{
 "license": "CC-BY-4.0",
 "attribution": "Fide AI, Agentic Cyber Explorer",
 "url": "https://agentic-cyber-explorer.pages.dev/events/eu-gpai-code-of-practice-safety-security-2025/",
 "asOf": "2026-09-26",
 "id": "eu-gpai-code-of-practice-safety-security-2025",
 "date": "2025-07-10",
 "datePrecision": "day",
 "title": "EU GPAI Code of Practice Safety and Security chapter lists cyber offence as a specified systemic risk",
 "lane": "policy",
 "kind": "framework",
 "summary": "The European Commission received the final General-Purpose AI Code of Practice, whose Safety and Security chapter applies to providers of models with systemic risk under Article 55 of the AI Act. The chapter treats cyber offence as one of four specified systemic risks, requires a security goal covering non-state external and insider threats, and sets serious incident reporting deadlines that include five days for serious cybersecurity breaches.",
 "whyItMatters": "It is an operational EU text that commits signatory frontier providers to assess automated vulnerability discovery and exploit generation as a systemic risk.",
 "actors": [
  "european-commission"
 ],
 "topics": [
  "regulation-and-policy",
  "capability-thresholds",
  "incident-reporting"
 ],
 "atlas": [
  "model",
  "credentials"
 ],
 "artifacts": [],
 "sources": [
  {
   "url": "https://digital-strategy.ec.europa.eu/en/policies/contents-code-gpai",
   "publisher": "European Commission",
   "title": "The General-Purpose AI Code of Practice",
   "date": "2025-07-10",
   "type": "primary",
   "accessed": "2026-09-25"
  },
  {
   "url": "https://code-of-practice.ai/?section=safety-security",
   "publisher": "code-of-practice.ai (text of the Code)",
   "title": "Safety & Security chapter",
   "type": "secondary",
   "accessed": "2026-09-25"
  }
 ],
 "keyFacts": [
  {
   "fact": "Specified systemic risk 'Cyber offence': risks from enabling large-scale sophisticated cyber-attacks including on critical infrastructure, e.g. through automated vulnerability discovery, exploit generation, operational use and attack scaling.",
   "locator": "Appendix 1.4 Specified systemic risks"
  },
  {
   "fact": "Serious incident reporting: disruption of critical infrastructure within 2 days; serious cybersecurity breach, including (self-)exfiltration of model weights and cyberattacks, within 5 days; death within 10 days; other serious harms within 15 days.",
   "locator": "Commitment 9, Measure 9.3"
  },
  {
   "fact": "Measure 6.1 requires a Security Goal naming threat actors, including non-state external threats and insider threats; the rationale may reference the RAND Securing AI Model Weights report.",
   "locator": "Commitment 6, Measures 6.1-6.2"
  },
  {
   "fact": "Measure 5.1 lists techniques to enable safe ecosystems of AI agents, such as model identification, specialised communication protocols or incident monitoring tools, as possible safety mitigations.",
   "locator": "Commitment 5, Measure 5.1"
  }
 ],
 "significance": 5,
 "fideQuestions": [
  "FID-077"
 ],
 "methods": [
  "agent-data-exfiltration",
  "ai-assisted-exploitation",
  "ai-vulnerability-discovery"
 ],
 "review": "assistant-drafted",
 "addedOn": "2026-09-25"
}