The Regulation of Artificial Intelligence in the UK and Beyond


The regulation of artificial intelligence (AI) has recently become a hot topic. This blog will discuss the issues that make regulation of this technology particularly difficult. One key problem is that the technology advances rapidly, whereas the process of legislation is relatively slow.

Why is regulation of AI difficult?

Collingridge, a sociologist at Aston University, outlined the following dilemma:

‘attempting to control a technology is difficult…because during its early stages, when it can be controlled, not enough can be known about its harmful social consequences to warrant controlling its development; but by the time these consequences are apparent, control has become costly and slow’.

The key to addressing Collingridge’s dilemma is often considered to lie with anticipatory governance, where efforts are made to predict likely problems as much as possible.

The concerns in the short and medium term are not the apocalyptic visions currently being forecast by some actors. The SkyNet scenario of the Terminator franchise, where an AI creation becomes self-aware and attacks humanity is probably not on the horizon just yet. The problems we face in the immediate future are rather more mundane. For example, Chat GPT presents real challenges for both assessments and the future of legal services. Financial journalist Martin Lewis recently warned that an advert which apparently showed him endorsing a product was in fact using “deep fake” technology to produce convincing video and audio of him. Actors and writers in Hollywood are striking over the potential for AI to put them out of a job.

The European Approach

To address concerns about the unregulated growth of Artificial Intelligence, the EU convened its High-Level Expert Group on Artificial Intelligence in 2018. This committee set out Ethics Guidelines for Trustworthy AI which has four key ethical principles:

1. Respect for human autonomy

2. Prevention of harm

3. Fairness

4. Explicability

These lead to seven key requirements:

1. Human agency and oversight

2. Technical robustness and safety

3. Privacy and data governance

4. Transparency

5. Diversity, non-discrimination and fairness

6. Societal and environmental wellbeing

7. Accountability

Explicability, transparency and accountability are all crucial. Explicability in this context means explaining the basis on which an algorithm or neural network has come to a decision. The EU’s General Data Protection Regulation has a clause about automated processing of data (Article 22), but it does not require a full explanation of the decision-making process - there are thorny dilemmas around intellectual property of algorithms that prevent this. The algorithm that powers the AI is valuable intellectual property e.g. the weighting given to different factors. This will likely continue to be a major problem. When the AI is powered by a neural network, this task is even more difficult because the AI has effectively programmed itself to find a solution (IBM Data and AI Team 2023). The data subject is still entitled to know what data are used and to check their accuracy.

There is an AI Act currently making its way through the European Parliament. The proposed regulation will take a four tiered risk-based approach. Amongst the proposals is a total ban on the use of AI for biometric surveillance, emotion recognition, and predictive policing. The Act is already facing opposition from technology companies, who have worked together to send an open letter to the European Parliament warning about an adverse effect on innovation.

The Council of Europe has also been examining the issue, with their Committee on Artificial Intelligence (CAI). They released a draft of a Convention on Artificial Intelligence, Human Rights, Democracy, and the Rule of Law. This Convention focusses on the duties of states, but there is no detail on the implementation of these duties in the face of competing economic and policy issues.

The UK Approach

There are a range of regulatory regimes across the world, with the EU offering some of the more robust protections for individuals. The UK however has opted to follow a different pathway via specific regulators with enforcement powers and law (Davies and Birtwhistle, 2023).

All regulatory regimes must be assessed in light of global competitiveness. High levels of regulation may reduce the attractiveness of a country for investors, and these concerns appear to be steering the UK government towards a ‘lighter touch’. The focus is on devising more flexible and adaptive rules via a voluntary framework rather than legislation, with all the issues of being slow-moving and often reactive.

The key concerns about industry-led regulation are the lack of democratic input and the problems of regulatory capture. It is important that industry consults with the public, either directly or via their elected representatives, in order to determine the acceptable use of data and technology. The use of ethics panels in industry has not been unproblematic, as recent events have shown. The firing of Timnit Gebru, head of AI ethics team at Google, allegedly over raising concerns, is just one example. . Furthermore, the ethics panel which oversaw Google’s DeepMind in a much criticized project at the Royal Free Hospital using patient data has since been disbanded.

It is already apparent that the UK and the EU are taking very different approaches, and time will tell which is the better.

