Singapore
·
Guidance
Guidance
PDPC Advisory Guidelines on Use of Personal Data in AI Recommendation and Decision Systems
These advisory guidelines explain how the Personal Data Protection Act applies when organisations use personal data to develop, test and deploy AI systems that make recommendations, predictions or decisions. They clarify the consent obligation and relevant exceptions (business improvement and research), what to include in notifications to individuals, accountability practices such as documenting data provenance and model development, and expectations for service providers building bespoke AI systems.
Adopted 1 Mar 2024
Source-linked
Official source
Poland
·
Bill
Proposed
Binding
Projekt ustawy o systemach sztucznej inteligencji
The draft act implements the EU AI Act in Poland: it creates the Commission for the Development and Safety of Artificial Intelligence as the market-surveillance authority and single point of contact, sets procedures for complaints and inspections, provides for a regulatory sandbox and defines the national penalty regime.
Source-linked · checked 11 Sep 2026
Official source
Russia
·
Act / statute
In force
Binding
Federal Law No. 123-FZ of 24 April 2020 on an experiment to establish special regulation to create the conditions for the development and implementation of AI technologies in Moscow
Establishes a five-year experimental legal regime in Moscow (from 1 July 2020) allowing participants to develop and deploy AI technologies under special rules, including processing of anonymised personal data for AI purposes, coordinated by the Moscow government with a register of participants. It was accompanied by amendments to the personal-data law.
In force 1 Jul 2020
Source-linked · checked 11 Sep 2026
Official source
Serbia
·
Guidance
Guidance
Етичке смернице за развој, примену и употребу поуздане и одговорне вештачке интелигенције
Adopted in March 2023, the guidelines set principles and requirements for trustworthy and responsible AI in Serbia (human agency, safety, privacy, transparency, non-discrimination, societal well-being, accountability), with self-assessment questions for developers and users, drawing on the EU ethics guidelines and the UNESCO recommendation.
Adopted 23 Mar 2023
Source-linked · checked 11 Sep 2026
Official source
National Artificial Intelligence Policy, 2082 (2025) — Nepal
Nepal's National AI Policy sets the government's direction for developing and using artificial intelligence. Based on the published summaries, it aims to build AI infrastructure and skills, promote ethical and responsible AI, strengthen data governance, establish institutional arrangements for AI oversight, and prepare legal and regulatory measures. It is a policy framework, not a law, and does not itself create enforceable obligations on private organisations.
Adopted 1 Aug 2025
Source-linked
Official source
Nepal
·
Act / statute
In force
Binding
Individual Privacy Act, 2075 (2018) — Nepal
The Individual Privacy Act 2075 gives effect to the constitutional right to privacy in Nepal. It regulates the collection, storage, processing, use and disclosure of personal information by public bodies and private entities, requires consent for collection and use of personal data subject to exceptions, restricts sensitive data, and provides remedies and penalties. It is the main binding law affecting AI systems that process personal data in Nepal. The Individual Privacy Regulation 2077 (2020) provides implementing rules.
In force 18 Sep 2018
Source-linked
Official source
Italy
·
Act / statute
In force
Binding
Legge 23 settembre 2025, n. 132 – Disposizioni e deleghe al Governo in materia di intelligenza artificiale
Italy's framework AI law, published in the Official Gazette on 25 September 2025 and in force from 10 October 2025. It states principles (human-centric, transparent, safe AI; protection of fundamental rights), sets sector rules for healthcare (AI as support, not replacement, for clinical decisions), employment (information to workers, an AI-at-work observatory), intellectual professions (client disclosure), justice (judge decides; AI only for organisational support) and public administration, requires parental consent for children under 14, designates AgID and ACN as national authorities, delegates the government to align national law with the EU AI Act, and creates a criminal offence for unlawful dissemination of AI-generated or manipulated content with aggravating circumstances for other crimes committed with AI.
