{"id":4672,"date":"2024-05-24T20:48:11","date_gmt":"2024-05-24T20:48:11","guid":{"rendered":"https:\/\/artificialintelligenceact.eu\/?p=4672"},"modified":"2024-05-24T20:48:25","modified_gmt":"2024-05-24T20:48:25","slug":"robust-governance-for-the-ai-act","status":"publish","type":"post","link":"https:\/\/artificialintelligenceact.eu\/robust-governance-for-the-ai-act\/","title":{"rendered":"Robust governance for the AI Act: Insights and highlights from Novelli et al. (2024)"},"content":{"rendered":"\n<p>In their recent publication on robust European AI governance, Claudio Novelli, Philipp Hacker, Jessica Morley, Jarle Trondal, and Luciano Floridi pursue two main objectives: explaining the governance framework of the AI Act and providing recommendations to ensure its uniform and coordinated execution (Novelli et al., 2024).<\/p>\n\n\n\n<p>The following provides a selective overview of the publication, with a particular focus on the AI Office and GPAI. It is important to note that this overview refrains from introducing new perspectives, but focuses solely on reiterating the most relevant findings of the publication for clarity and accessibility for policymakers.<\/p>\n\n\n\n<p class=\"has-background\" style=\"background-color:#f3f3f3\">The original publication is available at SSRN via the <a href=\"https:\/\/ssrn.com\/abstract=4817755\" data-type=\"link\" data-id=\"https:\/\/ssrn.com\/abstract=4817755\" target=\"_blank\" rel=\"noreferrer noopener\">SSRN link<\/a>, or <a href=\"http:\/\/dx.doi.org\/10.2139\/ssrn.4817755\" data-type=\"link\" data-id=\"http:\/\/dx.doi.org\/10.2139\/ssrn.4817755\" target=\"_blank\" rel=\"noreferrer noopener\">DOI link<\/a>.<\/p>\n\n\n\n<div style=\"height:28px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h4 class=\"wp-block-heading\">1. Implementing and enforcing the AI Act: the remaining steps for the Commission<\/h4>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><th><strong>Key aspects<\/strong><\/th><th><strong>Tasks and responsibilities of the Commission<\/strong><\/th><\/tr><\/thead><tbody><tr><td>a) Procedures<\/td><td>\u2022 Establish and work with the AI Office and AI Board to develop implementing and delegated acts<br>\u2022 Conduct the comitology procedure with Member States for adopting and implementing acts<br>\u2022 Manage delegated act adoption, consulting experts and undergoing scrutiny by EP and Council<\/td><\/tr><tr><td>b) Guidelines&nbsp;<\/td><td>\u2022 Issue guidelines on applying the definition of an AI system and classification rules for high-risk systems<br>\u2022 Create risk assessment methods for identifying and mitigating risks<br>\u2022 Define rules for \u201csignificant modifications\u201d that alter the risk level of a high-risk system<\/td><\/tr><tr><td>c) Classification<\/td><td>\u2022 Update <a href=\"https:\/\/artificialintelligenceact.eu\/annex\/3\/\" data-type=\"annex\" data-id=\"3059\">Annex III<\/a> to add or remove high-risk AI system use cases through delegated acts<br>\u2022 Classify GPAI as exhibiting \u201csystemic risk\u201d based on criteria like FLOPs and high-impact capabilities<br>\u2022 Adjust regulatory parameters (thresholds, benchmarks) for GPAI classification through delegated acts<\/td><\/tr><tr><td>d) Prohibited Systems<\/td><td>\u2022 Develop guidelines on AI practices that are prohibited under <a href=\"https:\/\/artificialintelligenceact.eu\/article\/5\/\" data-type=\"article\" data-id=\"2960\">Article 5<\/a> (AIA)<br>\u2022 Set standards and best practices to counter manipulative techniques and hazards<br>\u2022 Define criteria for exceptions to prohibitions, e.g., for law enforcement use of real-time remote biometric identification<\/td><\/tr><tr><td>e) Harmonized standards and high-risk obligations<\/td><td>\u2022 Define harmonized standards and obligations for highrisk system providers, including in-door risk management system (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/9\/\" data-type=\"article\" data-id=\"2964\">Article 9<\/a> AIA)<br>\u2022 Standardize technical documentation requirements and update <a href=\"https:\/\/artificialintelligenceact.eu\/annex\/4\/\" data-type=\"annex\" data-id=\"3060\">Annex IV<\/a> via delegated acts as necessary<br>\u2022 Approve codes of practice (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/56\/\" data-type=\"article\" data-id=\"3013\">Article 