top of page

India AI Regulation Landscape 101

This is a simple regulatory tracker consisting all information on how India is regulating artificial intelligence as a technology, inspired from a seminal paper authored by Abhivardhan and Deepanshu Singh for the Forum of Federations, Canada, entitled, "Government with Algorithms: Managing AI in India’s Federal System – Number 70".

We have also included case laws along with regulatory / governance documents, and avoided adding any industry documents or policy papers which do not reflect any direct or implicit legal impact.

Cover-Page-OPS-70.png

Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules)

Information Technology Act 2000 SPDI Rules notified April 2011 establishing India's first true framework for sensitive personal data protection including consent, security practices, and grievance redressal mechanisms.

April 2011

Issuing Authority

Ministry of Electronics and Information Technology (MeitY)

Type of Legal / Policy Document

Secondary Legislation

Status

In Force

Regulatory Stage

Regulatory

Binding Value

Legally binding instruments enforceable before courts

Related Long-form Insights on IndoPacific.App

Artificial Intelligence and Policy in India, Volume 4 [AIPI-V4]

AIACT.IN Version 3 Quick Explainer

Reimaging and Restructuring MeiTY for India [IPLR-IG-007]

Artificial Intelligence and Policy in India, Volume 5 [AIPI-V5]

Averting Framework Fatigue in AI Governance [IPLR-IG-013]

Reckoning the Viability of Safe Harbour in Technology Law, IPLR-IG-015

Artificial Intelligence and Policy in India, Volume 6 [AIPI-V6]

Artificial Intelligence, Market Power and India in a Multipolar World

Related draft AI Law Provisions of aiact.in

Section 2 – Definitions

Section 18 – Third-Party Vulnerability Reporting

Section 19 – Incident Reporting and Mitigation Protocols

Section 20 – Responsible Information Sharing

bottom of page