In force 10 Oct 2025
Source-linked · checked 11 Sep 2026
Official source
UN General Assembly resolution A/RES/78/265: Seizing the opportunities of safe, secure and trustworthy artificial intelligence systems for sustainable development (21 March 2024)
The first General Assembly resolution on AI, adopted by consensus with more than 120 co-sponsors, encourages states to promote safe, secure and trustworthy AI systems that respect human rights and advance the Sustainable Development Goals, to close digital divides, and to develop governance frameworks and interoperable safeguards; it calls on companies to act responsibly. It was followed by resolution A/RES/79/325 (August 2025) establishing an Independent International Scientific Panel on AI and a Global Dialogue on AI Governance under the Global Digital Compact.
Adopted 21 Mar 2024
Source-linked · checked 11 Sep 2026
Official source
Hiroshima Process International Code of Conduct for Organizations Developing Advanced AI Systems (G7, 30 October 2023)
Eleven voluntary actions for organisations developing the most advanced AI systems, including foundation and generative models: risk identification and mitigation across the lifecycle, post-deployment vulnerability and incident monitoring, public transparency reports, responsible information sharing, security controls, content authentication such as watermarking, research on societal risks, priority to global challenges, technical standards, and data-input and personal-data safeguards. It sits alongside the Hiroshima Process guiding principles and, from 2025, an OECD-run voluntary reporting framework.
Adopted 30 Oct 2023
Source-linked · checked 11 Sep 2026
Official source
Kazakhstan
·
Act / statute
Adopted
Binding
Law of the Republic of Kazakhstan "On Artificial Intelligence" (signed November 2025)
The law defines AI systems and their classification by level of autonomy and risk, sets principles (legality, fairness, transparency, safety, human control), assigns duties to owners and operators of AI systems including risk management, labelling of AI-generated content and protection of personal data, prohibits certain manipulative and social-scoring uses, provides for a national AI platform and state support measures, and allocates state regulation to the authorised body.
Adopted 17 Nov 2025
Source-linked · checked 11 Sep 2026
Official source
Jordan
·
Guidance
Guidance
Jordanian Charter of Artificial Intelligence Ethics
The charter sets ethical principles for the development and use of AI in Jordan, including human dignity, fairness, transparency, accountability, safety, privacy and sustainability, addressed to public and private organisations.
Adopted 1 Aug 2022
Source-linked · checked 11 Sep 2026
Official source
ISO/IEC 42001:2023 Information technology – Artificial intelligence – Management system
The first certifiable management-system standard for AI. It specifies requirements for establishing, implementing, maintaining and improving an AI management system within an organisation: context and leadership, AI policy, risk and impact assessment, objectives, resources and competence, operational controls across the AI lifecycle, performance evaluation and improvement, with Annex A controls on data, transparency, human oversight, third parties and responsible use. Certification is voluntary but increasingly requested in procurement; regulators reference it as evidence of governance.
Adopted 18 Dec 2023
Source-linked · checked 11 Sep 2026
Official source
OECD Recommendation of the Council on Artificial Intelligence (OECD/LEGAL/0449), adopted 22 May 2019 and revised 3 May 2024
The first intergovernmental standard on AI. It sets five values-based principles (inclusive growth and well-being; human rights and democratic values including fairness and privacy; transparency and explainability; robustness, security and safety; accountability) and five recommendations to governments (invest in research, foster an inclusive AI ecosystem, enable an agile policy environment, build human capacity and prepare for labour-market transition, cooperate internationally). The 2024 revision updated the definition of an AI system (adopted by the EU AI Act and other laws) and added references to general-purpose and generative AI, misinformation and environmental sustainability. Adherents include all OECD members and several non-members; the G20 AI Principles (2019) draw on it.
