Regulation (EU) 2024/1689: Article 4
Article 4 of the AI Act has applied since February 2, 2025 and covers every company whose employees use artificial intelligence systems, including everyday use of ChatGPT, Claude, Gemini or Copilot. Since August 2, 2026 the national supervisory authorities are operational: from that date, inspections can start.
“Providers and deployers of AI systems shall take measures to ensure, to their best extent, a sufficient level of AI literacy of their staff and other persons dealing with the operation and use of AI systems on their behalf, taking into account their technical knowledge, experience, education and training and the context the AI systems are to be used in…”
In plain terms: if people in your organization use AI, you are required to make sure they can use it competently, in a way proportionate to role, context and risk. The obligation applies to companies of every size: the regulation sets no thresholds.
Providers (those who develop or market AI systems) and deployers (those who use them professionally). The second category is enormous: the professional firm using ChatGPT for email, the SME that switched on Copilot, the company running a support chatbot. Every size, every sector.
Real, proportionate skills: understanding what AI can do and where it fails, writing effective requests, recognizing hallucinations and biased output, protecting personal and confidential data, knowing when the decision must stay human. A written policy alone falls well short: it takes real, measurable, documented training.
Grace Certified turns the obligation into training your team actually enjoys: 520 real professional scenarios and a gym of everyday cases, AI evaluation across 7 dimensions with a 0-100 score, certifications with a public verification URL (valid 18 months) and team reports for the audit trail. A team starts the same day, and the first documentary evidence exists after the first week.
Yes. The obligation covers providers and deployers of AI systems of every size and sector: the regulation sets no size thresholds. If your staff uses AI at work, the obligation applies.
Yes. Anyone using third-party AI systems in a professional context is a "deployer": daily use of ChatGPT, Claude, Gemini or Copilot by employees falls squarely within Article 4.
A policy alone falls well short of the requirement: the regulation asks for a sufficient level of AI literacy, meaning real knowledge and skills, proportionate to each role and context of use. That takes actual training, measurable and documented.
National supervisory authorities have been operational on the AI Act since August 2, 2026. On top of that sits civil liability: if an untrained employee causes damage using AI, the company answers for it, and the lack of documented training weighs in any dispute.
Training proportionate to role, context and risks: understanding what AI can do and where it fails, using it safely on real cases from your own job, recognizing hallucinations and sensitive data. Practice on real scenarios with measurable evaluation is the most defensible form.
Who was trained, on what, when and with what outcome. Grace certifications carry a public verification URL and team reports show progress and scores per person: an audit trail ready to show.
With Grace a team starts the same day: people train on scenarios from their own sector, evaluation is instant and certifications come as levels are reached. The first documentary evidence exists after the first week.
Informational content updated July 2026: for a legal assessment of your specific situation, consult a professional. See also AI Hygiene & GDPR.
From our network
AGORÀ Intelligence: Enterprise AI Governance Platform
Govern AI at scale: policies, adoption and measurable results on your data. Built for boards and C-suite.
Visit agora-intelligence.com →From the Agora Intelligence blog
📱 Download the Android app (beta) iOS coming soon
Say what you mean. Get what you need.
Grace Certified, the AI coach that trains and certifies your prompt engineering, by Agora Intelligence.