Risk Assessment

governance 23 regulations

Requirement to assess and document the risks posed by AI systems, including potential harms, bias, and impacts on affected individuals.

What Counts

What Does Not Count

Related Terms

Implementing Regulations

RegulationJurisdictionStatusProvisions
Work Health and Safety Amendment (Digital Work Systems) Act 2026 New South Wales enforcing 1
Privacy Act 1988 — Automated Decision-Making Reforms Australia enacted 1
Brazil AI Bill (PL 2338/2023) Brazil proposed 1
California CCPA ADMT Regulations California enacted 1
Provisions on the Management of Algorithmic Recommendations China enforcing 1
Interim Measures for Generative AI Services China enforcing 1
Framework Convention on AI, Human Rights, Democracy and Rule of Law (CETS 225) Council of Europe enacted 1
Colorado Privacy Act Rules (4 CCR 904-3) Colorado enforcing 1
Colorado Protecting Consumers from Unfair Discrimination in Insurance Practices Colorado enforcing 1
EU AI Act European Union phased enforcement 1
Digital Operational Resilience Act (DORA) European Union enforcing 2
AI Promotion Act Japan enforcing 1
AI Basic Act South Korea enforcing 1
Law on Artificial Intelligence Kazakhstan enforcing 1
Artificial Intelligence Regulations 2025 Malta enforcing 1
New York RAISE Act New York enacted 1
QCB Artificial Intelligence Guideline Qatar enforcing 1
Law for the Promotion of Artificial Intelligence and Technologies El Salvador enforcing 1
Artificial Intelligence Basic Act Taiwan proposed 1
UK Online Safety Act 2023 United Kingdom phased enforcement 1
EO 14319 — Preventing Woke AI in the Federal Government United States enforcing 1
Executive Order on AI State Law Preemption United States enforcing 1
Law on Artificial Intelligence Vietnam enforcing 1

Standards & Frameworks

Voluntary standards that address this obligation. Implementing these can help demonstrate compliance with the binding regulations above.

StandardTypeStatusProvisions
General-Purpose AI Code of Practice (GPAI CoP) framework enforcing 1
Hiroshima AI Process – Principles & Code of Conduct framework voluntary 2
ISO/IEC 23894 AI Risk Management standard voluntary 1
ISO/IEC 42001 AI Management System standard voluntary 1
ISO/IEC 42005 AI Impact Assessment standard voluntary 1
NIST AI Risk Management Framework framework voluntary 1
OECD AI Principles standard voluntary 1
Model AI Governance Framework framework voluntary 1