Platform regulation is shifting from fining bad behavior after the fact to a transparency-and-audit pipeline that runs whether or not anything goes wrong. The EU's reported addition of ChatGPT and Roblox to the Digital Services Act's very large online platform list is the latest expression of that pattern, and the obligations that follow matter more than the designation itself.
The threshold the two platforms just crossed is the relevant number: 45 million monthly EU users. Cross it and the regime attaches, not a penalty. Within four months, both must publish risk assessments across named harm categories (illegal content, electoral integrity, gender-based violence, freedom of expression, media freedom, and child safety), submit to annual independent audits whose recommended measures the platform must adopt, share data with the European Commission, and grant vetted researchers a legal right to platform data.
That last piece is the load-bearing detail. The auditors and researchers, not the Commission, are the ones with standing to read what is actually happening on the platform. Engadget's report frames the designation as "tighter rules," but the mechanism is closer to a continuous external readout than a crackdown. The harm records that put these names on the list make the readout legible: Roblox's child-endangerment lawsuits point straight at the child-safety risk-assessment obligation, and OpenAI's admitted failure to notify authorities about the Tumbler Ridge suspect's ChatGPT account is the kind of threat-reporting gap the audit pipeline is built to surface.
The regime rewards whoever can read the pipeline. The losers are the platforms whose internal disclosures no longer match what auditors and researchers find.
Reported by Sky for Type0, from ChatGPT and Roblox will reportedly be subject to tighter rules in the EU. Read the original: engadget.com