EU Subjects OpenAI and Reddit to Strict Systemic Risk Audits Under Digital Services Act
The European Commission has designated ChatGPT and Reddit as Very Large Online Platforms, forcing both companies to redesign core algorithmic systems and submit to unprecedented independent audits.
The European Commission has officially designated OpenAI's ChatGPT and the social media platform Reddit as Very Large Online Platforms under the Digital Services Act. This designation follows both platforms surpassing the critical threshold of 45 million monthly active users within the European Union. By entering this regulatory tier, both companies must transition from voluntary safety guidelines to a legally binding, heavily supervised compliance regime. The move represents a major escalation in Brussels' efforts to police the digital economy, shifting the regulatory spotlight from traditional social media giants to generative artificial intelligence and decentralized community forums.
Under the strict provisions of the Digital Services Act, both OpenAI and Reddit must now fundamentally alter how they monitor and manage their core product offerings. For OpenAI, this requires a comprehensive evaluation of how its generative models might propagate systemic risks, such as the dissemination of synthetic disinformation, deepfakes, and automated hate speech. Reddit, conversely, must address the risks inherent in its algorithmic recommendation systems and user-generated content feeds. The company's decentralized model of community-led moderation will face intense scrutiny as regulators demand centralized accountability for systemic harms.
The compliance mandates require both organizations to establish dedicated, independent compliance departments and submit to annual external audits. Crucially, they must grant independent researchers and European regulators direct access to their proprietary data and algorithmic systems to verify safety claims. This level of transparency is unprecedented for private tech companies, particularly for OpenAI, which has historically guarded the inner workings of its large language models. The audits will evaluate whether these companies are actively mitigating systemic risks rather than simply reacting to individual policy violations after they occur.
The operational challenges of this designation differ sharply between the two platforms. Reddit relies on a network of volunteer moderators to police its subreddits, a structure that does not easily map onto the rigid, top-down compliance demands of European regulators. OpenAI faces a different technical hurdle, as the black-box nature of deep learning models makes it exceptionally difficult to guarantee that a model will not produce harmful or illegal outputs. Consequently, both companies will need to invest heavily in engineering resources to build automated detection tools and robust feedback loops that satisfy regulatory standards.
This regulatory expansion signals a deliberate shift in the European Union's approach to technology oversight. While the first wave of designations targeted established advertising-driven platforms like Meta and Google, this latest round acknowledges that generative AI and forum-based networks pose distinct societal risks. By targeting ChatGPT, the Commission is setting a global precedent that artificial intelligence developers cannot hide behind the unpredictability of their models. This move will likely force other generative AI startups to integrate safety and compliance directly into their initial model training phases.
The strategic implications of these rules will reverberate far beyond the borders of the European Union. Historically, Silicon Valley firms have struggled to maintain bifurcated product architectures, often choosing to implement European compliance standards globally to streamline engineering workflows. If OpenAI and Reddit adopt this unified approach, users worldwide may see significant changes in how these platforms operate, including more conservative content filters and greater transparency regarding algorithmic recommendations. Alternatively, it could lead to regional feature fragmentation, where European users receive a highly sanitized but less capable version of these technologies.
Looking ahead, both companies face a strict four-month window to deliver their first comprehensive systemic risk assessment reports to the European Commission. Failure to comply with the mandated risk mitigation strategies or to pass the independent audits carries severe financial consequences, including fines of up to six percent of global annual turnover. As the compliance deadlines approach, the industry will closely watch how OpenAI balances the open-ended nature of generative AI with the deterministic safety requirements of European law, a tension that will define the future of international tech regulation.
Sources
- 01 ChatGPT and Reddit now face EU's toughest online safety rules — Ars Technica — Policy