56<\/a>(6) AIA)<\/td><\/tr><tr><td>f) Information and Transparency<\/td><td>\u2022 Set information obligations for providers of high-risk systems throughout the AI value chain<br>\u2022 Issue guidance to ensure compliance with transparency requirements, especially for GPAI<\/td><\/tr><tr><td>g) Enforcement<\/td><td>\u2022 Clarify the interplay between the AIA and other EU legislative frameworks<br>\u2022 Regulate regulatory sandboxes and supervisory functions<br>\u2022 Oversee Member State\u2019\u2019 setting of penalties and enforcement measures that are effective, proportionate, and deterrent<\/td><\/tr><\/tbody><\/table><figcaption class=\"wp-element-caption\">Table 1. Tasks and Responsibilities of the Commission in implementing and enforcing the AIA. Adapted from Novelli et al. (2024).<\/figcaption><\/figure>\n\n\n\n<h5 class=\"wp-block-heading\">1.1 Guidelines for risk-based classification of AI<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Within the framework of risk assessments, the Commission is yet to define rules about \u201csignificant modifications\u201d that alter the risk level of a system once it has been introduced to the market (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/43\/\" data-type=\"article\" data-id=\"3000\">Art 43<\/a>(4) AIA). Novelli et al. expect that standard fine-tuning of foundation models should not lead to a substantial modification, unless the process explicitly involves removal of safety layers or other actions that clearly increase risk.<\/li>\n\n\n\n<li>A complementary approach to risk assessment that Novelli et al. offer is to adopt predetermined change management plans akin to those in medicine; these are documents outlining anticipated modifications (e.g. performance adjustments, shift in intended use) and methods for assessing such changes.<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">1.2 Classification of general-purpose AI (GPAI)<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The Commission has notable authority under the AIA to classify GPAI as exhibiting \u2018systemic risk\u2019 (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/51\/\" data-type=\"article\" data-id=\"3009\">Art 51<\/a> AIA). Novelli et al. consider this distinction crucial: only systemically risky GPAIs are subject to the more far-fetching AI safety obligations concerning evaluation and red teaming, comprehensive risk assessment and mitigation, incident reporting, and cybersecurity (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/55\/\" data-type=\"article\" data-id=\"3012\">Art 55<\/a> AIA). The Commission can initiate the decision to classify a GPAI as systemically risky, or do so in response to an alert from the Scientific Panel.<\/li>\n\n\n\n<li>The Commission is able to dynamically adjust regulatory parameters. Novelli et al. find this essential for a robust governance model, in particular because the trend in AI development moves towards creating more powerful, yet \u201csmaller\u201d models (that require fewer FLOPs).<\/li>\n\n\n\n<li><a href=\"https:\/\/artificialintelligenceact.eu\/article\/52\/\" data-type=\"article\" data-id=\"3010\">Art 52<\/a> outlines how GPAI providers may contest the Commission\u2019s risk classification decisions. Novelli et al. foresee this potentially becoming a primary area of contention within the AI Act. GPAI providers whose models are trained with fewer than 10^25 FLOPs, yet esteemed systemically risky by the Commission, are expected to contest, possibly reaching the Court of Justice of the European Union (CJEU). This allows providers with deep pockets to delay the application of the more stringent rules. Simultaneously, this reinforces the importance of the rapidly outdating 10^25 FLOP threshold for GPAI.