EU AI Act Timeline: Key Deadlines 2025–2027 for Website Owners

The EU AI Act (Regulation 2024/1689) entered into force on August 1, 2024, but its obligations take effect in stages over three years. Most website owners and small businesses are primarily affected by the August 2, 2026 transparency deadline — but the full timeline matters for planning. This article gives you the complete picture.

Bottom line: For the vast majority of websites — those using chatbots, AI-generated content, or AI images — the only date that matters right now is August 2, 2026. High-risk AI system obligations are separate and apply mainly to regulated sectors and enterprise software, not typical WordPress sites.

Full EU AI Act timeline

1 Aug 2024
Done

EU AI Act enters into force

Regulation 2024/1689 published in the Official Journal. 24-month application clock begins.

2 Feb 2025
Done

Prohibited AI practices apply (Chapter II)

The ban on prohibited AI systems took effect. Includes social scoring, real-time biometric surveillance in public, and subliminal manipulation. This does not affect ordinary websites.

2 Aug 2025
Done

General-purpose AI (GPAI) model obligations apply

Obligations for GPAI model providers (AI model developers like OpenAI, Google, Meta). Deployers — website owners using these models via APIs or plugins — are not directly subject to GPAI obligations.

2 Aug 2026
Upcoming — act now

Article 50 transparency obligations apply — the main deadline for websites

All deployers using AI chatbots or generating synthetic content must comply. Specifically: chatbot disclosure before/at start of conversation; labelling of AI-generated text in public interest contexts; disclosure of deepfake images/audio. This is the critical date for most website owners.

2 Dec 2026
Future

Machine-readable marking for AI-generated content (grandfathering)

Pre-existing generative AI systems (those already on the market before Aug 2026) have until December 2, 2026 to implement machine-readable watermarking/marking. This primarily affects AI tool providers, not deployers using those tools on their websites.

2 Aug 2027
Future

High-risk AI system obligations fully apply (Annex III systems)

The strictest obligations — conformity assessments, technical documentation, human oversight, registration in the EU database — apply to Annex III high-risk AI systems. These include AI used in critical infrastructure, employment decisions, education, law enforcement, and healthcare. Standard websites and chatbots are not high-risk AI systems.

~2027–2028
Future

Digital Omnibus Act amendments — high-risk obligations delayed for some

EU institutions reached a provisional agreement in May 2026 (the "Digital Omnibus") to delay certain high-risk AI obligations — Annex III high-risk applications are deferred to 2 December 2027. The August 2, 2026 Article 50 transparency deadline was explicitly not delayed and remains unchanged.

What this means for your website: a practical filter

What the Digital Omnibus changed (May 2026)

In May 2026, EU institutions reached a provisional agreement (the Digital Omnibus) to amend the AI Act, deferring certain high-risk (Annex III) obligations to 2 December 2027. This remains provisional until formally adopted and published in the Official Journal. The key point for most website owners: Article 50 transparency obligations were not delayed. The August 2, 2026 deadline for chatbot disclosure and AI content labelling stands unchanged.

Your action plan before August 2, 2026

This article is intended for general information purposes only and does not constitute legal advice. For advice specific to your situation, consult a qualified legal professional. Dates reflect the regulation as published and amended as of mid-2026; always verify against the current text of the regulation.