BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//ShieldPage//Regulatory Calendar//EN
CALSCALE:GREGORIAN
X-WR-CALNAME:ShieldPage — EU Regulatory Calendar
X-WR-CALDESC:EU compliance milestones with set-in-motion lead times. Source: REGULATORY-CALENDAR.md — verify dates before acting; they move.
BEGIN:VEVENT
UID:sp-cra-report-setinmotion@shieldpage.com
DTSTART;VALUE=DATE:20260824
SUMMARY:🚨 SET IN MOTION: CRA reporting obligations (T-18 days)
DESCRIPTION:CRA vulnerability/incident reporting applies Sept 11. Actions: publish explainer article\; identify which clients are CRA "manufacturers"\; prep Slack/email note to affected clients.
END:VEVENT
BEGIN:VEVENT
UID:sp-cra-report-t0@shieldpage.com
DTSTART;VALUE=DATE:20260911
SUMMARY:⚖️ CRA: vulnerability & incident reporting applies
DESCRIPTION:Manufacturers of products with digital elements must report actively exploited vulnerabilities (24h early warning to CSIRT/ENISA). Day-of coverage + social.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-marking-t90@shieldpage.com
DTSTART;VALUE=DATE:20260903
SUMMARY:SET IN MOTION (T-90): AI Act machine-readable marking (Dec 2)
DESCRIPTION:Transitional deadline for pre-Aug-2026 generative systems to implement machine-readable marking of synthetic content. Actions: cornerstone article\; check our own widget/content tooling angle\; product: AI-disclosure scanner module timing.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-marking-t30@shieldpage.com
DTSTART;VALUE=DATE:20261102
SUMMARY:FINAL PUSH (T-30): AI Act marking deadline Dec 2
DESCRIPTION:Client comms to AI-using tenants\; refresh Article-50 article with marking section\; countdown social posts.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-marking-t0@shieldpage.com
DTSTART;VALUE=DATE:20261202
SUMMARY:⚖️ AI Act: machine-readable marking transitional deadline
DESCRIPTION:Also end of grace period for Digital Omnibus Art.5 prohibition safeguards. Day-of coverage.
END:VEVENT
BEGIN:VEVENT
UID:sp-datapriv-day-2027@shieldpage.com
DTSTART;VALUE=DATE:20270128
RRULE:FREQ=YEARLY
SUMMARY:📅 Data Privacy Day + CNIL priorities review
DESCRIPTION:CNIL publishes annual enforcement priorities around now. Review + article\; update REGULATORY-CALENDAR.md watchlist.
END:VEVENT
BEGIN:VEVENT
UID:sp-commission-wp-2027@shieldpage.com
DTSTART;VALUE=DATE:20270215
RRULE:FREQ=YEARLY
SUMMARY:📅 Commission work programme + EDPB coordinated action check
DESCRIPTION:New proposals appear/withdraw in the work programme (ePrivacy Reg was withdrawn in 2025's). Check Digital Fairness Act status\; EDPB coordinated enforcement topic.
END:VEVENT
BEGIN:VEVENT
UID:sp-gdpr-anniversary@shieldpage.com
DTSTART;VALUE=DATE:20270525
RRULE:FREQ=YEARLY
SUMMARY:📅 GDPR anniversary — enforcement stats content moment
DESCRIPTION:Annual enforcement roundups publish\; data-driven article opportunity.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-highrisk-t180@shieldpage.com
DTSTART;VALUE=DATE:20270605
SUMMARY:SET IN MOTION (T-180): AI Act high-risk Annex III (Dec 2 2027)
DESCRIPTION:Deferred by Digital Omnibus from Aug 2026. Cornerstone content\; assess which clients have Annex III systems\; product: high-risk readiness checklist feature.
END:VEVENT
BEGIN:VEVENT
UID:sp-cra-full-t180@shieldpage.com
DTSTART;VALUE=DATE:20270614
SUMMARY:SET IN MOTION (T-180): CRA full application (Dec 11 2027)
DESCRIPTION:Essential cybersecurity requirements + CE marking for products with digital elements. Content + client assessment.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-highrisk-t90@shieldpage.com
DTSTART;VALUE=DATE:20270903
SUMMARY:FINAL PUSH (T-90): AI Act high-risk Annex III
DESCRIPTION:Client comms\; refresh cornerstone\; countdown campaign (verify date hasn't moved again first).
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-highrisk-t0@shieldpage.com
DTSTART;VALUE=DATE:20271202
SUMMARY:⚖️ AI Act: high-risk obligations apply (Annex III)
DESCRIPTION:Risk management\, data governance\, logging\, human oversight\, conformity assessment for standalone high-risk AI. (Deferred date per Digital Omnibus\, OJ 2026-07-24.)
END:VEVENT
BEGIN:VEVENT
UID:sp-cra-full-t0@shieldpage.com
DTSTART;VALUE=DATE:20271211
SUMMARY:⚖️ CRA: full application (essential requirements + CE marking)
DESCRIPTION:Products with digital elements need CE-marked cybersecurity compliance. Day-of coverage.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-annex1-t180@shieldpage.com
DTSTART;VALUE=DATE:20280204
SUMMARY:SET IN MOTION (T-180): AI Act high-risk Annex I (Aug 2 2028)
DESCRIPTION:AI embedded in products under EU product-safety law. Content + client scan.
END:VEVENT
BEGIN:VEVENT
UID:sp-aiact-annex1-t0@shieldpage.com
DTSTART;VALUE=DATE:20280802
SUMMARY:⚖️ AI Act: high-risk obligations apply (Annex I embedded products)
DESCRIPTION:Final major AI Act application date under the Omnibus schedule.
END:VEVENT
END:VCALENDAR