<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">1.3 Enforcement timeline: grace period and exemptions<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Existing GPAI systems already on the market are granted a grace period of 24 months before they must fully comply with the AIA (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/83\/\" data-type=\"article\" data-id=\"3385\">Art 83<\/a>(3) AIA). Novelli et al. note that, more importantly, high-risk systems already on the market for 24 months after the entry into force are entirely exempt from the AIA until \u2018significant changes\u2019 (defined in <a href=\"https:\/\/artificialintelligenceact.eu\/section\/3-2\/\" data-type=\"section\" data-id=\"3447\">section 3.2<\/a>) are made in their designs (<a href=\"https:\/\/artificialintelligenceact.eu\/article\/83\/\" data-type=\"article\" data-id=\"3385\">Art 83<\/a>(2) AIA). They contend that this is arguably in deep tension with a principle of product safety law: it applies to all models on the market, irrespective of when they entered the market. Moreover, the grace period for GPAI and the exemption for existing high-risk systems favor incumbents over newcomers, which is questionable from a competition perspective.<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">3. Supranational authorities: the AI Office, the AI board, and the other bodies<\/h4>\n\n\n\n<figure class=\"wp-block-table is-style-regular\"><table><thead><tr><th width=\"30%\"><strong>Institutional Body<\/strong> &amp; Structure<\/th><th><strong>Mission and Tasks<\/strong><\/th><\/tr><\/thead><tbody><tr><td><strong>AI Office<\/strong><br><em><strong>(<a href=\"https:\/\/artificialintelligenceact.eu\/article\/64\/\" data-type=\"article\" data-id=\"3018\">Art 64<\/a> AIA and Commission\u2019s Decision)<\/strong><br><\/em>Centralized within the DG-CNECT of the Commission<\/td><td>\u2022 Harmonise AIA implementation and enforcement across the EU<br>\u2022 Support implementing and delegated acts<br>\u2022 Standardization and best practices<br>\u2022 Assist in the establishment and operation of regulatory sandboxes<br>\u2022 Assess and monitor GPAIs and aid investigations into rule violations<br>\u2022 Provide administrative support to other bodies (Board, Advisory Forum, Scientific Panel)<br>\u2022 Consult and cooperate with stakeholders<br>\u2022 Cooperate with other relevant DG and services of the Commission&nbsp;&#8211; International cooperation<\/td><\/tr><tr><td><strong>AI Board<\/strong><br><em><strong>(<a href=\"https:\/\/artificialintelligenceact.eu\/article\/65\/\" data-type=\"article\" data-id=\"3019\">Art 65<\/a> AIA)<\/strong><br><\/em>Representatives from each Member State, with the AI Office and the European Data Protection Supervisor participating as observers<\/td><td>\u2022 Facilitate consistent and effective application of the AIA<br>\u2022 Coordinate national competent authorities<br>\u2022 Harmonise administrative practices.<br>\u2022 Issue recommendations and opinions (upon requests of the Commission)<br>\u2022 Support the establishment and operation of regulatory sandboxes<br>\u2022 Gather feedback on GPAI-related alerts<\/td><\/tr><tr><td><strong>Advisory Forum<\/strong><br><em><strong>(<a href=\"https:\/\/artificialintelligenceact.eu\/article\/67\/\" data-type=\"article\" data-id=\"3021\">Art 67<\/a> AIA)<\/strong><br><\/em>Stakeholders appointed by the Commission<\/td><td>\u2022 Provide technical expertise<br>\u2022 Prepare opinions and recommendations (upon request of the Board and the Commission)<br>\u2022 Establish sub-groups for examining specific questions<br>\u2022 Prepare an annual report on activities<\/td><\/tr><tr><td><strong>Scientific Panel<\/strong><br><em><strong>(<a href=\"https:\/\/artificialintelligenceact.eu\/article\/68\/\" data-type=\"article\" data-id=\"3022\">Art 68<\/a> AIA)<\/strong><br><\/em>Independent experts selected by the Commission<\/td><td>\u2022 Support enforcement of AI regulation, especially for GPAI<br>\u2022 Provide advice on the classification of AI models with systemic risk<br>\u2022 Alert AI Office of systemic risks<br>\u2022 Develop evaluation tools and methodologies for GPAIs<br>\u2022 Support market surveillance authorities and cross-border activities<\/td><\/tr><tr><td><strong>Notifying Authorities<\/strong><br><em><strong>(Artt <a href=\"https:\/\/artificialintelligenceact.eu\/article\/28\/\" data-type=\"article\" data-id=\"2985\">28<\/a>&#8211;<a href=\"https:\/\/artificialintelligenceact.eu\/article\/29\/\" data-type=\"article\" data-id=\"2986\">29<\/a> AIA)<\/strong><br><\/em>Designated or established by Member States<\/td><td>\u2022 Process applications for notification from conformity assessment bodies (CABs)<br>\u2022 Monitor CABs<br>\u2022 Cooperate with authorities from other Member States<br>\u2022 Ensure no conflict of interest with conformity assessment bodies<br>\u2022 Conflict of interest