News and Insights

Practical updates on AI governance, workforce strategy, and digital resilience for EU organisations
Europe’s First Uber Robotaxi Still Has A Safety Operator France excludes OpenAI from cyber work Ten Days To Answer A European Production Order Your Vendor Can Leave You Holding The Provider Obligations UK growth: AI vendors, not AI users Two clouds. One jurisdiction. No regulator paused Astra. OpenAI did. US productivity up 1.4%, cause unproven Moldova’s GDPR law lands on 23 August

Stay ahead of AI change. Get practical updates from Future Prep direct to your inbox.

By subscribing you agree to receive Future Prep news. Unsubscribe any time.

Latest Insights

From the Future Prep blog

AI generated image - a closed playground gate with a blank inspection tag, representing safety by design and restricted access for under-13s

Safety by Design: The EU Flips the Burden of Proof

A special EU expert panel wants to flip the burden of proof for online child safety. Providers would have to show a service is safe by design before children under 13 could use it, and the same design features the Commission just cited against Meta are in scope.
AI generated image - a door with two separate keyholes, illustrating data sovereignty and third-country access to EU data.

Data Sovereignty: Europe Asks Who Can Reach Your Data

The European Commission has opened a targeted consultation on data sovereignty, running to 8 September. It asks who can reach European data and under whose law. The policy outcome is uncertain. The internal exposure map an honest answer requires is valuable whatever Brussels decides.
AI generated image - a sealed records cabinet with an official inspection tag, illustrating independent frontier AI safety audits.

Frontier AI Safety: Illinois Sets the Bar

A single US state has set a new bar for frontier AI safety, with recurring independent audits of the largest developers. European organisations are not bound by it. But the evidence it forces into the open changes what governance teams can now ask of their AI vendors.
AI generated image - a stonemason setting the foundation stones of a building already rising above, illustrating AI literacy as the groundwork under the AI Act.

AI Literacy: Lighter Rule, Higher Stakes

Brussels softened the AI literacy duty in the Digital Omnibus, from ensuring a sufficient level to supporting its development. But it was not delayed, it has applied since February 2025, enforcement begins this August, and the EU's skills agenda is turning literacy from a compliance checkbox into a competitiveness lever.
AI generated image - stepping-stone path to a distant gate, illustrating the Digital Omnibus AI Act deadlines that fall in 2026 before the 2027 high-risk dates.

Digital Omnibus: the AI Act Delay That Makes 2026 Busier, Not Quieter

The Council adopted the Digital Omnibus on 29 June, pushing high-risk AI Act obligations to 2027 and 2028. But the transparency and literacy duties that bite in 2026 did not move, and two new bans arrive sooner than the relief.
Abandoned apprentice bench and empty master bench with a broken path, showing a thinning junior talent pipeline.

The Junior Talent Pipeline: What AI Saves Now and Costs Later

A Swiss study shows entry-level office postings down a third since the pre-AI years. AI Is Not a Technology Project warns why that matters: automating junior tasks removes the apprenticeship that turns juniors into seniors, so the junior talent pipeline thins on a delay most business cases never model.

Latest News

Short updates

France excludes OpenAI from cyber work

French Budget Minister David Amiel said the state will hire sovereign AI providers such as Mistral to test public systems for security vulnerabilities, and that this excludes OpenAI. The decision came days after a breach at the tax authority affecting around 700,000 people. Jurisdiction is turning into a procurement filter, applied after an incident rather than in a strategy paper. Worth knowing which of your vendors would survive that filter.

UK growth: AI vendors, not AI users

Britain’s economy grew 0.4% in the second quarter and information and communication supplied almost half of it. Inside that, computer programming and consultancy rose 3.7%, computing and electronics manufacturing 10.7% year on year. So the measurable growth sits with the firms selling AI, not the firms using it. One economist attributes part of June’s rise to the World Cup and the weather. Adoption returns remain unmeasured.

Two clouds. One jurisdiction.

Ryanair has added Google Cloud on a five-year deal, sixteen days after renewing AWS for five years. Chief executive Eddie Wilson calls the dual-cloud strategy infrastructure resilience, and against outage risk it is. Jurisdictional exposure is a different question, and two US providers do not answer it. The two contracts also cover separate workloads rather than mirroring each other. Worth watching whether European boards start telling those two risks apart.

No regulator paused Astra. OpenAI did.

OpenAI says preliminary evaluations of Astra, an unreleased model, cannot rule out the Critical cybersecurity level under its own Preparedness Framework. It has paused internal work that fails the strengthened controls and added isolated testing, encrypted weights and universal monitoring. No regulator required this. For EU organisations the point is evidential: so far the only safety case that exists is the vendor’s own unverified reading, published before the model reaches any market.

US productivity up 1.4%, cause unproven

US nonfarm business productivity rose at a 1.4% annual rate in the second quarter, and 2.2% on the year. Output rose 1.7%, hours worked 0.3% and unit labour costs 1.3%. The release credits nothing to AI, because the series cannot separate one input from another. Revised figures follow on 3 September. Any AI business case leaning on this data is adding a claim the statistics do not carry.

Moldova’s GDPR law lands on 23 August

Moldova’s Law 195/2024 takes effect on 23 August, bringing GDPR-style duties and a regulator with fining powers. Ceilings are 1 million lei or 1% of turnover for documentation and processor failures, and 2 million lei or 2% for serious breaches. DLA Piper puts 2 million lei at roughly 104,000 euros. Fines phase in over three years. Controllers outside Moldova that serve or monitor people there have to appoint a local representative.

Scroll to Top