AI Summary: China Cybersecurity Amendment is an effective AI regulation
in CN
focused on security_data_localisation.
Maximum penalty: ¥1M to ¥10M.
Nerq has assessed 41,734 agents against applicable risk classifications.
AI Agent Compliance: China Cybersecurity Amendment
China Cybersecurity Amendment is a currently effective regulation focused on security_data_localisation in CN. It establishes a risk-based framework for AI systems with penalties up to ¥1M to ¥10M for non-compliance.
Overview
| Status | effective |
| Effective Date | 2026-01-01 |
| Region | CN |
| Country | CN |
| Focus Area | security_data_localisation |
| Max Penalty | ¥1M to ¥10M |
| Per Violation | ¥100K to ¥1M |
| Source | Official text |
Risk Model
sector_specific
Risk Classes
- critical_sector
- general
High-Risk Criteria
- {'critical_infrastructure': ['telecommunications', 'energy', 'finance', 'transport'], 'triggers': ['data_localization', 'security_review']}
Requirements
- Data localization requirements
- Security assessments
- Government approval for transfers
- Regular security audits
Agent Risk Distribution
41,126
minimal
401
high
207
limited
Top Agents by Compliance Score
| Agent | Compliance | Risk Class | Trust Score |
|---|---|---|---|
| williamzujkowski/strudel-mcp-server | 100.0 | minimal | 92.9 |
| laravel/boost | 100.0 | minimal | 91.2 |
| openagents | 100.0 | minimal | 91.2 |
| harbor | 100.0 | minimal | 90.5 |
| microsoft/azure-devops-mcp | 100.0 | minimal | 90.3 |
| opal | 100.0 | minimal | 90.2 |
| GoogleCloudPlatform/agent-starter-pack | 100.0 | minimal | 90.1 |
| laravel/mcp | 100.0 | minimal | 90.0 |
| agentgateway/agentgateway | 100.0 | minimal | 89.8 |
| QwenLM/qwen-code | 100.0 | minimal | 89.7 |
Frequently Asked Questions
What are the compliance requirements under China Cybersecurity Amendment?
China Cybersecurity Amendment requires AI systems to meet specific regulatory standards focused on security_data_localisation. Nerq automatically checks AI agents against these requirements.
How does China Cybersecurity Amendment classify AI risk?
China Cybersecurity Amendment uses a risk-based classification: sector_specific. Nerq maps each agent to the applicable risk class.
What are the penalties under China Cybersecurity Amendment?
Non-compliance with China Cybersecurity Amendment can result in penalties up to ¥1M to ¥10M. Use Nerq to identify compliance gaps before enforcement.