
Europe just put ChatGPT in the same high-risk bucket as giant search engines, triggering the EU’s toughest online safety rules for the chatbot.
Story Snapshot
- The European Commission designated ChatGPT a Very Large Online Search Engine under the Digital Services Act.
- The move ties to scale: services with over 45 million monthly users in the European Union face stricter duties.
- The Digital Services Act and the European Union AI Act work together to police large, general-purpose AI systems.
- The Commission frames this as higher scrutiny and accountability, not a penalty or ban.
What the European Commission decided and why it matters
The European Commission designated ChatGPT as a Very Large Online Search Engine under the Digital Services Act. That status places the chatbot under extra duties designed for services that can shape information and public debate at scale. The Commission says these duties aim at systemic risks, such as illegal content or harms to fundamental rights, and require stronger oversight and reporting. The decision means regulators will expect proactive risk assessments and mitigation by the provider operating ChatGPT in the European Union.
The designation flows from a size test written into the law. The Digital Services Act sets higher obligations for services with at least 45 million monthly users in the European Union. Reporting in recent months described how regulators weigh user counts when deciding if a service enters the top tier of scrutiny. Officials have said ChatGPT’s growth in Europe placed it in scope once it crossed the threshold, bringing it under the strictest risk-management rules in the act.
How the Digital Services Act tightens duties on very large services
The Digital Services Act creates special rules for very large platforms and very large search engines. These rules focus on how a service’s design and algorithms can amplify risks across society. Providers must identify and reduce those risks, share data with regulators, and accept audits. The Commission presents this as a framework for accountability rather than punishment. The goal is to keep online spaces safer and more transparent as services grow to population scale in the European Union.
Very large services must run regular risk assessments and adjust systems when features could increase harm. They are expected to address threats tied to illegal content, discrimination, and civic harms. They also must give researchers access to certain data and explain key system choices to regulators. These steps mirror requirements already applied to the earliest set of very large platforms and search engines under the law. ChatGPT now joins that cohort for enhanced scrutiny within the common Digital Services Act playbook.
How the European Union AI Act intersects with the new designation
The European Union AI Act adds another layer for general-purpose AI. That law says the European Commission holds supervision and enforcement powers over providers of general-purpose AI models. It sets rules for transparency and safety duties higher up the chain, such as model documentation and testing. The AI Act entered into force in 2024 and now shapes how the European Union oversees broad AI systems, including those that power chatbots used by millions.
European Union leaders advanced the AI Act in 2024 and cast it as a global benchmark. Together with the Digital Services Act, it forms a twin-track approach: the Digital Services Act governs how very large services operate in the information space, while the AI Act governs how powerful models are built and supplied. The two frameworks meet at services like ChatGPT, where a general-purpose model sits behind a product that can affect users at scale across the European Union.
What changes for users, companies, and the wider political debate
For users, the change is not a ban and does not remove access. It means the provider behind ChatGPT must show stronger systems to find and reduce risks tied to content and safety. For the company, the designation brings audits, data-sharing, and tighter deadlines to fix problems. The Commission has said these steps aim to raise accountability as services reach mass adoption, not to pick winners or slow innovation across the region.
the EU just placed ChatGPT, Reddit, and Roblox under its strictest Digital Services Act oversight
crossing 45 million monthly active users in Europe triggers a four-month clock to implement strict risk assessments, minor protections, and algorithm auditshttps://t.co/6wetMejvnO
— rami context (@aicontext_) August 31, 2026
For the wider debate, this move fits a pattern. The European Union uses size-based triggers to activate strict rules when a product touches civic life at scale. The Commission has even warned its own staff in past guidance to avoid generative AI for critical work, citing accuracy and bias concerns. Supporters say the guardrails protect people and elections. Critics see heavy rules that large firms can manage while small challengers struggle to keep up.
Sources:
insiderpaper.com, reuters.com, wsj.com, commission.europa.eu, eur-lex.europa.eu























