AI Regulation Hub

Track AI regulation.
Worldwide.

The EU AI Act, the Council of Europe AI Convention, and the national laws and sectoral regimes built around them. 50 entries so far. Each guide covers the regulator, the in-force date, the live obligations, and what counts as material risk.

Hover a country. Click to open its entry.

Loading mapโ€ฆ

Comprehensive statuteSectoralDraft & proposedNot yet covered

Coverage

Every regime we cover, by approach

Updated as laws and guidance evolve. We group by how a regime regulates AI โ€” a single horizontal Act, sectoral and existing-law tools, soft-law instruments, or drafts under preparation โ€” so you can see the shape of the rules before the detail.

Comprehensive statutes

12 entries

Horizontal AI laws that apply across sectors โ€” the EU AI Act and the national frameworks built around it.

European Union

Partially in force

The EU AI Act (Regulation (EU) 2024/1689) is a horizontal, risk-based framework that bans unacceptable-risk AI, heavily regulates high-risk AI, and applies transparency and governance duties to lower-risk systems. It is being rolled out in stages between 2024 and 2027.

In force: Phased: 1 Aug 2024 โ†’ 2 Aug 2027
View details

France

Partially in force

France applies the EU AI Act directly. National AI-specific rules sit in French criminal law (mandatory disclosure for AI-generated montages, criminal liability for non-consensual sexual deepfakes) and in CNIL guidance for AI that processes personal data.

In force: EU AI Act applies directly; French criminal-code AI provisions in force since 2024 digital-space law
View details

Germany

Partially in force

Germany applies the EU AI Act directly. A national implementation bill is in preparation to designate competent authorities, give the Bundesnetzagentur an AI-sandbox role, and set procedures for cooperation, supervision and fines.

In force: EU AI Act applies directly from EU phased dates; German implementation law in preparation
View details

Italy

In force

Italy regulates AI through the EU AI Act plus a national framework, Law No. 132 of 23 September 2025. The national law is human-centred, adds sector rules for healthcare, employment, intellectual professions and justice, and amends criminal law for AI-generated content offences.

In force: Law 132/2025 in force October 2025; EU AI Act applies in parallel
View details

Japan

In force

Japan regulates AI through a policy-oriented statutory framework and official business guidance rather than an EU-style high-risk AI Act. The Act on Promotion of Research and Development and Utilization of AI-related Technologies (2025) sets national principles; the AI Guidelines for Business set practical governance expectations.

In force: AI Promotion Act adopted 2025; AI Guidelines for Business
View details

Netherlands

Partially in force

The Netherlands applies the EU AI Act directly. Its national framework focuses on public-sector algorithm transparency (the Government Algorithm Register), GDPR-based AI supervision by the Dutch DPA, and preparation for EU AI Act enforcement.

In force: EU AI Act applies directly; Government Algorithm Register operational
View details

Peru

In force

Peru has a national AI framework: Law No. 31814 and its 2025 implementing regulation (Supreme Decree No. 115-2025-PCM). It classifies AI uses by risk into non-permitted, high-risk and acceptable AI, with concrete duties for public and private operators.

In force: Law 31814 + 2025 implementing regulation (Supreme Decree 115-2025-PCM)
View details

Portugal

Partially in force

Portugal applies the EU AI Act and adds Labour Code rules requiring employers to inform workers and worker representatives about algorithms and AI affecting access to employment, working conditions, profiling or control of professional activity.

In force: EU AI Act applies directly; Labour Code algorithm rules in force
View details

South Korea

Partially in force

South Korea has adopted a comprehensive national AI law โ€” the Framework Act on the Development of Artificial Intelligence and the Creation of a Foundation for Trust โ€” effective from 22 January 2026. It distinguishes ordinary AI from generative AI and high-impact AI, and creates duties for AI providers and business users.

In force: Framework Act effective from 22 January 2026
View details

Spain

Partially in force

Spain applies the EU AI Act through dedicated national infrastructure: AESIA, the Spanish AI supervisory agency, and an AI regulatory sandbox under Royal Decree 817/2023. Spain has published practical compliance guidance based on sandbox work.

In force: AESIA established; sandbox via Royal Decree 817/2023; EU AI Act applies in parallel
View details

Taiwan

In force

Taiwan has adopted an Artificial Intelligence Basic Act creating a legal foundation for AI policy, government use, industrial innovation and responsible AI development. It sets principles and institutional direction rather than an EU-style high-risk compliance code with a single fine table.

