Posts tagged with "EU AI Act"

Found 21 posts

Azure & Cloud
September 4, 2026

GPT-6 Astra in Foundry: the price, the gate and the EU gap

GPT-6 Astra arrived in Microsoft Foundry on 3 September 2026 at $10/$50 per million tokens, the same list price as Claude Fable 5.1 and 2.5x GPT-5.6 Sol on promo, behind a Limited Access gate and with no EU Data Zone. The cost math on document jobs and 60-turn agent loops, the 272K long-context cliff, what the Critical cyber rating means for refusals, and how a Swedish team should handle residency until the EU zone lands at its new 20% premium.

GPT-6 Astra
OpenAI
Microsoft Foundry
Azure OpenAI
AI Agents
LLM Cost
Data Residency
EU AI Act
Limited Access
GPT-5.6
By Falak Mahmood
Azure & Cloud
September 3, 2026

Claude Fable 5.1 in Foundry: cache math and the EU caveats

Claude Fable 5.1 keeps Fable 5's $10/$50 pricing but cuts cache reads to $0.25 per million tokens, which turns a 60-turn agent session from $17.25 into $10.50 and shrinks the premium over Opus 5 from 2x to about 22%. On Microsoft Foundry it ships Anthropic-hosted only, with no EU data zone, no Batches API, a zero default quota on pay-as-you-go, mandatory 30-day retention until Enterprise Frontier Safeguards arrive, and three breaking changes for teams migrating from Fable 5.

Claude Fable 5.1
Anthropic
Microsoft Foundry
Azure
Prompt Caching
AI Agents
Data Residency
GDPR
EU AI Act
LLM Cost
By Falak Mahmood
Security & Compliance
August 30, 2026

A classifier is not a sandbox: isolating coding agents

A published attack chain achieved remote code execution against Claude Code in auto mode, with the safety classifier approving the steps that led to compromise and then blocking the cleanup command. What the break teaches teams running AI coding agents, and how to build real isolation on Azure with Hyper-V sandboxes, default-deny egress and short-lived credentials.

AI Agents
Agent Security
Claude Code
Prompt Injection
Sandboxing
Azure Container Apps
Dynamic Sessions
NIS2
EU AI Act
Managed Identity
By Falak Mahmood
Security & Compliance
August 13, 2026

Claude's text watermark: what it means for Article 50

Anthropic will weave an invisible watermark into Claude's text output to meet the EU AI Act's Article 50 marking obligation, applying it globally across the API, apps and cloud platforms including Microsoft Foundry. What the mark can and cannot prove, which deployer duties remain yours, and when a DIY provenance layer still earns its keep on Azure.

EU AI Act
Article 50
Claude
Anthropic
Watermarking
C2PA
Microsoft Foundry
Compliance
AI Governance
Content Provenance
By Falak Mahmood
Business & Strategy
August 10, 2026

Unlimited free ChatGPT vs governed enterprise AI on Azure

OpenAI removed limits on text chats for free ChatGPT users on 6 August 2026 and made GPT-5.6 Luna the default, cutting factual errors by roughly 62 percent versus the prior model. For Swedish and EU enterprises on Azure, the free consumer tool employees already use just became unlimited and much stronger, so shadow AI pressure rises and the case for a governed answer built on Copilot Chat, paid Copilot seats and Azure OpenAI becomes urgent.

Shadow AI
ChatGPT
GPT-5.6
Microsoft 365 Copilot
Azure OpenAI
AI Governance
EU AI Act
GDPR
Enterprise AI Strategy
By Falak Mahmood
Security & Compliance
August 5, 2026

Who enforces the AI Act in Sweden? PTS and the new map

Sweden's AI Act enforcement map is now set: the SOU 2025:101 inquiry designates Post- och telestyrelsen (PTS) as coordinating market surveillance authority, with eleven surveillance bodies, two notifying authorities, and a PTS-run regulatory sandbox. The supplementary law was written to take effect on 2 August 2026 but awaits formal adoption, so PTS and its peers operate on interim government assignments while EU transparency rules already apply.

EU AI Act
PTS
Sweden
SOU 2025:101
Compliance
Market Surveillance
Regulatory Sandbox
IMY
Digital Omnibus
Azure
By Falak Mahmood
Security & Compliance
August 4, 2026

AI Act enforcement is now real: an Azure deployer checklist

On 2 August 2026 the European Commission's enforcement powers over general-purpose AI providers activated: the AI Office can now demand documentation, run model evaluations, restrict models from the EU market and fine up to 3% of global turnover or EUR 15 million. The same date brought Article 50 transparency into application, and this guide maps what Azure OpenAI and Foundry teams must demand from vendors versus handle themselves as deployers.

