Knowledge · Rules
Is this allowed?
EU AI Act, GDPR, disclosure. Written so your legal team can read it without a translation layer — and your marketing team without a law degree.
The three questions under the question.
- Do I have to say AI made this?
- Sometimes. The EU AI Act draws the line at synthetic media and chatbots presenting as humans, not at every AI-assisted sentence. The details are in the article below.
- Whose data went into this?
- GDPR did not move. What moved is how easy it became to feed personal data into tools that remember it. The safe pattern: agents work from approved material, not from whatever was pasted last.
- Who is accountable for the output?
- You are. Every regulator lands on the same principle: the deployer answers for what goes out. Which is why a named approver and a logged trail are not bureaucracy — they are the answer.
The articles
Four questions your legal team already asked.
9 min · updated Jul 2026
EU AI Act Article 50: what marketing must label now
The articles that touch marketing, the dates they apply, and what to do about each.
8 min · updated Jul 2026
Is ChatGPT GDPR-compliant for customer data?
Where the line runs, and the pattern that keeps you on the right side of it.
7 min · updated Jul 2026
What is shadow AI — and why do most tools run without IT sign-off?
Why blocking tools does not fix it, and what does.
7 min · updated Jul 2026
What must an AI audit trail record? (with an example log)
The fields that matter, and a worked example you can hand to your auditor.
How Tisser enforces this in practice: the contract, the gate and the trail.
Bring your compliance question.
If we do not know, we say so — and we do not bill you for the call.