Digital Operational Resilience Act · European Union
DORA started applying
Financial entities became subject to the ICT risk, incident, testing, resilience, and third-party oversight requirements in DORA.
EUR-Lex — Regulation (EU) 2022/2554Selected EU and Swedish application dates, each linked to a primary source. A deadline is a planning signal—not a substitute for a scope assessment.
Subscribe by calendarReviewed 2026-08-16
Digital Operational Resilience Act · European Union
Financial entities became subject to the ICT risk, incident, testing, resilience, and third-party oversight requirements in DORA.
EUR-Lex — Regulation (EU) 2022/2554European Accessibility Act · European Union
Covered products and services, including e-commerce, banking, transport information, and electronic communications, must meet common accessibility requirements.
European Commission — European Accessibility ActEU Data Act · European Union
Rules on connected-product data access, sharing, cloud switching, public-emergency access, and unfair contractual terms started applying.
European Commission — Data ActNIS2 / Cybersäkerhetslagen · Sweden
Sweden’s Cybersecurity Act implements the main NIS2 duties, including registration, risk measures, management responsibility, and incident reporting.
Sveriges riksdag — Cybersäkerhetslag (2025:1506)EU Pay Transparency Directive · European Union
Member States were required to transpose the directive; employers should check the national rules governing recruitment, information rights, reporting, and remedies.
European Commission — pay transparency rulesEU AI Act · European Union
Article 50 transparency duties begin applying for relevant providers and deployers, including disclosure and machine-readable marking duties.
European Commission — AI Act timelineEU AI Act · European Union
The Commission can enforce the general-purpose AI model obligations that began applying in August 2025; legacy models have a later compliance date.
European Commission — GPAI provider guidanceEU Deforestation Regulation · European Union
Large and medium operators must meet the deforestation-free, legality, and due-diligence-statement requirements.
European Commission — Deforestation RegulationEU Deforestation Regulation · European Union
The later application date applies to micro and small operators, except those already covered by the former EU Timber Regulation.
European Commission — Deforestation RegulationEU AI Act · European Union
High-risk obligations begin for Annex III areas such as employment, education, biometrics, critical infrastructure, migration, and justice.
European Commission — AI Act timelineEU AI Act · European Union
The extended transition ends for high-risk AI embedded in regulated products such as machinery, medical devices, toys, and lifts.
European Commission — AI Act timeline