Scope & Methodology

The below aggregates all identified material regulatory updates, consultations, proposed legislation, major enforcement actions, and official guidance on Artificial Intelligence released by key global regulators and other trusted sources, strictly within the timeframe of February 25, 2026 – March 30, 2026.

Each entry is mapped by geography, regulatory authority, sector, and risk domain, with source links, and summaries.

Table of Contents

1. United States

FDA (U.S. Food and Drug Administration)

  • Title: CDER FRAME Initiative — Proposed ICH Guideline for Advanced Manufacturing Including AI

  • Citation/Identifier: March 2026

  • Regulator: U.S. Food and Drug Administration (FDA), Center for Drug Evaluation and Research (CDER)

  • Jurisdiction/Region: United States

  • Status: Ongoing Initiative (continuation of prior efforts)

  • Domain/Risk Area: Drug & Biologic Manufacturing, Digital Health, AI/ML in Manufacturing

  • Key Obligation Summary: CDER's FRAME initiative released a proposed International Council for Harmonisation (ICH) guideline for advanced manufacturing including AI, continuing prior efforts to clarify regulatory expectations for digital health and AI in drug and biologic manufacturing.

SEC (Securities and Exchange Commission)

  • Title: Continued Enforcement Against "AI Washing" in Securities Markets

  • Citation/Identifier: March 2026

  • Regulator: Securities and Exchange Commission (SEC)

  • Jurisdiction/Region: United States

  • Status: Ongoing Enforcement

  • Domain/Risk Area: Securities Fraud, AI Marketing Claims, Corporate Disclosure

  • Key Obligation Summary: SEC continues action against so-called "AI washing" by pursuing securities fraud cases involving exaggerated or false claims about AI in public filings and marketing, as in SEC v. Saniger.

  • Source Links:

EPA (Environmental Protection Agency)

  • Title: PEER FOIA Requests on EPA Use of AI Tools

  • Citation/Identifier: March 5, 2026

  • Regulator: Environmental Protection Agency (EPA) — subject of FOIA requests by Public Employees for Environmental Responsibility (PEER)

  • Jurisdiction/Region: United States

  • Status: FOIA Investigation (no regulatory action by EPA)

  • Domain/Risk Area: AI in Environmental Monitoring, Chemical Assessment, Workforce Surveillance

  • Key Obligation Summary: Public Employees for Environmental Responsibility (PEER) filed multiple FOIA requests seeking EPA records on use of AI tools for monitoring, chemical assessment, and internal workforce surveillance. No new EPA rules, enforcement, or public consultations regarding AI were issued in this window.

  • Source Links:

NIST (National Institute of Standards and Technology)

  • Title: CSF 2.0 Quick-Start Guides (SP 1308 Final & SP 1347 Draft)

  • Citation/Identifier: March 23, 2026

  • Regulator: National Institute of Standards and Technology (NIST)

  • Jurisdiction/Region: United States

  • Status: SP 1308: Final; SP 1347: Initial Draft (open for comment through May 6, 2026)

  • Domain/Risk Area: Cybersecurity Risk Management, AI Deployments, Standards Mapping

  • Key Obligation Summary: NIST SP 1308 (Final) integrates cybersecurity risk management (including for AI deployments) into broader enterprise frameworks. NIST SP 1347 (Initial Draft) addresses informative references and the use of AI tools for mapping standards; open for comment through May 6, 2026.

  • Title: AI 800-4 — Challenges to the Monitoring of Deployed AI Systems

  • Citation/Identifier: March 2026

  • Regulator: National Institute of Standards and Technology (NIST)

  • Jurisdiction/Region: United States

  • Status: Final Report

  • Domain/Risk Area: AI Monitoring, Post-Deployment Risk, Operational AI Governance

  • Key Obligation Summary: Report details six monitoring categories (functionality, operational, human factors, distribution, external, and design-time) and key monitoring challenges in production AI systems.

  • Title: GSA–NIST Joint Initiative on AI Model Evaluation Standards for Federal Agencies

  • Citation/Identifier: March 18, 2026

  • Regulator: General Services Administration (GSA), National Institute of Standards and Technology (NIST)

  • Jurisdiction/Region: United States

  • Status: Initiative Launch (partnership announcement)

  • Domain/Risk Area: AI Evaluation, Federal Procurement, Standards Development

  • Key Obligation Summary: GSA and NIST announced a joint initiative to develop AI model evaluation standards for federal agencies.