In force: AI Basic Act in force
View details

Vietnam

In force

Vietnam has adopted a dedicated Law on Artificial Intelligence (Law No. 134/2025/QH15), issued 10 December 2025 and effective 1 March 2026. It uses a risk-based approach with high-, medium- and lower-risk categories, transparency duties (including deepfake labelling), supervision, and corrective measures.

In force: Issued 10 Dec 2025; effective 1 March 2026
View details

Sectoral & existing-law regimes

28 entries

Jurisdictions regulating AI through existing law: data protection, employment, financial services, healthcare and consumer rules, with regulator-led guidance.

Argentina

In force

Argentina has no comprehensive AI Act. Its framework is built on Recommendations for Reliable AI (Disposition 2/2023), data-protection guidance, transparency initiatives for automated decision systems, and existing laws.

In force: Disposition 2/2023 + DNPDP AI transparency programme
View details

Australia

In force

Australia has no comprehensive AI Act. Its framework combines a Voluntary AI Safety Standard, a mandatory public-sector AI policy, existing privacy / consumer / discrimination laws, and ongoing consultation on mandatory guardrails for high-risk AI.

In force: Voluntary AI Safety Standard + mandatory public-sector AI policy
View details

Canada

In force

Canada has no enacted comprehensive federal AI Act. AIDA (in Bill C-27) did not complete the legislative process. Canada relies on voluntary governance instruments โ€” notably the Voluntary Code of Conduct for advanced generative AI โ€” plus public-sector AI policy and existing laws.

In force: AIDA bill did not pass; voluntary code + sectoral laws apply now
View details

China

In force

China has no single horizontal AI Act. Instead it stacks binding rules on specific AI use cases โ€” public-facing generative AI, algorithmic recommendation, deep synthesis, and AI-generated content labelling โ€” issued mainly by the Cyberspace Administration of China.

In force: Deep synthesis: 10 Jan 2023 ยท Generative AI Interim Measures: 15 Aug 2023
View details

Colombia

In force

Colombia has no horizontal AI Act. Its framework combines CONPES 4144 (National AI Policy, 2025), data protection, sector-specific regulation and targeted AI-related criminal-law treatment (Law 2502/2025).

In force: CONPES 4144 (2025) + Law 2502/2025 + data protection
View details

Egypt

In force

Egypt has no single horizontal AI Act. Its framework combines the National AI Strategy, the Egyptian Charter for Responsible AI (2023), National Guidelines for Trustworthy and Responsible AI, and an AI governance framework โ€” alongside data protection, cybersecurity and sectoral rules.

In force: Egyptian Charter for Responsible AI (2023) + National Guidelines + AI Governance Framework
View details

Greece

In force

Greece applies the EU AI Act alongside Law 4961/2022 on emerging ICT, which adds national rules for public-sector AI (algorithmic impact assessments, registers), workplace AI transparency, and private-sector AI registers for medium and large companies.

In force: Law 4961/2022 (national); EU AI Act applies in parallel
View details

Hong Kong

In force

Hong Kong has no horizontal AI Act. AI governance rests on data protection (PCPD), official privacy guidance, sectoral rules and voluntary AI governance frameworks โ€” notably the PCPD's Artificial Intelligence: Model Personal Data Protection Framework.

In force: PCPD AI Model Personal Data Protection Framework + PDPO
View details

India

In force

India has no horizontal AI Act. Its framework combines AI Governance Guidelines under the IndiaAI Mission with the Information Technology Rules (notably the 2026 amendments on synthetic content), the Digital Personal Data Protection Act, intermediary obligations and sectoral regulation.

In force: AI Governance Guidelines + 2026 IT Rules amendments on synthetic content
View details

Indonesia

In force

Indonesia has no comprehensive AI Act. AI governance combines official ethics guidance (Circular Letter No. 9 of 2023), electronic-system rules, personal-data protection and sectoral regulation.

In force: Circular Letter 9/2023 on AI Ethics + electronic-system rules + PDP Law
View details

Israel

In force

Israel has no horizontal AI Act. Its policy of responsible innovation favours a sector-specific and incremental approach, with soft regulatory tools (guidance, sandboxes, regulator coordination) and existing laws. Israel has also signed the Council of Europe AI Convention.

In force: Israeli AI policy + sectoral law; CoE AI Convention signed
View details

Kenya

In force

Kenya has no comprehensive AI Act. Its framework rests on the National AI Strategy 2025โ€“2030, the Data Protection Act and sectoral rules. The strategy sets direction; binding compliance comes mainly from existing law.

In force: Kenya National AI Strategy 2025โ€“2030 + Data Protection Act + sectoral
View details

Malaysia

In force

Malaysia has no horizontal AI Act. Its framework rests on the National Guidelines on AI Governance and Ethics, the new National AI Office (NAIO), data-protection law and sectoral regulation.