prevention and assessment impartiality<\/td><\/tr><tr><td><strong>Notified Bodies<\/strong><br><em><strong>(Artt <a href=\"https:\/\/artificialintelligenceact.eu\/article\/29\/\" data-type=\"article\" data-id=\"2986\">29<\/a>&#8211;<a href=\"https:\/\/artificialintelligenceact.eu\/article\/38\/\" data-type=\"article\" data-id=\"2995\">38<\/a> AIA)<\/strong><br><\/em>A third-party conformity assessment body (with legal personality) notified under the AIA<\/td><td>\u2022 Verify the conformity of highrisk AI systems<br>\u2022 Issue certifications<br>\u2022 Manage and document subcontracting arrangements<br>\u2022 Periodic assessment activities (audits)<br>\u2022 Participate in coordination activities and European standardization<\/td><\/tr><tr><td><strong>Market Surveillance Authorities<\/strong><br><em><strong>(Artt <a href=\"https:\/\/artificialintelligenceact.eu\/article\/70\/\" data-type=\"article\" data-id=\"3023\">70<\/a>&#8211;<a href=\"https:\/\/artificialintelligenceact.eu\/article\/72\/\" data-type=\"article\" data-id=\"3025\">72<\/a> AIA)<\/strong><br><\/em>Entities designated or established by <br>Member States as single points of contact<\/td><td>\u2022 Non-compliance investigation and correction for high-risk AI systems (e.g., risk measures)<br>\u2022 Real-world testing oversight and serious incident report management&nbsp;<br>\u2022 Guide and advice on the implementation of the regulation, particularly to SMEs and start-ups<br>\u2022 Consumer protection and fair competition support<\/td><\/tr><\/tbody><\/table><figcaption class=\"wp-element-caption\">Table 2. Structures, compositions, missions, and tasks of the institutional bodies involved in the AIA implementation and enforcement. Adapted from Novelli et al. (2024).<\/figcaption><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"678\" src=\"https:\/\/artificialintelligenceact.eu\/wp-content\/uploads\/2024\/05\/Fig1-Supranational-and-National-Bodies-1024x678.png\" alt=\"\" class=\"wp-image-4679\" srcset=\"https:\/\/artificialintelligenceact.eu\/wp-content\/uploads\/2024\/05\/Fig1-Supranational-and-National-Bodies-980x648.png 980w, https:\/\/artificialintelligenceact.eu\/wp-content\/uploads\/2024\/05\/Fig1-Supranational-and-National-Bodies-480x318.png 480w\" sizes=\"(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) and (max-width: 980px) 980px, (min-width: 981px) 1024px, 100vw\" \/><figcaption class=\"wp-element-caption\">Figure 1.  Supranational and national bodies involved in the implementation and enforcement of the AIA (Novelli et al., 2024).<\/figcaption><\/figure>\n\n\n\n<h5 class=\"wp-block-heading\">3.1 The AI Office<\/h5>\n\n\n\n<h6 class=\"wp-block-heading\">1. Institutional composition and operational autonomy<\/h6>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Novelli et al. note that the Office\u2019s precise organizational structure and operational autonomy remain ambiguous. No provisions, either in the AIA or in the Commission\u2019s decision, have been established regarding the composition of the AI Office, its collaborative dynamics with the various Connects within the DG, or the extent of its operational autonomy. Novelli et al. hypothesize that this absence is likely justified by the expectation that the Office will partially use existing infrastructure of DG-CNECT. Nevertheless, Novelli et al. underscore that expert hiring and substantial funding will present significant challenges, as the Office will compete with some of the best-funded private companies on the planet.<\/li>\n\n\n\n<li>Regarding its operational autonomy, the Office\u2019s incorporation in DG-CNECT means that the DG\u2019s management plan will guide the AI Office\u2019s strategic priorities. Novelli et al. note that this integration directly influences the scope and direction of the AI Office\u2019s initiatives.<br><\/li>\n<\/ul>\n\n\n\n<h6 class=\"wp-block-heading\">2. Mission(s) and task<\/h6>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The primary mission of the AI Office, according to the Commission Decision, is to ensure the harmonized implementation and enforcement of AIA (Art 2, point 1 of the Decision). The Decision also outlines auxiliary missions, such as enhancing a strategic EU approach to global AI \u201cinitiatives\u201d, promoting actions that maximize AI\u2019s social and economic benefits, supporting AI systems that boost EU competitiveness, and keeping track of AI market advancements.