Lithuania - National AI Strategy Update

National AI Strategy update / National AI Governance Forum

Nacionalinė dirbtinio intelekto strategija atnaujinimas / Nacionalinė dirbtinio intelekto valdymo forumas

Lithuania

RAI-LT-NA-NASUNXX-2024
Adopted(Adopted)
PolicyGovernance and OversightSafety, Testing, and EvaluationData Protection and Privacy
Export PDF

The Government of Lithuania initiated an update to the national AI strategy in late 2024 to align national policy with the EU Artificial Intelligence Act and to establish a National AI Governance Forum and supporting institutional arrangements (AI sandbox, state data governance coordination). Key implementing bodies include the Ministry of the Economy and Innovation, the Innovation Agency, the State Data Agency and the Communications Regulatory Authority. Official initiatives and legislative amendments were submitted and progressed through the Seimas in 2024–2025 to operationalise the governance forum and pilot regulatory sandbox.

Summary

Background and purpose: In 2024 Lithuania began an update of its national artificial intelligence (AI) strategy and proposed the creation of a National AI Governance Forum to coordinate public-sector adoption, private-sector innovation and regulatory oversight. The update responds to the entry into force of the EU Artificial Intelligence Act and to national priorities for competitiveness, digital public services, language resource development and secure infrastructure. The Ministry of the Economy and Innovation (EIMIN) led the initiative, proposing legal and institutional measures to operationalise EU requirements, support SME uptake, and create a pilot regulatory environment (an "AI sandbox") for testing AI systems under supervised conditions.

Institutional design: The proposed Governance Forum is designed as a cross‑cutting coordination and advisory mechanism combining representatives from central ministries, the State Data Agency (responsible for state data and the State Data Lake), the Innovation Agency (to operate the sandbox and innovation support), and the Communications Regulatory Authority (RRT), which has been designated as a national contact point and market surveillance authority in AI-related market supervision. The Forum is intended to set strategic priorities, coordinate national implementation of the EU AI Act, oversee conformity and market surveillance arrangements, and promote public dialogue and stakeholder consultations.

Key legal steps and instruments: In October–November 2024 the Government and the Ministry advanced measures to create a pilot AI regulatory environment; EIMIN submitted amendments to national laws and the Seimas approved measures to accelerate AI development and enable a sandbox mechanism. Complementary measures include targeted public funding for Lithuanian language resources and SME AI grants, a national plan for data governance and the integration of registries into the State Data Lake to support safe public‑sector AI use. These steps explicitly link national policy to the EU AI Act and related EU data and interoperability legislation.

Scope and approach: The Strategy update and Forum focus on (1) governance and oversight; (2) risk management and conformity with EU high‑risk definitions; (3) establishing safe testing and evaluation through a regulated sandbox; (4) transparency and documentation obligations; (5) state data governance to enable secure access to public data resources; (6) market surveillance and enforcement; and (7) international cooperation and alignment with EU implementation guidance. The national approach is risk‑based and prioritises high‑risk systems while promoting innovation support for SMEs.

Operational elements: The Innovation Agency is tasked with operating the sandbox and providing technical and compliance advisory support to participants. The State Data Agency is tasked with maturing the State Data Lake and providing data governance frameworks to ensure secure, auditable data access. RRT will act as a national competent authority for market surveillance and a contact point for cross‑border cooperation. The Ministry coordinates policy, funding and international alignment.

Compliance and enforcement: Lithuania’s approach follows the EU Artificial Intelligence Act’s structure for high‑risk classification, conformity assessment, and administrative enforcement. National implementing measures under review will define registration and reporting channels, conformity assessment procedures, and administrative enforcement powers exercised by designated national authorities. Penalties and enforcement follow the EU regulation framework and will be applied by national competent authorities in accordance with national implementing measures.

Stakeholder engagement and transparency: The Forum is envisioned to operate through public consultations, technical working groups (including academia, industry, civil society and public authorities), and published guidance for sandbox participation, data sharing and conformity assessment. The Government also funds Lithuanian language and data resource development to lower entry‑barriers for domestic actors.

State of progress: The proposals and legislative amendments were initiated in late 2024 and advanced into parliamentary consideration. Subsequent implementing acts, secondary rules, and operational procedures (sandbox participation rules, data access protocols, registration processes) are under development and remain under review by responsible ministries and agencies. Primary official information and public announcements are available via the Ministry of the Economy and Innovation and cooperating agencies' official portals (see Sources).

Full article

Read full text ↗

Overview

The national update to Lithuania’s AI strategy and the parallel plan to establish a National AI Governance Forum were launched by the Ministry of the Economy and Innovation (EIMIN) in late 2024 to align national policy with the European Union’s Artificial Intelligence Act and to stimulate controlled innovation domestically. The update packages strategic objectives (competitiveness, secure public services, language and data resource development) with concrete operational measures: a regulated "AI sandbox" to safely test AI systems, funding for language and SME AI projects, and strengthened state data governance through the State Data Agency’s State Data Lake program. Official public descriptions and progress reports are published by EIMIN and partner agencies (for example the Ministry’s AI policy page and announcements about the DI smėliadėžė). For programmatic details and official announcements see Ministry of the Economy and Innovation — Artificial Intelligence and the DI sandbox page (DI smėliadėžė).

