Biometrics and facial recognition
Facial recognition, emotion recognition, and biometric categorization.
Biometric AI draws the tightest controls. The EU AI Act bans untargeted scraping of facial images and limits real-time remote biometric identification in public spaces to narrow law-enforcement exceptions, and it prohibits emotion recognition at work and in schools. Biometric categorization and post-hoc identification are treated as high-risk. In the US, biometric privacy statutes such as Illinois BIPA predate the AI wave but now drive much of the litigation. China regulates biometric use through its generative-AI and deep-synthesis rules.
Why it matters
Biometric data is often irreversible once exposed, so it attracts both AI-specific bans and separate privacy liability. Treat it as its own risk tier.
How each jurisdiction handles it
United States: IllinoisEmployment anti-discrimination plus longstanding biometric privacyIn forceCommon questions
What does biometrics and facial recognition mean in AI regulation?
Why does biometrics and facial recognition matter for compliance?
Artificial Intelligence Regulations, "Biometrics and facial recognition in AI Regulation," reviewed July 28, 2026, https://artificialintelligenceregulations.com/topics/biometrics-facial-recognition.html.
Entries state the position as of the review date and link to the primary text for verification.