In force: National Guidelines on AI Governance and Ethics + NAIO operational
View details

New Zealand

In force

New Zealand has no comprehensive AI Act. AI is regulated through existing law โ€” especially the Privacy Act 2020 โ€” plus the public-sector Algorithm Charter, consumer, employment, human-rights and sectoral law.

In force: Privacy Act 2020 + Algorithm Charter for participating agencies
View details

Nigeria

In force

Nigeria has no horizontal AI Act. Its framework rests on the National AI Strategy, the Nigeria Data Protection Act (with the 2025 General Application and Implementation Directive), digital-economy policy and sectoral regulation.

In force: National AI Strategy + Nigeria Data Protection Act + 2025 GAID
View details

Philippines

In force

The Philippines has no comprehensive AI Act. AI is regulated mainly through the Data Privacy Act and NPC guidance โ€” notably Advisory No. 2024-04 on the Application of the Data Privacy Act to AI Systems Processing Personal Data โ€” plus sectoral regulation.

In force: NPC Advisory 2024-04 + Data Privacy Act + sectoral law
View details

Qatar

In force

Qatar has no comprehensive AI Act. Its framework combines the National AI Strategy under Qatar National Vision 2030, Principles and Guidelines for Ethical Use of AI, AI guidance for developers, government AI governance, data-protection and cybersecurity rules.

In force: Principles & Guidelines for Ethical Use of AI + National AI Strategy
View details

Rwanda

In force

Rwanda has no AI Act equivalent to the EU AI Act. Its framework is built around the National AI Policy, digital-transformation strategy, data-protection law and sector-specific rules.

In force: National AI Policy + data governance + sectoral law
View details

Saudi Arabia

In force

Saudi Arabia has no comprehensive horizontal AI Act. SDAIA's official AI Ethics Principles, an AI ethics self-assessment service, AI service provider accreditation, regulatory sandboxes and generative AI guidance for government underpin a governance-first approach.

In force: SDAIA AI Ethics Principles + ethics self-assessment + sectoral law
View details

Singapore

In force

Singapore has no comprehensive AI Act. Its governance-based approach centres on the Model AI Governance Framework, a generative AI counterpart, a framework for agentic AI, AI testing tools, the PDPA and sectoral rules โ€” supporting responsible deployment without a broad licensing regime.

In force: Model AI Governance Framework + generative AI framework + agentic AI framework + PDPA
View details

South Africa

In force

South Africa has no enacted AI Act. The draft AI Policy was withdrawn in 2026 with a credible replacement promised. Current AI compliance rests on existing law โ€” especially POPIA โ€” plus consumer, employment, equality, financial, healthcare and sectoral regulation.

In force: Existing law (POPIA + sectoral); draft AI Policy withdrawn 2026
View details

Switzerland

In force

Switzerland has no horizontal AI Act. Existing law applies โ€” especially the Federal Act on Data Protection. Switzerland intends to ratify and implement the Council of Europe AI Convention via targeted sectoral amendments and non-binding measures.

In force: Existing regimes apply now; CoE AI Convention ratification & sectoral amendments planned
View details

Thailand

In force

Thailand has no horizontal AI Act. AI governance rests on the National AI Strategy 2022โ€“2027, official AI Governance Guidelines, an ETDA generative AI guideline for organisations, and the Personal Data Protection Act.

In force: National AI Strategy 2022โ€“2027 + AI Governance Guidelines + Generative AI guideline + PDPA
View details

Tรผrkiye

In force

Tรผrkiye has no horizontal AI Act. AI is regulated through existing personal-data, consumer, employment, cybersecurity, criminal and sectoral laws, supported by KVKK guidance โ€” notably the November 2025 Guide on Generative AI and the Protection of Personal Data.

In force: Existing laws apply; KVKK Generative AI Guide adopted 24 November 2025
View details

United Arab Emirates

In force

The UAE has no horizontal AI Act. Its framework combines the National Strategy for Artificial Intelligence 2031, official AI ethics resources, Digital Dubai guidance, data-protection rules, cybersecurity and sector-specific regulation.

In force: National Strategy for AI 2031 + AI ethics guidance + sectoral law
View details

United Kingdom

In force

The UK has no horizontal AI Act. It uses a regulator-led, sector-based framework built on five cross-sector principles (safety, transparency, fairness, accountability, contestability), enforced through existing data-protection, financial, healthcare, consumer, online-safety, competition and equality regulators.