Definitions

For the Strategy update and the Forum the following working definitions apply: "AI system" follows the EU Artificial Intelligence Act definition (software that is developed with machine learning, logic‑based, or statistical approaches and produces outputs such as content, predictions, recommendations or decisions); "high‑risk AI systems" are those categories listed in the EU AI Act and transposed by national implementing measures; "provider" means the natural or legal person that develops an AI system and places it on the market; "user" means the natural or legal person using an AI system under their responsibility; "sandbox" (DI smėliadėžė) means a supervised regulatory testing environment offering restricted, time‑bound testing of AI systems with defined safeguards and reporting obligations. These definitions inform the governance, conformity and market surveillance workstreams under the Forum.

Governance and Institutional Framework

The Governance Forum is conceived as an inter‑ministerial, multistakeholder coordination body chaired by the Ministry of the Economy and Innovation and including the Innovation Agency (sandbox operator), the State Data Agency (data governance and the State Data Lake), the Communications Regulatory Authority (RRT — national contact point and market surveillance authority), the Ministry of Health, the Ministry of Justice, Ministry of Finance and other sectoral bodies. The Forum’s remit includes policy coordination, technical guidance, oversight of national implementation of the EU AI Act, public consultations, and escalation channels for cross‑agency decisions. The Forum will convene working groups (technical, ethics, data access, market surveillance) and publish guidance materials. EIMIN’s public materials set out the principal institutional roles: see the Ministry’s AI page here and the DI sandbox announcement here. The Communications Regulatory Authority’s public site confirms its national supervisory remit and role as contact point for AI market oversight (RRT).

Key Focus Areas

The update prioritises a cluster of policy and operational themes: 1) Governance & oversight — design and mandate of the National AI Governance Forum, cross‑agency workflows, and public consultation mechanisms; 2) Risk management & conformity — adoption of EU high‑risk categories, national channels for conformity assessment and registration, and technical guidance for providers and notified bodies; 3) Safety, testing & evaluation — a regulated AI sandbox (DI smėliadėžė) to test high‑risk and innovative AI systems under supervision with pre‑agreed mitigation measures; 4) Transparency & documentation — obligations on documentation, technical documentation and logs to support explainability and auditing; 5) Data protection & privacy — state data governance measures, secure access procedures, and compliance with national and EU data protection rules to underpin safe public‑sector AI; 6) Market surveillance & enforcement — empowering RRT and designated bodies to perform post‑market monitoring, conformity checks and risk‑based interventions; 7) Cybersecurity & model security — measures and guidance for protecting model integrity, provenance and supply chains; 8) Accountability & liability — processes for incident reporting, redress and coordination with courts and administrative authorities. The Ministry has published related measures and funding to support SME uptake and Lithuanian language resources to lower barriers to entry for domestic AI developers (language projects).

Implementation Framework

Implementation is staged: initial legal amendments and institutional design were submitted by EIMIN (late 2024); parliamentary approval and statutory amendments were progressed into 2025 to permit the sandbox and reassign responsibilities to implementing agencies. The Innovation Agency is mandated to design and run the DI smėliadėžė (sandbox) with participant admission rules, monitoring and reporting templates. The State Data Agency is continuing rollout of the State Data Lake to create secure, auditable channels for public data access in support of vetted sandbox testing and authorised public‑sector AI deployments. RRT will implement market surveillance programs and act as the single national contact point for cross‑border cooperation. The Forum will produce guidance documents, templates for technical documentation and conformity‑assessment roadmaps, and an operational handbook for the sandbox. Official program descriptions and timelines are maintained on EIMIN’s AI pages and the State Data Agency pages (see Sources).

Monitoring and Evaluation

Monitoring is twofold: (1) process monitoring by the Forum to track implementation milestones (legislative transposition, sandbox operational readiness, data lake integrations, stakeholder engagements); and (2) outcome monitoring by sectoral regulators (RRT, health, finance regulators) performing post‑market surveillance to detect conformity deviations, systemic risks and incidents. The Forum will define KPIs (adoption by public bodies, number of sandbox pilots, successful conformity assessments, incidents reported and remediated) and publish periodic status reports. The State Data Agency will provide operational metrics on data maturity and access logs to support evaluation of public‑sector AI deployments.

Penalties, Liability, and Appeals

Enforcement of requirements follows the EU Artificial Intelligence Act’s structure. National implementing measures under review will set administrative procedures for registrations, conformity checks and market surveillance; enforcement powers (orders, corrective measures, penalties) will be exercised by designated national authorities including RRT and sectoral regulators. Providers and deployers of non‑conforming high‑risk systems may face administrative fines, remediation orders and market restrictions in line with EU framework; appeals will be available via administrative and judicial review channels established by Lithuanian administrative law. Official references and preparatory legal measures are published by EIMIN and by the Seimas legislative tracking resources used during the amendment process.

