Skip to content
Esta es una traduccion de conveniencia. La version en ingles es la version oficial y legalmente vinculante. Ver version en ingles
TWMEDIUM coverage

Taiwan — Artificial Intelligence Basic Act (2025): AI Compliance Requirements

Taiwan's Legislative Yuan passed the Artificial Intelligence Basic Act on December 23, 2025; it was promulgated and took effect on January 14, 2026. The Act establishes a national framework for responsible AI development and designates the National Science and Technology Council (NSTC) as the central competent authority for AI policy coordination. The Executive Yuan must establish a National AI Strategy Special Committee — chaired by the Premier and comprising scholars, industry representatives, agency heads and local-government leaders — which meets at least once a year. As a framework statute, the Act articulates core principles rather than immediate detailed compliance obligations — and it contains no penalty provisions of its own; sector-specific enforceable rules and penalties are deferred to the relevant ministries, with the Act mandating that within 24 months (by ~14 January 2028) the government review, establish or amend the relevant laws, regulations and administrative measures to conform to the Act. Two concrete implementation steps have since followed: MODA published its AI Risk Classification Framework on July 7, 2026 (announced at the UN's Global Dialogue on AI Governance in Geneva) — a methodology, not a prescriptive prohibited-systems list, that guides competent authorities toward proportionate responses (legislative prohibition/strict control for high-risk applications; guidance/internal controls for lower-risk ones); and the Ministry of Health and Welfare issued the first real sector-specific guidance, "Guidelines for Medical Institutions Applying Generative AI" (醫療機構應用生成式人工智慧指引, MOHW letter 1151663164), on May 29, 2026 — non-binding administrative guidance (not a Basic-Act-mandated enforceable rule) covering medical-record drafting assistance, clinical decision support, administrative documents, and patient communication across three lifecycle stages (pre-adoption assessment, adoption/integration, post-adoption monitoring), while excluding autonomous "AI Agent" systems from its scope. The seven core principles are: sustainability and well-being, human autonomy, privacy and data governance, cybersecurity and safety, transparency and explainability, fairness and non-discrimination, and accountability. AI applications that harm human life, freedom or property, or that undermine social order, national security or the environment, or that involve bias, discrimination, false advertising, misinformation or fabrication, are prohibited under the Act — though the Act itself specifies no enforcement mechanism for those prohibitions.

Summary of publicly-available regulatory text as of 2026-08-22. Verify against current official sources before relying on this for compliance decisions. Not legal advice.

Key Facts

Effective Date

January 14, 2026

Maximum Penalty

The Basic Act itself contains no penalty provisions; penalties to be specified in forthcoming sector enforcement regulations (the Act mandates conforming rulemaking within 24 months — by ~14 January 2028)

What Your Business Must Do

2 compliance requirements identified. Critical requirements carry the highest risk of enforcement action.

Taiwan AI Basic Act — Core Principles Alignment

Medium Priority

Align your AI systems deployed in Taiwan with the seven core principles of the AI Basic Act: sustainability, human autonomy, privacy, cybersecurity, transparency, fairness, and accountability. Document your compliance approach. The Act prohibits AI applications that harm human life, freedom or property, undermine social order, national security or the environment, or involve bias, discrimination, false advertising, misinformation or fabrication — though it specifies no enforcement mechanism itself. Monitor NSTC and MODA for the risk-classification framework and sector-specific enforcement rules, which the Act requires the government to establish within 24 months (by ~14 January 2028).

Deadline: January 14, 2026

Artificial Intelligence Basic Act (promulgated 2026-01-14)

Monitor Taiwan Sector-Specific AI Enforcement Rules

Lower Priority

Taiwan's AI Basic Act delegates detailed compliance requirements to sector ministries (finance, healthcare, transportation, etc.) and mandates that the government review, establish or amend the relevant laws within 24 months of the Act taking effect (by ~14 January 2028). Subscribe to updates from the National Science and Technology Council (NSTC), the Ministry of Digital Affairs (MODA, issuing the AI risk-classification framework), and your industry's regulator. Companies in financial services, healthcare, and technology should prioritize proactive monitoring.

Deadline: January 14, 2028

Artificial Intelligence Basic Act, 24-month rulemaking mandate

Who Does This Apply To?