In force: Existing regulators apply now; AI Convention signed; future healthcare-AI framework in development
View details

United States

In force

The US has no comprehensive federal AI Act. Rules are split across federal policy (NIST AI RMF), sectoral federal law, state AI statutes (Colorado, California SB 53), local AI laws (NYC AEDT), agency enforcement and voluntary standards.

In force: Patchwork: NYC AEDT (5 Jul 2023) ยท California SB 53 ยท Colorado AI Act applies 1 Jan 2027
View details

Uruguay

In force

Uruguay has no horizontal AI Act. Its framework rests on the National AI Strategy 2024โ€“2030, digital-government AI policy, data protection and sectoral regulation.

In force: National AI Strategy 2024โ€“2030 + digital-government AI strategy
View details

Soft-law & guidance

5 entries

Treaties, declarations and guidance that bind the future shape of AI law without one direct fine table for companies today.

ASEAN AI Governance

In force

ASEAN has no binding regional AI Act. The ASEAN Guide on AI Governance and Ethics (and a generative AI counterpart) provides voluntary regional guidance for organisations designing, developing and deploying AI in commercial and non-military contexts across Southeast Asia.

In force: ASEAN Guide on AI Governance and Ethics + ASEAN Generative AI Guide
View details

African Union AI Strategy

In force

The African Union endorsed a Continental Artificial Intelligence Strategy in 2024. It is an Africa-wide policy framework for AI development, governance and responsible use โ€” an important regional reference for future national AI laws across AU Member States.

In force: Endorsed 2024
View details

Council of Europe AI Convention

Partially in force

The Council of Europe Framework Convention on AI and Human Rights, Democracy and the Rule of Law is the first legally binding international AI treaty. It binds signatory states (not companies directly) to ensure that AI lifecycle activities respect human rights, democracy and the rule of law.

Regulator: Council of EuropeIn force: Opened for signature: 5 Sept 2024 (entry into force depends on ratifications)
View details

OECD AI Principles

In force

The OECD AI Principles are the first intergovernmental standard on AI, first adopted in 2019 and updated in 2024. They promote trustworthy AI and responsible stewardship through values-based principles and policy recommendations โ€” widely referenced by national AI frameworks.

Regulator: Organisation for Economic Co-operation and DevelopmentIn force: Adopted 2019; updated 2024
View details

UNESCO Recommendation on the Ethics of AI

In force

UNESCO's Recommendation on the Ethics of AI was adopted in 2021 and is described as the first global standard on AI ethics. It applies to UNESCO Member States and focuses on human rights, dignity, fairness, transparency, human oversight, accountability, privacy, non-discrimination and social responsibility.

Regulator: United Nations Educational, Scientific and Cultural OrganizationIn force: Adopted 2021
View details

Draft & proposed

5 entries

Frameworks under preparation. Tracked so teams can plan before binding rules land.

Brazil

Draft

Brazil has no fully enacted horizontal AI law. PL 2338/2023 has advanced through the Senate but still needs Chamber approval. Current AI compliance is based on existing laws โ€” notably the LGPD for personal data.

In force: PL 2338/2023 in progress (Senate-approved; Chamber approval pending)
View details

Chile

Draft

Chile has no enacted comprehensive AI Act. A bill to regulate AI systems (Boletรญn 16821-19, introduced 2024) is proceeding through Congress. The national AI policy gives strategic direction; current compliance rests on existing law.

In force: Bill Boletรญn 16821-19 in legislative process; existing law applies
View details

EEA EFTA (Norway, Iceland, Liechtenstein)

Proposed

Norway, Iceland and Liechtenstein participate in the EEA. The EU AI Act has been marked as EEA-relevant and is under EFTA scrutiny, with a draft Joint Committee Decision pending. Until incorporation, AI compliance rests on existing national laws and sectoral guidance โ€” and on the active Norwegian Datatilsynet sandbox.

In force: EU AI Act under EEA scrutiny; draft Joint Committee Decision pending incorporation
View details

Mexico

Draft

Mexico has no enacted comprehensive AI Act. The Senate has been working on initiatives to regulate and promote AI; existing personal-data, consumer, sectoral and criminal law govern current compliance.

In force: Senate AI initiatives under development; existing law applies
View details

Ukraine

Proposed

Ukraine has no horizontal AI law. Its bottom-up approach (per the 2024 White Paper) starts with voluntary commitments, codes of conduct, sandbox preparation and sectoral guidance, with a future Ukrainian AI law analogous to the EU AI Act planned in stages between 2023 and 2026.

In force: White Paper 2024; Ukrainian AI law analogous to EU AI Act planned for 2023โ€“2026
View details

Ready to launch legally?

Book a 30-minute consultation. We'll map your licensing path and tell you exactly what's required, in plain language.