Blog
Copyright & artificial intelligence: Progress, pause and persistent uncertainty
Christopher Perrin
The UK Government has now published its March 2026 Report on Copyright and Artificial Intelligence, following its 2024–25 consultation on the use of copyright‑protected works in AI training. The outcome is significant - not for what it introduces but for what it postpones.
For now, copyright reform has been paused. The question is whether this pause meaningfully improves certainty for creators and AI developers or simply prolongs an already difficult status quo.
Why this consultation mattered
The consultation addressed a genuine and growing problem. Rights holders remain concerned that their works are being used to train AI systems without consent or remuneration. AI developers, meanwhile, stress that access to large volumes of data is essential for innovation and competitiveness.
The Government accepted that UK copyright law, drafted long before generative AI, does not provide clear answers. In practice, businesses have been left to navigate this through litigation, licensing workarounds and varying risk appetites.
That uncertainty carries real economic and operational consequences.
The Government’s original objectives
Launched in December 2024, the consultation set out three aims:
A wide range of options were considered, from licensing‑only approaches to broad text and data mining exceptions. Initially, the Government indicated a preference for an opt‑out model, subject to new transparency obligations.
What the consultation showed
Stakeholder engagement was high. More than 11,500 responses were submitted, with a clear message emerging from creative industries in particular: strong resistance to opt‑out exceptions and broad support for licensing‑based models requiring consent.
The consultation succeeded in surfacing evidence and views. What it did not produce was a consensus on a solution that met all policy objectives simultaneously.
Where things now stand
In its March 2026 Report and Written Ministerial Statement, the Government confirmed it will not proceed with legislative reform at this stage.
The previously favoured opt‑out exception has been set aside. No alternative model has been chosen. Instead, the Government has emphasised the need for further analysis before making changes to copyright law.
That caution is understandable to a certain degree. Copyright reform in the AI context carries real trade‑offs, but the result is that existing law, and its uncertainties, remain firmly in place.
What is still moving forward
The pause on reform does not mean inactivity. The Report highlights continued work on:
These strands are useful and necessary. However, they sit alongside (rather than resolve) the underlying legal uncertainty around AI training.
Why the current approach remains challenging
The Government’s emphasis on “getting this right” is sensible in principle. But prolonged deferral has consequences. In the absence of clearer rules, risk continues to be allocated unevenly, often to individual creators, SMEs and early‑stage businesses with limited leverage.
Transparency initiatives and market solutions cannot fully substitute for legal clarity.
What clients should take away
The consultation has clarified the difficulty of the problem. It has not yet resolved it.
While further work may be justified, the risk is that delay becomes a policy outcome in itself, leaving uncertainty to harden rather than diminish.
If you have any questions regarding this blog, please contact Christopher Perrin in our Corporate, Commercial & Finance team.
Christopher Perrin is a highly experienced solicitor who leads the Corporate, Commercial and Finance team’s general Commercial & Technology Contracts, Outsourcing & Data legal advisory services.
The UK Government has now published its March 2026 Report on Copyright and Artificial Intelligence, following its 2024–25 consultation on the use of copyright protected works in AI training. The outcome is significant - not for what it introduces but for what it postpones.
The UK Government has confirmed a major package of reforms to tackle late payments, a persistent pressure point for small businesses, costing the economy £11 billion a year and contributing to 38 business closures every day.
The professional services industry faces rapid change
A serious security vulnerability affecting the five million registered companies on Companies House was recently discovered. More on this below, but we would urge all companies to check their records carefully and ensure there is nothing unexpected in their Companies House filings and dashboard.
At our recent Tech Briefing, 'What tech businesses need to know in 2026', we explored how the EU’s Digital Omnibus package and the UK’s Employment Rights Act will reshape compliance for UK tech SMEs.
Most commercial disputes don’t come from exotic legal issues - they come from everyday contract weaknesses that could have been avoided with a few smart tweaks
2026 is shaping up to be the most consequential year for UK data protection enforcement since the introduction of the EU/UK GDPR regime. With record fines issued in late 2025, a new enforcement playbook on the horizon, and shifting legislative and regulatory expectations, the Information Commissioner’s Office (“ICO”) is signalling a marked transformation in how it supervises, and sanctions, organisations.
Too often, limitation of liability clauses are treated as standard boilerplate - something to tidy up at the end of a negotiation once the “real” commercial points are agreed.
What are these megatrends that could pose a threat to brands in 2026?
In this article, we share 7 key considerations to help tech founders navigate the journey from seed funding to Series A and beyond.
In November 2025, the European Commission unveiled its Digital Omnibus package – a set of proposals aimed at simplifying (not deregulating) EU rules on data protection, cybersecurity and AI.
In a recent decision on the UK GDPR’s global scope, the Upper Tribunal in The Information Commissioner v Clearview AI Incorporated and Privacy International [2025] UKUT 319 (AAC) confirmed that the UK’s data protection regime can extend well beyond its borders.
Founders and teams across the country are looking for signals that the UK still backs its innovators. Here’s what’s top of the wish-list:
For founders, investors and anyone involved in the tech sector, understanding who owns your software and how to prove it is critical. Whether you’re seeking investment, planning an exit or simply aiming to protect your IP, clarity on ownership can make or break a deal
The Court of Appeal has recently handed down an important decision in respect of data protection law considerations in Farley & Others v Paymaster (trading as Equiniti) [2025] EWCA Civ 1117, providing clarity on the scope of infringement and compensation data protection claims under the UK GDPR and Data Protection Act 2018 (“DPA”). The judgment will be of particular interest to any service provider dealing with and processing large volumes of customer personal data.
At some point in their history, businesses commonly have need for external funding to help their growth trajectory.
In tech, the law often arrives after something has gone wrong. Here are three cautionary tales* and the lessons every founder, CTO and in-house counsel should take away.
The Data (Use and Access) Act 2025 (the “DUAA”), which received Royal Assent on 19 June 2025, introduces targeted reforms to the UK data protection legal framework — particularly the UK GDPR, the Data Protection Act 2018, and the Privacy and Electronic Communications Regulations 2003 (“PECR”).
Many of you will know that the Government published, on 23 June, its Modern Industrial Strategy paper and, with it, committed to creating a “predictable, proportionate, and transparent investment screening framework” and launching a 12-week consultation on updating the definitions of the 17 sensitive sectors of the economy as set out in the National Security and Investment Act 2021 (NSIA).
The recent cyberattacks on major UK retailers have put cybersecurity back in the spotlight. But a more significant development for data protection practitioners has been flying under the radar: the Information Commissioner’s Office (ICO) has issued a notable fine directly against a data processor for breaching UK GDPR security obligations - an important shift in enforcement focus.
Or call +44 (0)20 7814 1200
Christopher Perrin
Christopher Perrin
Leor Franks
Skip to content Home About Us Insights Services Contact Accessibility
Share insightLinkedIn X Facebook Email to a friend Print