Reference Guide for Developers

EU Digital
Regulations

A comprehensive compendium of European Union regulations governing digital services, data protection, AI systems, and platform accountability.

12
Regulations
2026
Key Year
450M
Citizens Protected

All Regulations

Select a regulation to view its requirements, scope, and compliance guidance.

GDPR

General Data Protection Regulation

In Force

The foundational regulation governing personal data processing in the EU. Establishes principles for lawful processing, data subject rights, and accountability requirements.

ePrivacy Directive

Directive on Privacy in Electronic Communications

In Force

The "cookie law" governing electronic communications privacy, including consent requirements for tracking technologies and confidentiality of communications.

Data Governance Act

Regulation on European Data Governance

In Force

Creates framework for data sharing, data intermediaries, and data altruism organizations to increase data availability for the common good.

Data Act

Regulation on Harmonised Rules on Fair Access to and Use of Data

Upcoming

Grants users control over data generated by connected devices. Requires manufacturers to enable data access and portability.

Digital Services Act

Regulation on a Single Market for Digital Services

In Force

Comprehensive framework for platform accountability, content moderation, algorithmic transparency, and user protection online.

Digital Markets Act

Regulation on Contestable and Fair Markets in the Digital Sector

In Force

Establishes ex-ante rules for designated "gatekeeper" platforms to ensure fair competition and market contestability.

Platform Work Directive

Directive on Improving Working Conditions in Platform Work

Transitional

Protects gig economy workers through employment status presumptions, algorithmic management transparency, and data protection requirements.

NIS2 Directive

Directive on Security of Network and Information Systems

In Force

Enhanced cybersecurity requirements for essential and important entities, including incident reporting and risk management obligations.

Cyber Resilience Act

Regulation on Cybersecurity Requirements for Products with Digital Elements

Transitional

Mandatory cybersecurity requirements for hardware and software products throughout their lifecycle, including vulnerability handling.

DORA

Digital Operational Resilience Act

In Force

ICT risk management and operational resilience requirements for financial entities and their critical technology service providers.

AI Act

Regulation on Artificial Intelligence

Transitional

World's first comprehensive AI law. Establishes risk-based framework with prohibited practices, high-risk requirements, and GPAI obligations.

European Accessibility Act

Directive on Accessibility Requirements for Products and Services

Upcoming

Mandates accessibility for digital products and services, ensuring people with disabilities can access websites, apps, and digital interfaces.