Skip to main content
Does the Advisory Forum Actually Matter for Your AI Act Strategy?EU AI Act & GPAI
5 min readFor AI Governance Leaders

Does the Advisory Forum Actually Matter for Your AI Act Strategy?

Since the European Commission announced the 174-member Advisory Forum on June 1, 2026, governance teams have been asking: "Do we need to track this body?" "Will it change our compliance timeline?" "Should we try to influence it?"

These questions arise in working sessions, Slack channels, and governance committee meetings. They're practical, not academic. Here's what you need to know.

Understanding the Advisory Forum's Role

The Advisory Forum is part of the EU AI Act's governance structure, alongside the AI Board and the Scientific Panel. Established under Article 67, it provides technical expertise to the Commission and the Board. Unlike the Board, which has decision-making authority, or the Scientific Panel, which issues binding opinions on General-Purpose AI Models with Systemic Risk, the Forum is advisory.

This distinction is important. Advisory bodies can influence outcomes through standardization input and implementation guidance, but they don't set deadlines or make determinations. Your compliance obligations remain unchanged by the Forum's recommendations.

However, if you're building an AI Management System under ISO/IEC 42001 or preparing Technical Documentation (Annex IV) for a high-risk system, the Forum's work on standardization will affect the tools you use.

Monitoring the Forum's Activities

Yes, but selectively.

The Forum has two functions that directly affect your compliance work:

First, under Articles 40 and 41, the Commission must consult the Forum when preparing standardization requests and drafting common specifications. If you're waiting for harmonized standards to clarify how to meet AI Act requirements, the Forum's input will shape those standards. Track its standing sub-groups on standardization.

Second, the Forum can issue opinions and recommendations on the Act's implementation. These aren't binding, but they indicate where the Commission's thinking is heading. If you're making decisions on model validation tools or debating how to interpret "Instructions for Use" requirements, Forum opinions can help you anticipate regulatory guidance.

You don't need to read every Forum meeting summary. Subscribe to their annual reports (required under Article 67) and flag any sub-group work that touches your system categories.

The Forum's Size and Effectiveness

The Forum's large size doesn't necessarily make it ineffective.

Large multi-stakeholder bodies often work through sub-groups rather than plenary sessions. Article 67 allows the Forum to establish standing or temporary sub-groups to address specific questions. That's where the actual work happens.

The Forum's size reflects its balanced selection mandate: it must represent industry, start-ups, SMEs, civil society, and academia, balancing commercial and non-commercial interests. Within commercial members, it balances SMEs and larger organizations.

For you, this means the Forum's outputs will reflect negotiated positions across stakeholder groups. If you're an SME deploying a high-risk AI system, the SME representation should ensure your operational constraints are considered in standardization discussions. If you're in civil society pushing for stronger fundamental rights protections, you have a formal channel.

The five permanent members (the Fundamental Rights Agency, ENISA, CEN, CENELEC, and ETSI) provide continuity and technical grounding. ENISA's cybersecurity expertise matters if you're implementing Post-Market Monitoring with security controls. The three standardization bodies (CEN, CENELEC, ETSI) are there because harmonized standards are the primary compliance pathway for high-risk systems.

Influencing the Forum's Work

You can't directly lobby the Forum, but you can engage with its members' organizations.

Forum members serve two-year terms (renewable once, for a maximum of four years). They're appointed from stakeholder organizations with recognized AI expertise. If your industry association, research institution, or civil society group has a member on the Forum, that's your channel.

Engage in the public consultations that feed into the Forum's work. When the Commission consults the Forum on standardization requests under Article 40, there's usually a parallel public consultation. Your input there reaches the same decision-makers.

If you're building validation evidence for a General-Purpose AI Model and you think the draft standardization request misses critical technical requirements, submit detailed comments. The Forum's advice to the Commission will be stronger if it reflects real implementation challenges.

Impact on Compliance Timeline

Indirectly, but significantly.

High-risk AI systems can demonstrate conformity through harmonized standards or by directly meeting AI Act requirements. Most organizations prefer the harmonized standards route because it provides a clearer compliance path.

The Forum advises the Commission when it prepares standardization requests to CEN, CENELEC, and ETSI. Those requests define what the standards must cover. If the Forum pushes for detailed requirements on Reproducibility or Bias Mitigation in training data, the resulting standards will be more prescriptive and potentially more work to implement.

Your compliance timeline depends on when those standards are published and when they're cited in the Official Journal as harmonized standards. The Forum doesn't control that timeline, but its input affects the scope and complexity of the standards you'll eventually implement.

If you're in a regulated sector already subject to SR 11-7 or similar model risk management frameworks, you're likely ahead. The Forum's standardization work will formalize practices you already have.

What to Look for in Annual Reports

Three things:

Sub-group topics: Which standing or temporary sub-groups did the Forum establish? If there's a sub-group on Technical Documentation (Annex IV) for foundation models, that signals where implementation questions are emerging.

Standardization input: What did the Forum recommend on standardization requests? If it pushed for stronger requirements on Post-Market Surveillance or AI System Impact Assessment, expect those to show up in draft standards.

Implementation gaps: What questions did the Forum identify as unresolved? These are the areas where you'll need to make judgment calls until formal guidance arrives.

The first annual report should be available in mid-2027, covering the Forum's initial activities.

Impact on Risk Tiering or System Classification

No. The Forum advises on implementation, not on the Act's substantive requirements.

Your system is high-risk if it falls under Annex III or meets the criteria in Article 6. The Forum can't change that classification. It can advise the Commission on how to interpret ambiguous requirements, but those interpretations come through Commission guidance or delegated acts, not Forum opinions.

Similarly, if you're a General-Purpose AI Model provider, your obligations under Articles 53 and 55 are set by the Act and the General-Purpose AI Code of Practice. The Forum's input might shape how those obligations are operationalized in standards, but it doesn't change the legal requirements.

Where to Go for More

The Commission maintains the Forum's composition, Terms of Reference, and meeting records in the Register of Commission Expert Groups. If you're tracking standardization work, that's your primary source.

For practical compliance questions, focus on the standardization requests themselves (published on the Commission's website) and the draft standards from CEN, CENELEC, and ETSI. The Forum's input is embedded in those documents.

If you're building an AI Management System, ISO/IEC 42001 and ISO/IEC 23894 provide the governance and risk management frameworks. The Forum's standardization work will eventually produce sector-specific guidance, but the foundational standards are already available.

The Forum matters most if you're in the gap between legal requirements and operational standards. That's where its technical expertise and balanced stakeholder input can clarify how to implement the Act in practice.

You Might Also Like