Relationship to Other Instruments

The Strategy update is explicitly designed to implement and align with the EU Artificial Intelligence Act (Regulation (EU) 2024/1689 and related acts), the EU Data Act, the Data Governance Act and the European Interoperability framework. It also links to national digital agendas (National Plan for the Digital Decade) and to public‑sector programs such as the State Data Lake rollout. The DI sandbox is established under national procedural rules to meet the EU AI Act’s sandbox/testing provisions and is coordinated with national data governance instruments to ensure lawful, auditable data access for testing purposes.

International Alignment

Lithuania’s approach seeks close alignment with EU implementation guidance and cross‑border cooperation mechanisms. The Government frames the Forum’s mandate to support interoperability with EU competent authorities, to participate in mutual recognition and exchange of best practices, and to contribute to European capacity building efforts (AI competence centres, research consortia). Initiatives such as the proposed Baltic AI gigafactory and EU‑funded AI centres (LitAI) exemplify regional cooperation to scale research and secure infrastructure. Official announcements by the Ministry describe Lithuania’s intent to integrate national AI infrastructure into broader EU ecosystems.

Implementation Timeline

EventDate
Government decision and public announcement to develop AI sandbox and update AI policy2024-10-16
Ministry submits legislative amendments and strategy updates to Seimas2024-11-21
Seimas approves enabling amendments to accelerate AI development and sandbox operation2025-01-14
State Data Agency integration milestones (State Data Lake expansion)2025–2026 (ongoing)
Sandbox operational procedures & participant admission (target)By 2026-01-01 (per national implementing timetable)

Sources and References

SourceType
Ministry of the Economy and Innovation — Artificial Intelligence (policy & program page)Primary Source
DI smėliadėžė (Innovation sandbox) — EIMIN (LT)Primary Source
Seimas approves amendments to accelerate AI development — EIMIN (news)Primary Source
State Data Agency — role in AI centre & State Data LakePrimary Source
Communications Regulatory Authority (RRT) — remit and contact point informationPrimary Source

Requirements for a company

What an organisation has to do under Lithuania - National AI Strategy Update, at a glance. Not legal advice — the table below gives the provision and deadline for each item.

Not yet in force (Adopted). These requirements apply once the instrument takes effect and may change before then.

Must do

9
  • Complete conformity assessment for high-risk AI systems.Providers of high-risk AI systems.
  • Register high-risk AI systems with national channels.Providers of high-risk AI systems.
  • Comply with national and EU data protection rules for AI systems.Providers and users of AI systems.
  • Maintain complete, versioned technical documentation and logs for AI systems.Providers of AI systems.
  • Implement measures to protect AI model integrity, provenance, and supply chains.Providers of AI systems.
  • Establish processes for incident reporting and redress for AI systems.Providers and deployers of AI systems.
  • +3 more in the table below

Must not do

0

Nothing in this category.

Should do

0

Nothing in this category.

Should not do

0

Nothing in this category.

Who must do what

The obligations under Lithuania - National AI Strategy Update, most serious first. Not legal advice — verify against the official text before relying on it.

#WhoRequirementBy whenWhereSeverity
1Providers of high-risk AI systems.Complete conformity assessment for high-risk AI systems.
Providers and deployers of non-conforming high-risk systems may face administrative fines, remediation orders and market restrictions in line with EU framework.
Before placing on marketRisk management & conformityCritical
2Providers of high-risk AI systems.Register high-risk AI systems with national channels.
National implementing measures under review will set administrative procedures for registrations, conformity checks and market surveillance.
Before placing on marketRisk management & conformityCritical
3Providers and users of AI systems.Comply with national and EU data protection rules for AI systems.
compliance with national and EU data protection rules to underpin safe public-sector AI
Data protection & privacyCritical
4Providers of AI systems.Maintain complete, versioned technical documentation and logs for AI systems.
obligations on documentation, technical documentation and logs to support explainability and auditing
Transparency & documentationImportant
5Providers of AI systems.Implement measures to protect AI model integrity, provenance, and supply chains.
measures and guidance for protecting model integrity, provenance and supply chains
Cybersecurity & model securityImportant
6Providers and deployers of AI systems.Establish processes for incident reporting and redress for AI systems.
processes for incident reporting, redress and coordination with courts and administrative authorities.
Accountability & liabilityImportant
7Participants in the AI sandbox.Adhere to defined safeguards, test scopes, and reporting obligations when using the AI sandbox.
sandbox... means a supervised regulatory testing environment offering restricted, time-bound testing of AI systems with defined safeguards and reporting obligations.
By 2026-01-01DefinitionsImportant
8Providers and users of AI systems.Follow technical guidance published by the National AI Governance Forum.
The Forum’s remit includes policy coordination, technical guidance
Governance and Institutional FrameworkImportant
9Public sector AI deployers and sandbox participants.Ensure secure access procedures for public data used in AI systems.
secure access procedures, and compliance with national and EU data protection rules to underpin safe public-sector AI
Data protection & privacyImportant

© Regulations.AI · updated on 13-Jun-2026