Cleo
CompanyLegal Data
Request a demo
Anaelle GuezNaomie Halioua
Request a demo
Cleo

AI-powered regulatory intelligence.

contact@cleolabs.co

Solutions

  • Product Compliance

Company

  • About
  • Research
  • Blog
  • Compliance Guides

Jurisdictions

  • 🇪🇺 European Union
  • 🇫🇷 France
  • 🇩🇪 Germany
  • 🇬🇧 United Kingdom
  • 🇺🇸 United States

Legal

  • Privacy
  • Terms
  • Security

Events

  • VivaTech ParisJun 11–14, 2026

© 2026 Cleo Labs. All rights reserved.

GDPREU DataSOC 2 Type IIISO 27001
🇩🇪Germany

EU AI Act compliance in Germany

Germany is implementing the AI Act through its existing regulatory infrastructure. BaFin oversees AI in financial services, while the BSI handles AI cybersecurity aspects. The BNetzA may supervise AI in telecommunications.

Start free scan
Anaelle GuezNaomie Halioua
or book a call

Enforcement authority

To be designated; likely BNetzA (national coordinator) + BaFin, BSI, BfArM for sector-specific oversight

Maximum sanctions

AI Act penalties apply. Germany's decentralized enforcement means multiple authorities may issue sanctions depending on the AI application domain.

Key obligations

What EU AI Act requires from organizations operating in Germany.

Map AI systems to risk categories per the AI Act classification framework
Comply with sector-specific AI requirements from BaFin (finance) and BfArM (health)
Implement works council consultation for AI use in employment decisions
Follow BSI guidance on AI system security and resilience

Local context in Germany

Germany's federal structure means AI Act implementation will involve both federal and state-level authorities. The German AI Association (KI Bundesverband) actively engages with policymakers on implementation details.

EU AI Act by industry in Germany

Retail & Consumer GoodsHealthTechInsuranceEnergy & UtilitiesCosmetics & Personal CareElectronics & Connected Devices

Frequently asked questions

How does EU AI Act apply in Germany?

Germany is implementing the AI Act through its existing regulatory infrastructure. BaFin oversees AI in financial services, while the BSI handles AI cybersecurity aspects. The BNetzA may supervise AI in telecommunications.

Who enforces EU AI Act in Germany?

To be designated; likely BNetzA (national coordinator) + BaFin, BSI, BfArM for sector-specific oversight

What are the penalties for EU AI Act non-compliance?

AI Act penalties apply. Germany's decentralized enforcement means multiple authorities may issue sanctions depending on the AI application domain.

Read our complete EU AI Act compliance guide

EU AI Act in other jurisdictions

🇪🇺European Union🇫🇷France🇬🇧United Kingdom🇺🇸United States🇧🇷Brazil🇦🇺Australia🇮🇳India

Check your EU AI Act compliance now

Start free scan to see your risk score and applicable obligations.

Start free scan
Anaelle GuezNaomie Halioua
or book a call