Applies to providers and deployers of AI systems operating in Taiwan under the Artificial Intelligence Basic Act, passed by the Legislative Yuan on 23 December 2025 and promulgated into force on 14 January 2026. As a framework statute it sets national principles rather than immediate detailed obligations: organisations should align their AI systems with the seven core principles — sustainability and well-being, human autonomy, privacy and data governance, cybersecurity and safety, transparency and explainability, fairness and non-discrimination, and accountability — and document that alignment, while AI systems causing bias, discrimination, false advertising, misinformation, or harm to life, freedom or property are explicitly prohibited. The National Science and Technology Council (NSTC) is the central competent authority coordinating AI policy; the Executive Yuan must establish a National AI Strategy Special Committee (chaired by the Premier, meeting at least annually), the Ministry of Digital Affairs (MODA) published Taiwan's internationally interoperable AI Risk Classification Framework on 7 July 2026, and sector ministries (e.g. the Financial Supervisory Commission, the Ministry of Health and Welfare, the Ministry of Transportation and Communications) develop detailed, enforceable sector rules — which the Act requires the government to review, establish or amend within 24 months (by ~14 January 2028). The Basic Act itself contains no penalty provisions, so concrete penalties will be specified in those sector regulations rather than in the Basic Act itself. Businesses in finance, healthcare and technology should monitor NSTC, MODA and their sector regulator and prepare for the forthcoming rules.

Recent Regulatory Guidance

guidance2026-01

NSTC — AI Basic Act Implementation Framework: Core Principles and Sector Rules Timeline (2026)

Taiwan's National Science and Technology Council issued an implementation framework for the AI Basic Act (passed December 2025, promulgated and effective 14 January 2026): organizations must align AI systems with the seven core principles (sustainability, human autonomy, privacy, cybersecurity, transparency, fairness, accountability) and monitor NSTC and MODA for the AI risk-classification framework and sector-specific enforcement regulations from relevant ministries (FSC, Ministry of Health and Welfare, MOTC). The Act mandates that the government review, establish or amend conforming laws within 24 months (by ~14 January 2028), providing lead time for compliance.

guidance2026-07-07

MODA — AI Risk Classification Framework published (7 July 2026)

The Ministry of Digital Affairs published Taiwan's AI Risk Classification Framework on 7 July 2026, announced at the UN's "Global Dialogue on AI Governance" in Geneva. It is a common methodology (not a prescriptive list of prohibited systems) that helps competent authorities categorize AI applications by risk level and choose a proportionate response — legislative prohibition or strict control for high-risk applications, guidance and internal controls for lower-risk ones. Designed initially for public-sector use with progressive extension to the private sector; it does not itself create new binding private-sector obligations.

guidance2026-05-29

MOHW — Guidelines for Medical Institutions Applying Generative AI (29 May 2026)

Taiwan's Ministry of Health and Welfare issued "醫療機構應用生成式人工智慧指引" (Guidelines for Medical Institutions Applying Generative AI, MOHW letter 1151663164) on 29 May 2026 — the first concrete sector-specific AI guidance following the Basic Act. NON-BINDING administrative guidance (not an Act-mandated enforceable rule), covering medical-record-drafting assistance, clinical decision support, administrative document drafting, and patient communication, structured across three lifecycle stages (pre-adoption assessment; adoption/integration; post-adoption use and supervision) addressing risk classification, regulatory-compliance review, clinical-safety testing, phased rollout/rollback, vendor LLM-disclosure requirements, and ongoing bias/accountability monitoring. Explicitly EXCLUDES autonomous "AI Agent" systems from scope given higher patient-safety/accountability risk. Hospitals must proactively disclose generative-AI use to patients to avoid AI-hallucination-driven care delay (per UDN's contemporaneous reporting).

Frequently Asked Questions

Does Taiwan — Artificial Intelligence Basic Act (2025) apply to my business?

Taiwan's Legislative Yuan passed the Artificial Intelligence Basic Act on December 23, 2025; it was promulgated and took effect on January 14, 2026. The Act establishes a national framework for responsible AI development and designates the National… Use Aegis Firma's free scanner to get a personalized assessment in under 5 minutes.

What is the penalty for non-compliance?

The maximum penalty under Taiwan — Artificial Intelligence Basic Act (2025) is: The Basic Act itself contains no penalty provisions; penalties to be specified in forthcoming sector enforcement regulations (the Act mandates conforming rulemaking within 24 months — by ~14 January 2028). Fines are typically scaled by company size, severity of violation, and whether violations were willful or accidental.

How do I comply with Taiwan — Artificial Intelligence Basic Act (2025)?

The 2 requirements above cover the core obligations. The fastest path to compliance is: (1) conduct an AI risk assessment, (2) document your AI systems, (3) implement transparency disclosures where required. Aegis Firma generates all required documents automatically.

Official Source

https://moda.gov.tw/en/press/press-releases/18316

Last updated: 2026-08-22 — verify at source before relying on this information.

Don't leave compliance to chance

Aegis Firma scans your AI tools, tells you exactly which regulations apply, and generates all required documents — in 30 minutes.

Start your free compliance scan