The EU AI Act (Regulation 2024/1689) tiers AI systems by risk and places substantial obligations on high-risk systems, including data governance, record-keeping, human oversight, transparency, and conformity assessment, with obligations phasing in on a staggered timeline: transparency duties arrived in August 2026, while the 2026 Digital Omnibus deferred the main high-risk deadlines to December 2027 for stand-alone Annex III systems and August 2028 for AI embedded in Annex I regulated products.
These obligations map almost directly onto DIG. Record-keeping and human oversight are Decision Traceability; data-governance duties are Information Provenance; logging and conformity are Audit Readiness; transparency duties touch Representation Integrity. An organization running DIG is building the evidence the Act asks for.
For companies with EU exposure, DIG turns the Act's requirements from a checklist into a standing discipline.
References
- NIST AI Risk Management Framework (AI RMF 1.0): Govern, Map, Measure, Manage. National Institute of Standards and Technology, 2023. View source ↗
- Information governance: the records and data lifecycle discipline (storage, retention, disposition), distinct from AI decision governance. ARMA International, Generally Accepted Recordkeeping Principles; AIIM. View source ↗
- EU AI Act, Regulation (EU) 2024/1689 (Official Journal of the European Union); ISO/IEC 42001:2023; Texas Responsible AI Governance Act (TRAIGA). View source ↗
- USPTO Trademark Reg. No. 8147558 (Supplemental Register), Digital Information Governance / DIG, owner Matthew Bertram. View source ↗
Cite this page
Bertram, M. (2026). The EU AI Act. Digital Information Governance® (DIG), Framework v1.1. https://digitalinformationgovernance.com/regulations/eu-ai-act
@misc{dig-regulations-eu-ai-act,
author = {Bertram, Matthew},
title = {The EU AI Act},
year = {2026},
howpublished = {Digital Information Governance (DIG), Framework v1.1},
url = {https://digitalinformationgovernance.com/regulations/eu-ai-act}
}