Transparency & Notice to Individuals
Clear notice to individuals when AI is used for consequential decisions and meaningful information about the logic involved.
Required by: NYC LL 144, EU AI Act, GDPR Art. 22, Colorado AI Act
Why this obligation matters
Transparency obligations under the EU AI Act work at three levels. First, Article 13 requires high-risk AI providers to design systems so deployers can interpret the output and use it appropriately. Second, Article 50 creates user-facing disclosure obligations: people interacting with chatbots, AI-generated content, deepfakes, and emotion-recognition or biometric-categorization systems must be informed.
The Article 50 obligations apply broadly, not only to high-risk systems. Any provider or deployer of a chatbot must disclose that the user is interacting with an AI. Any provider of a generative AI system must mark synthetic content as artificially generated in a machine-readable way, with limited exceptions.
Article 50 enforcement starts on August 2, 2026, the same date as the high-risk obligations.
What vendors typically provide
Vendors split into two camps. Content-provenance vendors (C2PA-aligned tooling, watermarking solutions) handle the machine-readable marking of synthetic content. Disclosure-management vendors (consent platforms, privacy tooling) handle the user-facing notice and consent flows.
Capabilities to look for:
- C2PA content credentials or equivalent provenance metadata for generated images, audio, video.
- Configurable disclosure banners and consent flows for chatbots and AI-driven interactions.
- Deepfake-labeling support in production pipelines.
- Multilingual disclosure templates aligned to the language requirements in Article 13(3)(b).
- Audit logs proving disclosures were shown to specific users at specific times.
Compliance checklist
- [ ] Identify every user-facing AI interaction in your product surface.
- [ ] For chatbots, ensure the user is informed they are interacting with AI before the first substantive message.
- [ ] For AI-generated content, embed machine-readable provenance metadata (C2PA or equivalent).
- [ ] For deepfakes, add clearly visible labels unless the law's narrow exceptions apply.
- [ ] For high-risk systems, draft the instructions for use required by Article 13.
- [ ] Match disclosure language to the natural language of the deployer's intended users.
- [ ] Log disclosures for audit, including timestamp and user identifier.
- [ ] Re-verify disclosure flows after every user-experience change.
Common gaps we see
The most frequent gap is the assumption that Article 50 only applies to deepfake makers and high-profile chatbot products. It applies to any chatbot interaction. Customer-support bots, internal HR assistants, sales-enablement copilots — all are in scope.
The second gap is provenance metadata that gets stripped at export. C2PA credentials embedded at generation time can be silently removed by image-processing pipelines downstream. Verify the credentials survive your full content pipeline.
The third gap is multilingual: Article 13(3)(b) requires instructions in a language easily understood by deployers in the relevant Member State. A single English-language disclosure does not satisfy this for an EU-wide deployment.
Regulator guidance and primary sources
- EU AI Act Article 13: Transparency for High-Risk AI
- EU AI Act Article 50: Transparency for Certain AI Systems
- C2PA Content Credentials specification — the most widely adopted provenance standard.
- European Commission AI Act FAQ on transparency — interpretive guidance from the AI Office.
Vendors that support this obligation
| Vendor | HQ | Founded | Size | Pricing | Last verified |
|---|---|---|---|---|---|
| Credo AI | Palo Alto, US | 2020 | 51-200 | Contact sales for enterprise subscription quote. Credo AI homepage | Apr 26, 2026 |
| CalypsoAI | Dublin, IE | 2018 | 51-200 | Enterprise licensing; contact sales for quote, depending on deployment (SaaS/on-prem/hybrid) and plan. | Apr 26, 2026 |
| Trustible | Arlington, United States | 2023 | 11-50 | Contact sales for enterprise pricing; no public plans listed | Apr 23, 2026 |
| FairNow | McLean, US | 2023 | 11-50 | Contact sales for quote; no public pricing listed | Apr 26, 2026 |