The Philippines has introduced pending legislation on Artificial Intelligence (AI). Companies subject to the laws of the Philippines should be familiar with all relevant AI-related laws, regulations, and guidance, including those listed below.

Draft Laws and Regulations

It would regulate development/use of AI systems, promote ethical innovation and create a National AI Commission with oversight.

The Bill would establish a national risk-based framework for the development, deployment and regulation of AI and create an Artificial Intelligence Development Authority (AIDA) attached to the Department of Science and Technology. It would impose enhanced requirements on high-risk AI systems, prohibit specified AI practices and establish principles relating to human rights, fairness, transparency, human oversight, privacy, safety and security. HB 9582 is one of the bills currently being considered as part of the House's consolidated substitute-bill process.

Principles, Studies, & Recommendations

The Strategy establishes a national framework for the development, deployment and governance of AI through 2028. It focuses on five areas: AI infrastructure, workforce development, innovation, data governance and policy, and AI deployment, and seeks to coordinate AI initiatives across government, industry and academia.

The National Privacy Commission's Advisory explains how the Data Privacy Act, its implementing rules and NPC issuances apply to AI systems that process personal data, including during training and testing. It addresses transparency, accountability, fairness, data minimization, lawful bases, data-subject rights, security and governance mechanisms for AI systems.

The nonbinding principles guide BSP-supervised financial institutions in developing proportionate AI governance and risk-management frameworks. They use the STARS principles: Sustainability, Transparency, Accountability, Responsibility and Security.

This memorandum addresses cybersecurity risks arising from frontier AI and recommends measures concerning attack-surface visibility, foundational security controls, authentication, vulnerability reduction, AI-enabled defensive tools, incident readiness and business continuity. It also recommends that institutions develop an AI governance framework in accordance with M-2026-031.