Adopted 22 May 2019
Source-linked · checked 11 Sep 2026
Official source
UNESCO Recommendation on the Ethics of Artificial Intelligence (adopted by the General Conference, 23 November 2021)
The first global normative instrument on AI ethics. It sets values (human rights and dignity, environment and ecosystem flourishing, diversity and inclusiveness, peaceful and just societies) and principles (proportionality and do no harm, safety and security, fairness, sustainability, privacy, human oversight, transparency and explainability, responsibility, awareness and literacy, multi-stakeholder governance), and eleven policy action areas from ethical impact assessment and data policy to gender, education, health and the environment. UNESCO supports implementation with a Readiness Assessment Methodology (RAM) and an Ethical Impact Assessment tool used by dozens of countries.
Adopted 23 Nov 2021
Source-linked · checked 11 Sep 2026
Official source
Hong Kong SAR
·
Guidance
Guidance
Hong Kong Generative Artificial Intelligence Technical and Application Guideline
Published in April 2025, the guideline covers the technical characteristics and risks of generative AI, governance principles (safety, transparency, accountability, data protection, fairness) and practical application guidance for developers, service providers and users across the AI lifecycle, and is intended as a reference for industry and government.
Adopted 15 Apr 2025
Source-linked · checked 11 Sep 2026
Official source
India
·
Act / statute
Partially applicable
Binding
Digital Personal Data Protection Act, 2023 and DPDP Rules, 2025
The DPDP Act is India's cross-sector personal-data law. It applies to digital personal data processed in India and to processing outside India connected with offering goods or services to people in India. It requires a lawful basis (consent or specified legitimate uses), notice, purpose limitation, data accuracy, security safeguards, breach notification to the Data Protection Board and affected individuals, and grants rights of access, correction, erasure and grievance redress. Significant Data Fiduciaries face extra duties such as impact assessments and audits. The Act does not mention AI specifically, but it governs the personal data used to train and operate AI systems.
Adopted 11 Aug 2023
Source-linked
Official source
India
·
Guidance
Guidance
India AI Governance Guidelines (MeitY, 2025)
The India AI Governance Guidelines set out a principle-based, pro-innovation approach to governing AI in India. They articulate guiding principles (such as trust, people-first design, fairness, accountability, safety and transparency), propose an institutional framework including an AI governance group and an AI Safety Institute role, favour applying existing laws over a new AI statute, and recommend voluntary commitments, techno-legal measures, risk-based oversight and incident reporting for AI systems.
Adopted 5 Nov 2025
Source-linked
Official source
Holy See (Vatican)
·
Framework
Voluntary standard
Rome Call for AI Ethics (Pontifical Academy for Life, 28 February 2020)
A declaration of six principles for the ethical development of AI (transparency, inclusion, responsibility, impartiality, reliability, security and privacy), first signed in February 2020 by the Pontifical Academy for Life, Microsoft, IBM, FAO and the Italian government, and since joined by other religious leaders, universities and companies. It calls for "algor-ethics" and human-centred design and is used as a reference in faith-based and corporate AI ethics commitments.
Adopted 28 Feb 2020
Source-linked · checked 11 Sep 2026
Official source
Hong Kong SAR
·
Guidance
Guidance
Artificial Intelligence: Model Personal Data Protection Framework
Published 11 June 2024, the framework gives organisations that procure, implement and use AI systems involving personal data recommendations in four areas: AI strategy and governance (an AI governance committee, procurement due diligence), risk assessment and human oversight (a risk-based approach with levels of human involvement), customisation and implementation of AI models (data preparation, testing, security), and communication and engagement with stakeholders (transparency, explainability, opt-out, feedback). It builds on the 2021 Guidance on the Ethical Development and Use of AI.
Adopted 11 Jun 2024
Source-linked · checked 11 Sep 2026
Official source
France
·
Guidance
Guidance
CNIL recommendations on the development of AI systems and the GDPR (AI how-to sheets)
A series of practical guidance sheets, first published in 2024 and extended since, explaining how organisations can develop and train AI systems in compliance with the GDPR: defining a purpose, choosing a legal basis (including legitimate interest for web-scraped training data), data minimisation, retention, data-protection impact assessments, informing people and honouring their rights, and security of training datasets and models.
Adopted 8 Apr 2024
Source-linked · checked 11 Sep 2026
Official source