AI Agent Compliance: Kenya Data Protection (AI Provisions)
Kenya Data Protection (AI Provisions) is a currently effective regulation focused on data_protection_automated in KE. It establishes a risk-based framework for AI systems with penalties up to KES 5M or 1% annual turnover for non-compliance.
Overview
| Status | effective |
| Effective Date | 2021-11-25 |
| Region | KE |
| Country | KE |
| Focus Area | data_protection_automated |
| Max Penalty | KES 5M or 1% annual turnover |
| Per Violation | Up to KES 5M |
| Source | Official text |
Risk Model
sector_specific
Risk Classes
- automated_decision
- general_processing
High-Risk Criteria
- {'automated_decisions': ['profiling', 'automated_individual_decisions'], 'triggers': ['significant_effects_on_individuals']}
Requirements
- Right not to be subject to automated decisions
- Data protection impact assessments
- Transparency about automated processing
- ODPC compliance requirements
Agent Risk Distribution
Top Agents by Compliance Score
| Agent | Compliance | Risk Class | Trust Score |
|---|---|---|---|
| williamzujkowski/strudel-mcp-server | 100.0 | minimal | 92.9 |
| laravel/boost | 100.0 | minimal | 91.2 |
| openagents | 100.0 | minimal | 91.2 |
| harbor | 100.0 | minimal | 90.5 |
| microsoft/azure-devops-mcp | 100.0 | minimal | 90.3 |
| opal | 100.0 | minimal | 90.2 |
| GoogleCloudPlatform/agent-starter-pack | 100.0 | minimal | 90.1 |
| laravel/mcp | 100.0 | minimal | 90.0 |
| agentgateway/agentgateway | 100.0 | minimal | 89.8 |
| QwenLM/qwen-code | 100.0 | minimal | 89.7 |
Frequently Asked Questions
What are the compliance requirements under Kenya Data Protection (AI Provisions)?
Kenya Data Protection (AI Provisions) requires AI systems to meet specific regulatory standards focused on data_protection_automated. Nerq automatically checks AI agents against these requirements.
How does Kenya Data Protection (AI Provisions) classify AI risk?
Kenya Data Protection (AI Provisions) uses a risk-based classification: sector_specific. Nerq maps each agent to the applicable risk class.
What are the penalties under Kenya Data Protection (AI Provisions)?
Non-compliance with Kenya Data Protection (AI Provisions) can result in penalties up to KES 5M or 1% annual turnover. Use Nerq to identify compliance gaps before enforcement.