EUAICheck is an educational simulator. We are not a law firm and have no affiliation with any official body.
EUAICheck is an independent educational simulator. This content is informational and does not constitute legal advice.

ChatGPT, Claude, Gemini: your EU AI Act obligations if you use a GPAI model

Updated: September 2026 - Articles 51-56 - Regulation (EU) 2024/1689

Since 2 August 2025, general-purpose AI models (GPAI) such as ChatGPT, Claude, Gemini or Llama have been subject to a specific regime. If your company uses one of these models to build a product or service, you have obligations.

Contents

  1. What is a GPAI model?
  2. GPAI provider obligations
  3. Your obligations as a deployer
  4. The Article 50 transparency obligation
  5. Systemic risk models

General-purpose AI models (GPAI) are models trained on large amounts of data and capable of performing a wide range of tasks: writing, code, analysis, conversation, image generation. Examples: GPT-4o (OpenAI), Claude 3.5 (Anthropic), Gemini (Google), Llama (Meta), Mistral.

1. What is a GPAI model?

According to Article 51 of the EU AI Act, a GPAI model is an AI model trained with a large amount of data using self-supervision at scale, that displays significant generality and is capable of competently performing a wide range of distinct tasks. The technical criterion: a threshold of 10^23 FLOP of compute used for training distinguishes standard GPAI models from systemic risk models.

2. Obligations of GPAI model providers (OpenAI, Anthropic, Google...)

3. Your obligations as a deployer of a GPAI model

If you use ChatGPT, Claude or Gemini via an API to build a product or service for European users, you are a deployer. Your main obligations:

Using a model from a major provider (OpenAI, Anthropic, Google) does not exempt you from your obligations. The model's compliance does not equal the compliance of your use of the model.

4. The Article 50 transparency obligation - in force since August 2026

This is the most immediate obligation for GPAI model deployers: since 2 August 2026, your users must know they are interacting with AI. In practice:

5. Systemic risk models (GPT-4, Claude, Gemini...)

Models exceeding 10^23 FLOP of compute (including GPT-4, Claude 3 Opus, Gemini Ultra) are subject to additional obligations imposed on their providers: adversarial evaluation, serious incident reporting, cybersecurity measures. For you as a deployer, these additional obligations do not directly change your responsibilities - they are the responsibility of the model provider.

Do you use an LLM in your product?

Check your obligations in 17 questions. Free educational simulator.

Start the simulator

Sources

EU AI Act vs RGPDDigital Omnibus