AI Act
EU AI Act
GPAI
Article 50
Azure OpenAI
Azure AI Foundry
AI Office
Compliance
Digital Omnibus
Transparency
By Falak Mahmood
AI & Machine Learning
July 31, 2026

Kimi K3 open weights: the EU self-hosting reality check

Moonshot AI published Kimi K3's open weights on 26 July 2026: a 2.8-trillion-parameter mixture-of-experts model with a 1M-token context window, shipped in MXFP4 under a custom licence that gates large-scale commercial inference. We work through the licence terms, the GPU memory and cost math for serving it in an EU Azure region, and a decision framework for choosing between self-hosting, a managed API and a smaller single-node open model.

Kimi K3
Moonshot AI
Open Weights
Self-Hosting
LLM Licensing
Azure ND-series
EU AI Act
Data Residency
GPU Costs
By Falak Mahmood
Security & Compliance
July 28, 2026

The AI Act's high-risk deadline moved to December 2027

Regulation (EU) 2026/1744, the Digital Omnibus on AI, entered into force on 27 July 2026 and moves the AI Act deadline for Annex III high-risk systems from August 2026 to 2 December 2027, with Annex I embedded systems following in August 2028. Article 50 transparency still applies from 2 August 2026, a new prohibition arrives with a December 2026 marking deadline, and a phased 16-month plan turns the reprieve into a workable compliance programme.

EU AI Act
Digital Omnibus
High-Risk AI
Compliance
Article 50
Azure
Sweden
AI Governance
GDPR
By Falak Mahmood
Azure & Cloud
July 24, 2026

Sovereign AI on Azure: what the Microsoft-Mistral deal means

Microsoft and Mistral announced an expanded partnership on 21 July 2026: Mistral Medium 3.5 and OCR 4 arrive in Microsoft Foundry and Copilot Studio, deployable from Azure cloud to customer-controlled and fully air-gapped Azure Local environments, backed by a multibillion-dollar European GPU buildout. We compare the three deployment modes and what each one solves for Swedish public sector and regulated industries.

Sovereign AI
Microsoft Foundry
Mistral
Azure Local
Copilot Studio
Data Residency
EU AI Act
Public Sector
Regulated Industries
By Falak Mahmood
Security & Compliance
July 22, 2026

Article 50 compliance for Azure OpenAI apps: a guide

The European Commission adopted its final Article 50 transparency guidelines on 20 July 2026 and confirmed the Code of Practice on marking AI-generated content as adequate, less than two weeks before the obligations start to apply. Here is what Swedish and EU teams running chatbots, copilots and content generators on Azure OpenAI must implement: chatbot disclosure, machine-readable marking and deepfake labels, with concrete code patterns for each.

EU AI Act
Article 50
Azure OpenAI
Transparency
C2PA
Code of Practice
Compliance
GenAI
Chatbots
By Falak Mahmood
Security & Compliance
June 17, 2026

AI Act deadlines moved: what still lands August 2, 2026

On 16 June 2026 the European Parliament approved the Digital Omnibus amendments 423-57, moving Annex III high-risk AI Act obligations to 2 December 2027 and product-embedded obligations to 2 August 2028. Article 50 transparency duties and the Commission's GPAI enforcement powers were not delayed, which leaves Swedish enterprises six weeks to ship chatbot disclosure, content marking and a documented GPAI position before 2 August 2026.

EU AI Act
Digital Omnibus
Article 50
GPAI
Compliance
AI Governance
Azure OpenAI
Sweden
Transparency
By Falak Mahmood
Security & Compliance
June 15, 2026

Who will knock on your door about AI in Sweden? IMY, mostly

On 15 June 2026 IMY confirmed its role as market surveillance authority for the EU AI Act, with responsibility covering AI systems in areas such as law enforcement and credit assessment, alongside PTS and Finansinspektionen. For Swedish enterprises this puts GDPR and AI Act supervision under one regulator, and IMY's sandbox role offers a way to get data protection guidance before enforcement reaches full strength in 2027.

EU AI Act
IMY
Sweden
Market Surveillance
Regulatory Sandbox
GDPR
Compliance
High-Risk AI
Azure
By Falak Mahmood
AI & Cloud Infrastructure
May 22, 2026

Gemini Enterprise Agent Platform vs Azure AI Foundry

Google's I/O 2026 enterprise announcements, led by the Managed Agents API, Gemini Spark and Gemini 3.5 Flash, take direct aim at Azure AI Foundry Agent Service and the Copilot ecosystem, down to launch connectors for SharePoint and OneDrive. For Azure-first Swedish and EU teams the decision rests on four questions: where the data lives, whether the cost claim survives real traces, whether audit obligations can be met, and what a second platform costs.

