Skip to main content

EU Cloud and AI Development Act

In process AI Proposed Regulation

AI-assisted content notice: this page includes AI-assisted summaries, FAQs, and glossary entries prepared for navigation purposes. Verify the underlying legal text before relying on this content.

Current position & sources

Sources checked:

The Commission proposed the Cloud and AI Development Act on 3 June 2026. COM(2026)502 is under legislative consideration, with no adopted application date. It proposes measures for computing capacity, innovation and cloud sovereignty.

Summary

The Commission proposed the Cloud and AI Development Act on 3 June 2026. COM(2026)502 is under legislative consideration, with no adopted application date. It proposes measures for computing capacity, innovation and cloud sovereignty.

Who is affected?

Cloud providers, data centre operators, public bodies and Member States would be affected according to the final provisions adopted.

Scope

Proposed EU framework for cloud and AI development, accelerated data centre deployment and public-sector cloud adoption.

Key Points

  • A published proposal exists; it is not yet an adopted regulation.
  • The proposal combines research initiatives, infrastructure measures and a sovereignty framework.
  • Four assurance levels would distinguish different sovereignty requirements.
  • Draft recognition procedures distinguish level 1 self-assessment from independent audits for levels 2–4.
  • Draft deadlines measured from future entry into force are not fixed calendar obligations.

Key Deadlines

  • — Commission proposal published

Related Regulations

Frequently Asked Questions

Is CADA already law?

No. Parliament records a preparatory legislative phase.

What does it aim to change?

It aims to expand computing capacity and support innovation while reducing strategic dependencies.

Are sovereignty levels currently mandatory under CADA?

No. The proposed requirements depend on legislative adoption.

Does every proposed level require an independent audit?

No. The draft provides self-assessment for level 1 and independent audits for levels 2–4.

When would compliance begin?

No adopted application date exists. Monitor the legislative procedure before treating draft timing as binding.

Key Terms

Assurance level
A proposed category of cloud sovereignty requirements.
Data centre
A facility hosting computing infrastructure.
Self-assessment
A provider assessment of conformity, distinct from an independent audit.
Public procurement
Purchasing by public bodies.
Legislative proposal
A draft that must complete the legislative process before becoming law.