2. European Union & UK

European Commission / Parliament

  • Title: Parliamentary Committees Adopt Proposed Amendments to the EU AI Act

  • Citation/Identifier: March 18, 2026

  • Regulator: European Parliament (Internal Market and Civil Liberties committees)

  • Jurisdiction/Region: European Union

  • Status: Draft Legislative Amendments (awaiting plenary vote and trilogue negotiations)

  • Domain/Risk Area: AI Governance, High-Risk AI Systems, Prohibited Practices, SME Compliance

  • Key Obligation Summary: Parliament's Internal Market and Civil Liberties committees adopted proposed legislative amendments to the EU AI Act including:

    • Delays in high-risk system compliance deadlines: Extended to December 2, 2027, and August 2, 2028, for different categories.

    • Ban on "nudifier" AI systems: Systems that generate non-consensual intimate imagery of identified persons would be prohibited.

    • Streamlined SME measures, requirements for AI literacy, and personal data processing clarifications.

  • Source Links:

Status: Draft legislative amendments under negotiation. Awaiting plenary vote and trilogue negotiations with Council and Commission.

EMA (European Medicines Agency)

  • Title: Enhancement of AI-Enabled Scientific Explorer Tool

  • Citation/Identifier: March 2026

  • Regulator: European Medicines Agency (EMA)

  • Jurisdiction/Region: EU/EEA

  • Status: Tool Enhancement (operational)

  • Domain/Risk Area: Medicines Regulation, AI-Driven Regulatory Decision Support

  • Key Obligation Summary: EMA enhanced the AI-enabled Scientific Explorer tool. Expanding regulators' and authorities' access to cross-dataset precedent search for regulatory decision support. Regulatory sandboxes discussed as a future tool for digital health and AI approval pathways; formal establishment or launch not confirmed in this window.

  • Source Link: EMA AI Tools Page

Status: Tool enhancement; sandbox initiatives at concept/discussion stage, not launched.

EDPB (European Data Protection Board) / ENISA

  • Title: EDPB-EDPS Joint Opinion 3/2026 on the European Biotech Act

  • Citation/Identifier: March 12, 2026

  • Regulator: European Data Protection Board (EDPB), European Data Protection Supervisor (EDPS)

  • Jurisdiction/Region: European Union

  • Status: Formal Regulatory Opinion (non-binding consultation/advice)

  • Domain/Risk Area: Data Protection, AI & Health Data, GDPR Compliance

  • Key Obligation Summary: Joint opinion addressing AI's impact on GDPR and health data compliance within the context of the European Biotech Act.

United Kingdom

  • Title: Government Report on Copyright and Artificial Intelligence

  • Citation/Identifier: March 18, 2026

  • Regulator: UK Government (in line with the Data (Use and Access) Act 2025)

  • Jurisdiction/Region: United Kingdom

  • Status: Policy/Impact Assessment Published (no legislative instruments or consultations registered)

  • Domain/Risk Area: Copyright, Text & Data Mining (TDM), Personality Rights, AI-Generated Works

  • Key Obligation Summary:

    • Shift in TDM/Copyright strategy: Dropped the broad text/data mining (TDM) exception plan in favour of monitoring and evidence-gathering.

    • Planned 2026 consultation: On digital replicas/personality rights; proposal to remove copyright for fully computer-generated works.

    • No new statutory instruments or regulations on AI were added to legislation.gov.uk during the 30-day window.

Status: Policy and impact assessment published; no legislative instruments or consultations registered.

3. Asia-Pacific (APAC)

Australia

  • Title: National Expectations for Data Centres and AI Infrastructure

  • Citation/Identifier: March 23, 2026

  • Regulator: Australian Federal Government

  • Jurisdiction/Region: Australia

  • Status: Guidance Published (non-binding)

  • Domain/Risk Area: AI Infrastructure, National Security, Sustainability, Investment Policy

  • Key Obligation Summary: Federal government published national expectations outlining priorities: onshore infrastructure, national security, clean energy, sustainability, local job creation, and innovation for AI, intended as non-binding compliance and investment signals.