AI Agents
Google Cloud
Azure AI Foundry
Gemini
Agent Platforms
EU AI Act
Data Residency
Cloud Strategy
By Falak Mahmood
AI & Machine Learning
May 20, 2026

Gemini 3.5 Flash vs GPT-5.5 vs Claude Opus 4.7 at I/O 2026

Google shipped Gemini 3.5 Flash on day one of I/O 2026, the third frontier agentic coding model in five weeks after Claude Opus 4.7 and GPT-5.5, alongside a $100/month developer tier and the Antigravity 2.0 agent platform. For Azure-first teams the practical response is a reusable evaluation harness and a documented cost comparison for renewal leverage, not a migration.

Google I/O 2026
Gemini 3.5 Flash
GPT-5.5
Claude Opus 4.7
Model Evaluation
Azure AI Foundry
Agentic AI
EU AI Act
AI Procurement
By Falak Mahmood
Security & Compliance
May 10, 2026

EU AI Act High-Risk Readiness: 11 Weeks to August 2026

High-risk obligations under the EU AI Act apply August 2, 2026. For teams shipping AI inside the Annex III categories, that is 11 weeks of runway. This is the readiness state most teams reach by skipping the strategy decks: what actually changes, what the four obligations that require code look like, and where compliance spending misfires before the deadline.

EU AI Act
Compliance
High-Risk AI
Regulation
GDPR
By Falak Mahmood
Security & Compliance
April 16, 2026

Demystifying the EU AI Act: The Engineering Reality

A working-engineer walk-through of the EU AI Act beyond the risk-tier summary. Covers legal structure, Annex III classification decisions, GPAI rules, the full timeline to 2027, Article 12 logging, Article 50 transparency, conformity assessment artifacts, CE marking, penalties, and the Swedish implementation.

EU AI Act
AI Regulation
Compliance
AI Governance
GDPR
Risk Management
Sweden
Policy
Annex III
Conformity Assessment
By Falak Mahmood
Business & Strategy
March 24, 2026

EU AI Act High-Risk Deadline: Swedish Prep List for August 2026

A 4-month practical preparation checklist for the EU AI Act August 2026 high-risk deadline, tailored to Swedish B2B teams — classification, Annex IV documentation, Article 12 logging, human oversight, and CE marking.

EU AI Act
High-Risk AI
Compliance
Sweden
Strategy
By Falak Mahmood
Security & Compliance
January 6, 2026

EU AI Act One Year On: Lessons for Swedish B2B Teams

A practical review, one year after the EU AI Act Article 5 prohibitions entered into force on 2 February 2025 — where Swedish B2B teams over-reacted, where they under-reacted, and what must ship before the August 2026 high-risk deadline.

EU AI Act
AI Regulation
Compliance
Sweden
GDPR
By Falak Mahmood
AI & Cloud Infrastructure
November 28, 2025

Compliance as Competitive Advantage: AI Governance With Microsoft Purview - Microsoft Ignite 2025

Microsoft Ignite BRK270: Transform compliance from burden to accelerator. Microsoft Purview, Compliance Manager, AI Baseline, Regulatory Navigator. Automated governance for GDPR, AI Act, NIS2. 3-5x faster deployments, 70-90% less audit time.

Microsoft Ignite 2025
Microsoft Purview
Compliance Manager
Regulatory Navigator
AI Baseline
AI Governance
GDPR Compliance
EU AI Act
NIS2
Data Governance
Regulatory Compliance
Azure AI Foundry
Microsoft Defender
Microsoft Entra
Trust Architecture
Compliance Automation
By Falak Mahmood
Microsoft Ignite 2025
November 28, 2025

End-to-End Security for AI Platforms, Apps, and Agents - Microsoft Ignite 2025

From assistive copilots to autonomous digital workers, AI presents unprecedented security challenges. Discover Microsoft's comprehensive approach to securing AI platforms, apps, and agents with Agent 365, Entra Agent Identity, Purview data governance, Defender security posture, Sentinel threat detection, and EU AI Act compliance automation.

Microsoft Ignite
Ignite 2025
AI Security
Agent 365
Entra Agent Identity
Microsoft Purview
Microsoft Defender
Microsoft Sentinel
EU AI Act
BRK267
By Falak Mahmood