&nbsp;<\/li>\n\n\n\n<li>Novelli et al. consider this very broad wording, one interpretation they propose is that the AI Office\u2019s role could go beyond the scope of the AIA to include additional AI normative frameworks (such as the revised Product Liability Directive or the Artificial Intelligence Liability Directive (AILD)). In this case, Novelli et al. observe that the Office might need restructuring into a more autonomous body, like the CERT-EU, which could necessitate detaching it from the Commission\u2019s administrative framework.&nbsp;<\/li>\n\n\n\n<li>The ambiguity in the current normative framework regarding breath and scope of the AI Office is considered a crucial aspect by Novelli et al. They consider the responsibilities assigned to the AI Office to be broadly defined, with the expectation that their precise implementation will evolve based on practical experience.<\/li>\n\n\n\n<li>An important aspect to consider within the operational scope of the Office is the nature of its decisions. Novelli et al. note that the AI Office does not issue binding decisions on its own, but supports and advises the Commission. They raise concern that the effectiveness of mechanisms for appealing decisions of the Commission may be compromised by the opaque nature of the AI Office\u2019s support to the Commission, its interactions within DG-CNECT, and its relationships with external bodies, such as national authorities. Novelli et al. find this issue particularly pertinent given the AI Office\u2019s engagement with external experts and stakeholders. They emphasize that documentation and disclosure of the AI Office\u2019s contributions become crucial.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">3.2 The AI Board, the Advisory Forum, and the Scientific Panel<\/h5>\n\n\n\n<h6 class=\"wp-block-heading\">1. Structures, roles and compositions of the three bodies<\/h6>\n\n\n\n<ul class=\"wp-block-list\">\n<li>For Novelli et al., having three separate entities with relatively similar compositions raises questions. The AI Board is understandable for ensuring representation and maintaining some independence from EU institutions. But why there is both an Advisory Forum <em>and<\/em> a Scientific Panel is not apparent. The Forum is intended for diverse perspectives of civil society and industry, essentially acting as an institutionalized form of lobbying while balancing commercial and non-commercial interests. In contrast, the Panel consists of independent and (hopefully) unbiased experts, with specific tasks related to GPAI.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h6 class=\"wp-block-heading\">2. Mission(s) and tasks<\/h6>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Novelli et al. note that the Board does not have the authority to revise decisions of national supervisory agencies. They believe this may prove a distinct disadvantage, hindering the uniform application of the law if certain Member States interpret the AIA in highly idiosyncratic fashions. For instance, one may particularly think of the supervision of the limitations on surveillance tools using remote biometric identification.&nbsp;<\/li>\n\n\n\n<li>Novelli et al. consider the distinction between the Advisory Forum and the Scientific Panel less clear than the separation between the Board and the Office. They raise questions regarding the exclusivity of the Forum\u2019s support to the Board and the Commission, given that the Panel exclusively supports the AI Office directly, and whether the Panel&#8217;s specialized GPAI expertise could benefit these entities. The participation of the AI Office in Board meetings is an indirect channel for the Panel\u2019s expertise to influence broader discussions, but Novelli et al. consider this arrangement not entirely satisfactory. The Panel\u2019s specialized opinion may become less impactful, since the AI Office lacks voting power in the Board meetings.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h4 class=\"wp-block-heading\">4. Recommendations for robust governance of the AI Act<\/h4>\n\n\n\n<p>Building on their analysis, Novelli et al. envision the following important updates that should be made to the governance structure of the AI Act.