On August 2, 2026, the European Commission (EC), acting through its European AI Office (EU AI Office), became formally entitled to exercise its powers to investigate and enforce the EU AI Act obligations imposed on providers of general-purpose artificial intelligence (GPAI) models, as well as rules on prohibited AI practices. These powers are significant and include requesting information and documentation, obtaining access to models for evaluation, requiring corrective or risk-mitigation measures, and imposing fines of up to the higher of €15 million or 3 percent of the provider’s worldwide annual turnover.
Additionally, businesses providing or deploying certain AI systems are now required to comply with new transparency requirements under Article 50 of the EU AI Act. Those AI systems are required to disclose to users when they are interacting with AI and include provenance signals (e.g., watermarks or metadata) to flag when content has been generated or altered by them.
The recently adopted AI Omnibus postponed the EU AI Act’s principal requirements for high-risk AI systems but does not affect these August 2, 2026, developments.
EU AI Office Enforcement Powers Take Effect
The substantive obligations for providers of GPAI models placed on the market on or after August 2, 2025, have been applicable since that date, although the EU AI Office lacked the powers to enforce these requirements. Providers of models placed on the market before then generally have until August 2, 2027, to comply.
Over the past year, the EU AI Office has focused on supporting implementation, receiving information from providers, and conducting technical compliance dialogues. As of August 2, 2026, the substantive obligations for GPAI providers are backed by the EU AI Office’s formal investigative and enforcement powers.
It is difficult to predict how the EU AI Office will use its enforcement powers, but several European bodies—including the European Data Protection Board and the EU Agency for Fundamental Rights—have advocated for strong and effective enforcement of AI rules. At the same time, in a recently published FAQ, the EU AI Office described “technical compliance dialogues” as its preferred initial tool for assessing compliance and clarifying questions. According to the EU AI Office, those dialogues will continue, and may intensify, after August 2, 2026. Where technical compliance dialogues do not adequately resolve its concerns, the EU AI Office may turn to exercising its formal powers.
Among its enforcement powers, the EU AI Office may:
Considering the transitional period for GPAI models placed on the market before August 2, 2025, providers should confirm which models are currently subject to the requirements and to EU AI Office enforcement, and document the basis for their analysis.
New Transparency Requirements Start to Apply
In addition, as of August 2, 2026, businesses must comply with the following transparency requirements:
The EC recently published final guidelines on the scope and application of these requirements. It has also endorsed a voluntary Code of Practice on Transparency of AI-Generated Content (the Code) as an adequate means of supporting compliance with the marking and labeling obligations (see our client alert for more information). Businesses that do not adhere to the Code may use alternative measures but should be able to explain and document how those measures comply with Article 50.
The AI Omnibus provides a limited transition period for the machine-readable marking requirement under Article 50(2). Providers of systems that generate synthetic audio, image, video, or text content and were placed on the market before August 2, 2026, have until December 2, 2026, to comply with that requirement. The transition does not extend to the other Article 50 transparency requirements.
Next Steps
Given these developments, businesses should consider:
For more information or if you have any questions regarding the EU AI Act, please contact Cédric Burton, Laura De Boel, Yann Padova, or Nikolaos Theodorakis from Wilson Sonsini’s Data, Privacy, and Cybersecurity practice.
Wilson Sonsini’s AI Working Group assists clients with AI-related matters. Please contact Laura De Boel, Maneesha Mithal, Manja Sachet, or Scott McKinney for more information.
Roberto Yunquera Sehwani, Karol Piwonski, and Yaron Moszynski contributed to the preparation of this alert.