Live intelligence page — updated automatically every morning by Di1’s agentic AI research pipeline. This information is provided without warranty and for educational purposes only. Last updated: August 10, 2026 at 06:19.
⏳ Compliance Countdown
| 21 days | Federal CIO/Chief AI Officer Greg Barbaccia departs OMB (2026-08-31) — Barbaccia's departure from his dual Federal CIO and Chief AI Officer role at OMB takes effect August 31, 2026, creating a leadership gap in federal AI governance execution (CAISI review process, AI cybersecurity clearinghouse). source |
| 22 days | CISA Final Cyber Incident and Ransom Payment Reporting Rule (CIRCIA) (2026-09-01) — CISA plans to finalize a rule requiring critical infrastructure entities to report substantial cyber incidents and ransom payments, targeted for release by September 2026. source |
| 32 days | EU Cyber Resilience Act — Reporting Requirements Begin (2026-09-11) — Covered US companies placing hardware/software 'with digital elements' on the EU market must begin complying with CRA incident/vulnerability reporting requirements; a further compliance stage follows in 2027. source |
| 42 days | Google DMA compliance deadline (2026-09-21) — Google has 60 days from the July 23, 2026 EU Commission decision to overhaul search ranking practices and Play Store app-developer restrictions or face further DMA penalties. source |
| 144 days | Google begins sharing anonymized search data with rival search engines (EU DMA) (2027-01-01) — Under the European Commission's July 2026 DMA ruling, Google must start sharing anonymized search data with eligible third-party search engine and AI chatbot providers from January 2027. source |
| 144 days | Illinois Artificial Intelligence Safety Measures Act (SB 315) Takes Effect (2027-01-01) — Law takes effect requiring third-party safety audits for large AI developers (>$500M revenue), publication of AI risk frameworks, reporting of critical safety incidents within 72 hours (24 hours for imminent threats), annual independent audits, and whistleblower protections. source |
| 144 days | Louisiana Data Privacy Act (LDPA) takes effect (2027-01-01) — Louisiana's new comprehensive consumer privacy law, following a controller/processor framework similar to Texas/Virginia/Colorado, takes effect January 1, 2027, enforced by the state attorney general. source |
| 144 days | New York RAISE Act takes effect (2027-01-01) — New York's Responsible AI Safety and Education Act (signed December 2025) goes into effect, creating an oversight office within the state Department of Financial Services to assess large frontier AI developers and enforce transparency requirements. source |
| 158 days | X's DSA remediation plan implementation deadline (2027-01-15) — X has six months from EU Commission approval (mid-July 2026) to implement its accepted Digital Services Act corrective action plan, subject to independent external audit. source |
| 163 days | EU Machinery Regulation (EU) 2023/1230 supersedes Machinery Directive 2006/42/EC (2027-01-20) — New EU Machinery Regulation takes full legal effect, replacing the 2006 Machinery Directive; ISO 10218:2025 robot safety standard becomes mandatory for EU market access once formally listed in the Official Journal, relevant to embodied/physical AI security convergence and supplier readiness gaps. source |
| 325 days | Google Android AI assistant interoperability changes take effect (EU DMA) (2027-07-01) — Users in the EU begin benefiting from DMA-mandated Android changes allowing voice activation and background task execution by rival AI assistants, per the European Commission's ruling against Google. source |
| 356 days | EU DMA compliance deadline for Google Android AI app access parity (2027-08-01) — European Commission requires Google to implement the majority of ordered changes giving rival AI assistants equal Android system access (voice activation, background task execution, cross-app context, on-device model resources) as Gemini. source |
Period Covered: July 25 – August 8, 2026
A. REGULATION & POLICY
1. GPAI Code of Practice compliance gap surfaces on OpenAI as EU enforcement activates
As EU AI Office enforcement powers went live August 2, reporting identified that OpenAI — a signatory to the GPAI Code of Practice — has a public compliance statement that does not address the Code’s Copyright chapter obligation to publish a training-data summary (Article 53). This sits alongside a broader signatory-compliance picture: of ~24 GPAI Code signatories (Amazon, Anthropic, Google, IBM, Microsoft, Mistral AI, Aleph Alpha among them), Meta declined to sign entirely and xAI signed only the Safety and Security chapter, leaving Transparency and Copyright obligations to be demonstrated by other means. Google separately confirmed it signed the Code covering AI-generated-content transparency.
- Deadlines: Enforcement (fines up to €15M / 3% global turnover) active since Aug 2, 2026.
- Practical impact: This is your first live test case of “presumption of conformity” under a voluntary code meeting a mandatory law — treat vendor Code-signatory status as a checkbox, not a compliance guarantee. Add a specific line item to third-party AI risk assessments: “training-data summary published per Art. 53” — don’t infer it from Code membership alone.
- Source: https://www.techtimes.com/articles/322519/20260731/openais-eu-ai-act-statement-skips-training-data-copyright-gap-activates-sunday.htm ; https://www.techtimes.com/articles/322563/20260731/eu-ai-act-chatbot-disclosure-reaches-api-builders-sunday-vendors-cannot-comply-you.htm ; https://www.fonearena.com/blog/488290/google-signs-eu-ai-act-code-of-practice.html
2. European Commission formally confirms Transparency Code of Practice as “adequate,” publishes final guidelines with new milestone dates
The Commission and AI Board confirmed the Code of Practice on Transparency of AI-Generated Content satisfies Article 50 obligations and released final implementation gu
Also live: AI Threat Landscape · Di1 blog · Need help applying this to your organization? Book a consultation.