&nbsp;<\/p>\n\n\n\n<h5 class=\"wp-block-heading\">4.1 Clarifying the institutional design of the AI Office<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Given the broad spectrum of tasks anticipated for the AI Office, more detailed organizational guidance is needed. Additionally, the Office\u2019s mandate lacks specificity concerning the criteria for selecting experts that are to carry out evaluations (<a href=\"https:\/\/artificialintelligenceact.eu\/recital\/164\/\" data-type=\"recital\" data-id=\"2720\">Recital 164<\/a> AIA).\u00a0<\/li>\n\n\n\n<li>Integrating the AI Office within the framework of the Commission may obscure its operational transparency, given the obligation to adhere to the Commission\u2019s general policies on communication and confidentiality. For example, the right for public access to Commission documents (Regulation (EC) No 1049\/2001) includes numerous exceptions that could impede the release of documents related to the AI Office. Novelli et al. give the exception of documents that would compromise \u201c[&#8230;] commercial interests of a natural or legal person, including intellectual property,\u201d a broadly defined provision lacking specific, enforceable limits. A narrower interpretation of these exceptions could be applied to the AI Office to help circumvent transparency issues.&nbsp;<\/li>\n\n\n\n<li>Further clarification regarding the AI Office\u2019s operational autonomy is required. Novelli et al. propose that this could come in the form of guidelines for decision-making authority, financial independence, and engagement capabilities with external parties.<\/li>\n\n\n\n<li>An alternative, potentially more effective approach would be establishing the AI Office as a decentralized agency with its legal identity, like EFSA and the EMA. This model would endow the AI Office with enhanced autonomy, including relative freedom from the political agendas at the Commission level, a defined mission, executive powers, and the authority to issue binding decisions. Novelli et al. observe some risk of agency drift, but state that empirical evidence suggests that the main interlocutors of EU agencies are \u201cparent\u201d Commission DGs.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">4.2 Integrating the Forum and the Panel into a single body<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Novelli et al. argue that consolidating the Forum and the Panel into a singular entity would reduce duplications and strengthen the deliberation process before reaching a decision. This combined entity would merge the knowledge bases of civil society, the business sector, and the academic community, which Novelli et al. expect to promote inclusive and reflective discussions of the needs identified by the Commission. They conclude that this approach could significantly improve the quality of advice to the Board, the Office, and the other EU institutions or agencies.&nbsp;<\/li>\n\n\n\n<li>Should merging the Forum and the Panel prove infeasible, an alternative solution could be to better coordinate their operations, through clear separations of scopes, roles, tasks, but unified reporting. Novelli et al. suggest producing a joint annual report consolidating contributions from the Forum and the Panel, cutting administrative overlap and ensuring a more unified voice to the Commission, Board, and Member States.&nbsp;<\/li>\n\n\n\n<li>Merging or enhancing coordination between the Forum and the Panel favors robust governance of the AIA by streamlining advisory roles for agility and innovation, also in response to disruptive technological changes.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">4.3 Coordinating overlapping EU entities: the case for an AI Coordination Hub<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>As AI technologies proliferate across the EU, collaboration among regulatory entities becomes increasingly critical, especially when introducing new AI applications intersects with conflicting interests. A case in point is the decision by Italy\u2019s data protection authority to suspend ChatGPT. Novelli et al. consider it crucial to incorporate efficient coordination mechanisms within the EU\u2019s legislative framework.