Singapore

  • Title: Ministry of Law Guide for Generative AI in Law

  • Citation/Identifier: March 6, 2026

  • Regulator: Ministry of Law (MinLaw)

  • Jurisdiction/Region: Singapore

  • Status: Guidance Published

  • Domain/Risk Area: Legal Ethics, Confidentiality, Transparency, GenAI in Legal Practice

  • Key Obligation Summary: Emphasises legal ethics, confidentiality, and transparency for lawyers' use of Generative AI.

  • Title: HSA & MOH AI in Healthcare Guidelines (AIHGle 2.0)

  • Citation/Identifier: March 10, 2026

  • Regulator: Health Sciences Authority (HSA), Ministry of Health (MOH)

  • Jurisdiction/Region: Singapore

  • Status: Updated Guidelines (version 2.0)

  • Domain/Risk Area: Healthcare AI, Accountability, Transparency, GenAI Safety

  • Key Obligation Summary: Augmented accountability, transparency, and focus on safe use of GenAI with periodic update requirements.

  • Title: MAS AI Risk Management Toolkit (Project MindForge, Phase 2)

  • Citation/Identifier: March 20, 2026

  • Regulator: Monetary Authority of Singapore (MAS)

  • Jurisdiction/Region: Singapore

  • Status: Toolkit Release (Phase 2)

  • Domain/Risk Area: Financial Services AI, Lifecycle Controls, Risk Management, GenAI/Agentic AI Oversight

  • Key Obligation Summary: Phase 2 of Project MindForge provides lifecycle controls, risk management, and GenAI/agentic AI oversight for financial institutions.

  • Source Link: MAS Media Release

  • Title: ONE Pass (AI & Tech) Employment Scheme

  • Citation/Identifier: March 3, 2026 (effective January 2027)

  • Regulator: Government of Singapore

  • Jurisdiction/Region: Singapore

  • Status: Announced (effective January 2027)

  • Domain/Risk Area: AI Talent Policy, Immigration, Tech Employment

  • Key Obligation Summary: New AI/tech employment pass scheme announced, effective January 2027.

Status: Sectoral AI governance and risk management tools issued; talent policy announced.

China

  • Title: Ministry of Justice — Acceleration of Research on AI Legislation

  • Citation/Identifier: March 12, 2026

  • Regulator: Ministry of Justice

  • Jurisdiction/Region: China

  • Status: Legislative Planning (research phase)

  • Domain/Risk Area: AI Legislation, Innovation–Risk Balance, National Regulatory Framework

  • Key Obligation Summary: Ministry of Justice announced acceleration of research on AI legislation for balancing innovation and risk management.

  • Title: Guangdong Province AI One-Person Companies (OPC) Action Plan (2026–2028)

  • Citation/Identifier: March 16, 2026

  • Regulator: Guangdong Provincial Government

  • Jurisdiction/Region: China (Guangdong, provincial)

  • Status: Action Plan Released

  • Domain/Risk Area: AI Entrepreneurship, SME/Solo Business Support, Provincial Economic Policy

  • Key Obligation Summary: Released an action plan (2026–2028) supporting solo AI entrepreneurs through the one-person company framework.

  • Source Link: Guangdong AI Policy

Status: High-level legislative planning and provincial economic action; draft regulations under research.

South Korea

  • Title: AI Basic Act — Commencement and Interpretation

  • Citation/Identifier: March 2026 (Act entered into force January 22, 2026)

  • Regulator: Government of South Korea

  • Jurisdiction/Region: South Korea

  • Status: In Force (implementation and subordinate regulations underway)

  • Domain/Risk Area: AI Governance, Risk Classification, Human Oversight, Deepfake Regulation, Compliance

  • Key Obligation Summary: Main regulatory update is the ongoing commencement and interpretation of the AI Basic Act, including:

    • Tiered risk-based AI classification (high-impact, generative, high-performance)

    • Explicit human oversight and explainability requirements

    • Watermarking of deepfakes

    • Compliance obligations for AI business operators

    • No new laws or enforcement cases launched within this window; implementation and subordinate regulations underway.

  • Source Links:

Status: Major framework law in effect; sector guidance and future privacy/copyright reforms planned.

Further Reading