Hael
Book a meeting
EU AI Act · Introduction

Does the EU AI Act apply to US companies?

Hael · Updated 6 July 2026 · 5 min read
Key takeaway
Yes, the EU AI Act can apply to US companies. Like the GDPR before it, the Act has extraterritorial reach. A company based in the United States is covered if it places an AI system on the EU market, puts one into service in the EU, or if the output produced by its AI system is used in the EU. Where your headquarters sits does not determine whether the Act applies; where your AI is sold or used does.
  • The EU AI Act applies to US companies whose AI reaches the EU market or whose AI output is used in the EU.
  • Scope is triggered by where AI is sold or used, not where the company is based.
  • It mirrors GDPR's extraterritorial logic, often becoming a de facto global standard.
  • For US vendors, EU AI Act readiness is increasingly a way to win European deals.
  • Current as of June 2026. This is general information, not legal advice.

What triggers scope for a US company

The Act applies to providers placing AI systems or GPAI models on the EU market or putting them into service in the EU, wherever the provider is established, and to deployers established or located in the EU. In practice, a US company selling AI into the EU, or whose system is used by an EU organisation, should assume scope and verify.

Why this mirrors GDPR

US companies learned the same lesson with GDPR: a European data-protection law reshaped global product and compliance practice because it applied to anyone handling EU residents' data. The EU AI Act follows the same logic for AI. For many US firms, EU requirements become the de facto global standard simply because it is easier to build one compliant product than two.

What US companies should do

The practical steps are the same as for any in-scope organisation. First, inventory your AI systems. Second, determine your role (provider or deployer) for each. Third, classify each system by risk tier, since the heavy obligations attach to high-risk and prohibited uses. A US vendor selling into European enterprises will increasingly be asked to evidence EU AI Act readiness during procurement, which makes readiness a commercial advantage, not only a legal requirement.

The deal-flow angle for US vendors

European enterprise buyers are already adding AI governance questions to their security and procurement reviews. For a US AI vendor, being able to answer those questions cleanly shortens the sales cycle and removes a blocker that can stall or kill a deal. Treating EU AI Act readiness as a sales enabler, rather than a box to tick, is the stronger position.

Key terms

Extraterritorial
Application of the law to entities outside the EU when their activity touches the Union.
Non-EU provider
A provider established outside the EU whose AI system reaches the EU market or whose output is used in the Union.
EU market
The market across the 27 Member States of the European Union.
GDPR comparison
The Act follows GDPR's pattern of binding non-EU companies when EU residents or markets are affected.

References

Free check

See where you stand on EU AI Act, free.

Answer a short set of questions and see what EU AI Act expects of your AI systems and where you stand today. No sign-up to see your result.

Applicability

Whether EU AI Act applies to how you use AI, and to which systems.

What is expected

Risk classification, governance, documentation and human oversight.

Where you stand

A banded result, pointed at the gaps that matter most.

What you get

On screen in about five minutes, pre-scoped to EU AI Act.

Or speak to us about your deadline. Book a meeting.