&nbsp;<\/li>\n\n\n\n<li>Furthermore, they see the establishment of a centralized platform, the European Union Artificial Intelligence Coordination Hub (EU AICH), emerging as a compelling alternative. Novelli et al. argue that establishing such a hub will elevate the uniformity of AIA enforcement significantly, while improving operational efficiency and reducing inconsistencies in treating similar matters.<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">4.4 Control of AI misuse at the EU level<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The absence of authority for the AI Board to revise or address national authorities\u2019 decisions, presents a notable gap in ensuring consistent AI regulations. This is concerning, especially regarding the AIA\u2019s restrictions on surveillance tools, including facial recognition technologies.&nbsp;<\/li>\n\n\n\n<li>Without the ability to correct or harmonize national decisions, there\u2019s a heightened risk that AI could be misused in some Member States, potentially facilitating the establishment of illiberal surveillance regimes, and stifling legitimate dissent. Novelli et al. underscore the need for a mechanism within the AI Board to ensure uniform law enforcement and prevent AI\u2019s abusive applications, especially in sensitive areas like biometric surveillance.<\/li>\n<\/ul>\n\n\n\n<h5 class=\"wp-block-heading\">4.5 Learning mechanisms<\/h5>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Given their capacity for more rapid development and adjustment, Novelli et al. see the agility of nonlegislative acts as an opportunity for responsive governance in AI. However, they note that the agility of the regulatory framework must be matched to the regulatory bodies\u2019 adaptability. Inter- and intra-agency learning and&nbsp; collaboration mechanisms are essential for addressing AI\u2019s multifaceted technical and societal challenges. They suggest that specific ex-ante and ex-post review obligations could be introduced.&nbsp;<\/li>\n\n\n\n<li>More importantly, Novelli et al. propose that a dedicated unit, for example, within the AI Office should be tasked with identifying best and worst practices <em>across all<\/em> involved entities (from the Office to the Forum). Liaising with Member State competence centers, such a unit could become a hub for institutional and individual learning and refinement of AI, within and beyond the scope of the AIA framework.&nbsp;<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">References<\/h3>\n\n\n\n<p>Novelli, Claudio and Hacker, Philipp and Morley, Jessica and Trondal, Jarle and Floridi, Luciano, A Robust Governance for the AI Act: AI Office, AI Board, Scientific Panel, and National Authorities (May 5, 2024). Available at SSRN: <a href=\"https:\/\/ssrn.com\/abstract=4817755\" target=\"_blank\" rel=\"noreferrer noopener\">https:\/\/ssrn.com\/abstract=4817755<\/a> or <a href=\"http:\/\/dx.doi.org\/10.2139\/ssrn.4817755\" target=\"_blank\" rel=\"noreferrer noopener\">http:\/\/dx.doi.org\/10.2139\/ssrn.4817755<\/a>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In their recent publication on robust European AI governance, Claudio Novelli, Philipp Hacker, Jessica Morley, Jarle Trondal, and Luciano Floridi pursue two main objectives: explaining the governance framework of the AI Act and providing recommendations to ensure its uniform and coordinated execution (Novelli et al., 2024). The following provides a selective overview of the publication, [&hellip;]<\/p>\n","protected":false},"author":8,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"off","_et_pb_old_content":"","_et_gb_content_width":"","_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-4672","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"meta_box":[],"_links":{"self":[{"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/posts\/4672","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/comments?post=4672"}],"version-history":[{"count":25,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/posts\/4672\/revisions"}],"predecessor-version":[{"id":4732,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/posts\/4672\/revisions\/4732"}],"wp:attachment":[{"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/media?parent=4672"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/categories?post=4672"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/artificialintelligenceact.eu\/wp-json\/wp\/v2\/tags?post=4672"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}