Hello,
the Digital Policy Alert added new events. Please find a brief overview below.
Best regards,
the DPA Team
June 1, 2026
| Order Consultation Closed | Data Governance
On 1 June 2026, the European Commission closes the consultation on the draft implementing regulation amending Implementing Regulation (EU) 2015/1018, expanding mandatory aviation occurrence reporting to address emerging technologies and operational risks. The amendments focus on unmanned aircraft systems (UAS) operators requiring either a certificate or a declaration for design, as well as organisations conducting operations in U-space airspace, particularly in urban and densely populated environments, while excluding lower-risk UAS operations not requiring certification or declaration. The regulation introduces a new dedicated Annex for UAS-specific occurrences to distinguish risks unique to unmanned aircraft, establishes mandatory reporting obligations for safety-critical occurrences, including collisions, loss of control, and information security incidents affecting system functionality, and introduces generic cybersecurity reporting requirements to capture accidental incidents such as malware infections and system disruptions.
May 4, 2026
| Order Consultation Opened | Data Governance
On 4 May 2026, the European Commission opened a consultation on the draft implementing regulation amending Implementing Regulation (EU) 2015/1018, expanding mandatory aviation occurrence reporting to address emerging technologies and operational risks, until 1 June 2026. The amendments focus on unmanned aircraft systems (UAS) operators requiring either a certificate or a declaration for design, as well as organisations conducting operations in U-space airspace, particularly in urban and densely populated environments, while excluding lower-risk UAS operations not requiring certification or declaration. The regulation introduces a new dedicated Annex for UAS-specific occurrences to distinguish risks unique to unmanned aircraft, establishes mandatory reporting obligations for safety-critical occurrences, including collisions, loss of control, and information security incidents affecting system functionality, and introduces generic cybersecurity reporting requirements to capture accidental incidents such as malware infections and system disruptions.
May 7, 2026
| Law Passage | Data Governance
On 7 May 2026, the European Parliament and the Council of the EU reached a provisional agreement on the Digital Omnibus on AI Regulation (2025/0359). The Digital Omnibus on AI Regulation would permit the processing of special categories of personal data where strictly necessary to detect and correct biases, subject to proper safeguards. The Digital Omnibus on AI Regulation would set fixed application dates for data governance obligations for high-risk AI systems. Obligations for Annex III high-risk AI systems would apply from 2 December 2027, and obligations for Article 6(1) high-risk AI systems would apply from 2 August 2028. The provisional agreement must be formally adopted by both the European Parliament and the Council of the EU before 2 August 2026.