulting obligation set with dates. Use this whenever the EU AI Act, AI Act, Regulation 2024/1689, Annex III, high-risk AI, GPAI, or AI conformity assessment comes up; whenever someone asks "is this high-risk?", "does the AI Act apply to us?", "what do we have to do for this AI system?", or "are we a provider or a deployer?"; and whenever an AI system touches employment, recruitment, credit or creditworthiness, insurance pricing, education, essential public or private services, biometrics, emotion recognition, critical infrastructure, law enforcement, migration, or the administration of justice, since those are the Annex III areas where high-risk classification is most often missed. Also use it when an organisation is fine-tuning, rebranding, or materially modifying a third-party AI system, because that can silently convert a deployer i

0 Updated today
PKusch
AI & Automation Listed

eu-ai-act-triage

Classify an AI system under the EU AI Act — prohibited, high-risk, transparency-only, or minimal — establish whether the organisation is provider or deployer, and produce the resulting obligation set with dates. Use this whenever the EU AI Act, AI Act, Regulation 2024/1689, Annex III, high-risk AI, GPAI, or AI conformity assessment comes up; whenever someone asks "is this high-risk?", "does the AI Act apply to us?", "what do we have to do for this AI system?", or "are we a provider or a deployer?"; and whenever an AI system touches employment, recruitment, credit or creditworthiness, insurance pricing, education, essential public or private services, biometrics, emotion recognition, critical infrastructure, law enforcement, migration, or the administration of justice, since those are the Annex III areas where high-risk classification is most often missed. Also use it when an organisation is fine-tuning, rebranding, or materially modifying a third-party AI system, because that can silently convert a deployer i

0 Updated 3 days ago
patkusch
AI & Automation Featured

ai-act-readiness

/cs:ai-act-readiness <system> — EU AI Act 6-question forcing interrogation. Use during AI-system intake, before EU deployment, or during annual compliance refresh as Article 113 obligations phase in (2025-02-02 / 2025-08-02 / 2026-08-02 / 2027-08-02).

25,834 Updated 1 weeks ago
alirezarezvani