Episode Summary

In this episode of TechUnhinged, host Rabia Javeed sits down with Risto Uuk, Head of European Policy and Research at the Future of Life Institute, who has spent five years on the Act’s general-purpose AI rules. Risto argues that the rules for the biggest models are not the weak point; the open question is whether anyone will enforce them. He explains why training compute is a proxy for danger rather than a measure, why the Code of Practice was built from the labs’ own safety frameworks, and how the rules reach a company with no office in Europe. He also walks through the agent that broke out of a test environment and hacked third-party infrastructure.

Key Takeaways:

  • Enforcement escalates in stages, starting with dialogue and formal information requests, with fines and market withdrawal held back as later steps rather than opening moves
  • Training compute is the clearest trigger for the systemic risk tier, but it is a proxy, and the Commission can also designate a model on capability evidence, user reach, or an alert from its scientific panel
  • EU AI Act compliance follows the market, not the address, so a provider with no European office or payroll is in scope once the model is placed on the EU market, and must appoint an authorized representative in the Union first
  • The Code of Practice is voluntary and refusing to sign carries no penalty, but the underlying obligations apply either way, and the Commission has signaled it may scrutinize companies that stayed out
  • The code was assembled from risk frameworks and voluntary commitments the largest labs already publish, which makes most of it a codification of existing practice rather than a new invention
  • Serious incidents from systemic risk models have to be tracked, documented, and reported to the AI Office, and running a model in a sandbox with safeguards switched off does not remove that duty

Guest Bio:

Risto Uuk is Head of European Policy and Research at the Future of Life Institute in Brussels, where he has worked on EU AI policy since 2021 and contributed to the general-purpose AI and systemic risk provisions of the EU AI Act. He has researched AI and economic futures at the World Economic Forum and Stanford’s Digital Economy Lab. He created the EU AI Act Newsletter, now read by more than 50,000 subscribers. Risto is a PhD researcher at KU Leuven and is co-authoring The AI Endgame for Wiley.

Resources: