The EU AI Act, Article 50: what 'AI content transparency' means from August 2026
AI Technology

The EU AI Act, Article 50: what 'AI content transparency' means from August 2026

Article 50 of the EU AI Act becomes applicable on 2 August 2026. It requires AI providers to disclose direct interaction, mark synthetic content as machine-readable and detectable, and flag deepfakes and AI-written public-interest text. Here is what the article requires and where content provenance fits, and where it does not.

S
Swiss Trust Layer Editorial Team· Legal Technology Analysis
·July 20, 2026· 6 min read
The EU AI Act, Article 50: what 'AI content transparency' means from August 2026 — Swiss Trust Layer

From 2 August 2026, Article 50 of the EU AI Act becomes applicable. It is the provision that deals with transparency toward the people who see, hear, or talk to AI output. Most coverage of the Act focuses on high-risk system rules. Article 50 is different. It applies far more broadly, to any provider or deployer whose system talks to a person or generates synthetic content, and it is the part most content, marketing, and AI-product teams will feel first.

Here is what the article actually requires, what the European Commission has published to help meet it, and where document and content provenance fits, and where it does not.

What Article 50 requires

The article sets out four separate obligations, each aimed at a different situation:

  • Direct interaction disclosure. Providers of AI systems intended to interact directly with natural persons must ensure people are informed they are dealing with an AI system, unless this is obvious from the circumstances.
  • Machine-readable and detectable marking. Providers of systems that generate synthetic audio, image, video, or text content must ensure the output is marked in a machine-readable format and detectable as artificially generated or manipulated. Both properties are required, a label a person can read is not sufficient on its own if the content cannot also be detected as synthetic by a downstream system.
  • Public-interest disclosure for deepfakes and AI text. Deployers of systems generating deepfakes, and deployers of AI systems generating or manipulating text published to inform the public on matters of public interest, must disclose that the content has been artificially generated or manipulated.
  • Emotion-recognition and biometric-categorization notice. Deployers of emotion-recognition or biometric-categorization systems must inform the natural persons exposed to them of the system's operation.

Each obligation carries its own exceptions and edge cases in the full article text, and the exact technical form the marking must take is still being worked out in practice rather than fixed by the regulation itself.

The Commission's Code of Practice

On 10 June 2026, the European Commission published a Code of Practice on Transparency of AI-Generated Content. It is a voluntary framework, not a binding standard, aimed at helping providers and deployers meet the marking and disclosure duties in Article 50(2), (4), and (5). Signing up to the code is one route to demonstrating good-faith compliance, but it is not the only route, and it does not replace the underlying legal obligation. Organisations can meet Article 50 through other technical and organisational measures as long as the outcome (informed users, detectable synthetic content, disclosed deepfakes) is achieved.

For the current text of the obligation itself, the AI Act Service Desk's Article 50 page is the Commission's own reference point and is worth checking directly rather than relying on secondary summaries, including this one.

Enforcement and penalties

Article 50 is enforced by national market surveillance authorities in each EU member state, not by a single central regulator. Non-compliance can result in fines of up to fifteen million euros or 3% of worldwide annual turnover, whichever is higher. That places transparency violations in the same penalty band as several other AI Act obligations, well above what most companies budget for a documentation gap.

Where provenance sealing fits, and where it does not

This is where we want to be precise rather than promotional. A qualified, timestamped seal on a document or media file establishes two things: that a specific file existed in a specific state at a specific time, and, at the QES tier under ZertES and eIDAS, who created or authorised it. That is a form of content provenance, and provenance is adjacent to what Article 50(2) is asking for: a way to tell, after the fact, whether a piece of content is what it claims to be.

It is not the same thing as the machine-readable, detectable AI-content marking Article 50(2) describes, and it should not be presented as such. The Act is asking for a marking mechanism embedded in or attached to the generated content itself, of the kind the Commission's Code of Practice and related technical standards work are still specifying. A Swiss Trust Layer seal proves what a document was and, at the qualified tier, who stands behind it. That is complementary evidence an organisation can point to when demonstrating good-faith provenance practices around AI-adjacent content such as training records, model documentation, or disclosure logs, not a substitute for whatever specific technical marking standard applies to the AI-generated output itself.

Teams building AI products who also generate or rely on datasets should also look at how training-data provenance is documented and defended, a related but separate obligation under the Act's data-governance provisions. Our AI dataset provenance page covers that side of the compliance picture in more detail.

What to do before 2 August

Three practical steps for teams with any AI-facing surface. First, map every system in your product that interacts directly with a user or generates audio, image, video, or text, and note which of the four obligations applies to each. Second, decide whether you are relying on the Commission's Code of Practice, your own technical measures, or a combination, and document that decision. Third, keep a dated record of what your disclosure and marking practices were at each point in time, since a dispute about compliance will turn on what was actually in place on a given date, not on a policy written after the fact.

Article 50 rewards organisations that can show their work. A clear, timestamped record of your compliance decisions is worth having regardless of which specific marking technology you end up standardising on.

Protect your work with Swiss Trust Layer AG

Seal your intellectual property with a court-proof e-Seal backed by Swisscom Trust Services.

Book a Free Demo

Related Articles

C2PA content credentials aren't enough on their own
AI & Technology

C2PA content credentials aren't enough on their own

C2PA Content Credentials give AI-generated content a signed history, but the metadata is routinely stripped by re-uploads, screenshots, and platform recompression. Here is what the standard actually verifies, where it breaks down in practice, and why an independent, qualified timestamp is worth adding alongside it.

July 21, 2026Read more →
For UAE company-formation firms: sealed, verifiable corporate documents
Country Markets

For UAE company-formation firms: sealed, verifiable corporate documents

UAE company formation runs through a chain of documents, from the Memorandum of Association to shareholder resolutions and powers of attorney, that pass through several parties before a license is issued. Here is what a sealed, timestamped record adds for corporate-services firms handling multi-jurisdiction incorporations, and where it fits alongside UAE notarization and attestation requirements.

July 26, 2026Read more →
Signing legally in the UAE with UAE Pass: a simple guide
Country Markets

Signing legally in the UAE with UAE Pass: a simple guide

UAE Pass is the UAE's national digital identity and e-signature platform, backed by Federal Decree-Law No. 46 of 2021. Here is when UAE Pass is enough on its own, and when a document needs a signature built for recognition outside the UAE too.

July 24, 2026Read more →
Voice cloning and consent: proving you had the right to use a voice
AI & Technology

Voice cloning and consent: proving you had the right to use a voice

Voice cloning consent disputes are rarely about whether permission was given. They are usually about whether anyone can prove exactly what was agreed and when. Here is why right-of-publicity law for voice varies by jurisdiction, what EU AI Act Article 50 adds on top of consent, and where a qualified timestamp actually helps, and where it does not.

July 23, 2026Read more →
How AI companies prove training-data provenance and defend copyright claims
AI & Technology

How AI companies prove training-data provenance and defend copyright claims

AI companies face two distinct exposures when training models: EU AI Act Article 10's data governance requirements, and civil copyright claims over training data. Here is what a defensible dataset provenance record actually needs, and what a qualified timestamp on a dataset hash can and cannot prove.

July 22, 2026Read more →