Data protection, algorithmic transparency, and compliance: a review of the legal challenges of artificial intelligence

Authors

DOI:

https://doi.org/10.63688/b35xe061

Keywords:

artificial intelligence, data protection, algorithmic transparency, compliance, algorithmic governance

Abstract

Introduction: The proliferation of artificial intelligence systems has sharpened the legal issue of data protection, the transparency of algorithms and the accountability of entities. Objective: To conduct a review of the scientific literature on the legal risks posed by artificial intelligence and the mechanism for managing its governance and compliance. Methodology: An integrative, legal and critical review of a total of 23 contributions was carried out, which has been reported in the literature for the period of time from 2016 to 2026, mainly in Scopus and SciELO. The review has grouped the studies into very few areas: data protection; transparency; accountability and compliance; and AI governance. Results: The literature reviewed shows the progression from approaches focused on privacy and transparency to a model in which explainability, auditability, traceability, human supervision and accountability prevail. Algorithmic compliance has been highlighted as a mechanism for preventive controls and risk management. Conclusions: The regulation of AI goes beyond simple formalism and incorporates, in organizational structures, that are controllable.

References

Ananny, M., & Crawford, K. (2018). Seeing without knowing: Limitations of the transparency ideal and its application to algorithmic accountability. New Media & Society, 20(3), 973–989. https://doi.org/10.1177/1461444816676645

Arnesen, L. (2026). Comparing the right to information about automated decision-making to the new right to explanation. International Data Privacy Law, 16(2), ipag008. https://doi.org/10.1093/idpl/ipag008

Burrell, J. (2016). How the machine ‘thinks’: Understanding opacity in machine learning algorithms. Big Data & Society, 3(1), 1–12. https://doi.org/10.1177/2053951715622512

Busuioc, M. (2021). Accountable artificial intelligence: Holding algorithms to account. Public Administration Review, 81(5), 825–836. https://doi.org/10.1111/puar.13293

Cárdenas Poveda, M., & Sarmiento Salcedo, M. (2025). Principios del gobierno digital, marco ético de la inteligencia artificial y función administrativa en Colombia. Pro Jure Revista de Derecho, 64, 305–332. https://doi.org/10.4151/SO2810-76592025064-1458

Demetzou, K., Zanfir-Fortuna, G., & Vale, S. B. (2023). The thin red line: Refocusing data protection law on ADM, a global perspective with lessons from case-law. Computer Law & Security Review, 49, 105806. https://doi.org/10.1016/j.clsr.2023.105806

Durand Goyzueta, E. A., Condori Mamani, B., Ramos Chura, E., Avila Inquilla, V. E., Salinas del Carpio, A., Ito Díaz, R. R., & Hilasaca Zea, C. Y. (2026). Cognitive privacy and the use of artificial intelligence in digital platforms for higher education. NeuroData, 3, 160. https://doi.org/10.63688/neurodata2026160

Felzmann, H., Fosch-Villaronga, E., Lutz, C., & Tamò-Larrieux, A. (2019). Transparency you can trust: Transparency requirements for artificial intelligence between legal norms and contextual concerns. Big Data & Society, 6(1), 1–14. https://doi.org/10.1177/2053951719860542

Floridi, L., Cowls, J., Beltrametti, M., Chatila, R., Chazerand, P., Dignum, V., Luetge, C., Madelin, R., Pagallo, U., Rossi, F., Schafer, B., Valcke, P., & Vayena, E. (2018). AI4People—An ethical framework for a good AI society: Opportunities, risks, principles, and recommendations. Minds and Machines, 28(4), 689–707. https://doi.org/10.1007/s11023-018-9482-5

García-Llorente, C., & Olmeda, I. (2026). Making algorithmic transparency enforceable: Sufficient intelligibility, technical evidence, and auditability across the EU and the US. International Journal of Law and Information Technology, 34, eaag008. https://doi.org/10.1093/ijlit/eaag008

Gómez Rodríguez, J. M. (2026). Hacia la gobernanza de la inteligencia artificial en la Administración pública. Foro: Revista de Derecho, 45, 29–47. https://doi.org/10.32719/26312484.2026.45.2

Jobin, A., Ienca, M., & Vayena, E. (2019). The global landscape of AI ethics guidelines. Nature Machine Intelligence, 1(9), 389–399. https://doi.org/10.1038/s42256-019-0088-2

Lepri, B., Oliver, N., Letouzé, E., Pentland, A., & Vinck, P. (2018). Fair, transparent, and accountable algorithmic decision-making processes: The premise, the proposed solutions, and the open challenges. Philosophy & Technology, 31(4), 611–627. https://doi.org/10.1007/s13347-017-0279-x

Li, W., Zhang, Y., Zheng, Q., & Li, A. (2026). How the legal basis for AI training is framed in data protection guidelines and interventions: Comparative perspectives and the prospect of global convergence. International Data Privacy Law, 16(2), ipaf032. https://doi.org/10.1093/idpl/ipaf032

Malgieri, G., & Comandé, G. (2017). Why a right to legibility of automated decision-making exists in the General Data Protection Regulation. International Data Privacy Law, 7(4), 243–265. https://doi.org/10.1093/idpl/ipx019

Mantelero, A. (2018). AI and Big Data: A blueprint for a human rights, social and ethical impact assessment. Computer Law & Security Review, 34(4), 754–772. https://doi.org/10.1016/j.clsr.2018.05.017

Mendoza Enríquez, O. A. (2021). El derecho de protección de datos personales en los sistemas de inteligencia artificial. Revista IUS, 15(48), 179–207. https://doi.org/10.35487/rius.v15i48.2021.743

Mittelstadt, B. D., Allo, P., Taddeo, M., Wachter, S., & Floridi, L. (2016). The ethics of algorithms: Mapping the debate. Big Data & Society, 3(2), 1–21. https://doi.org/10.1177/2053951716679679

Novelli, C., Taddeo, M., & Floridi, L. (2024). Accountability in artificial intelligence: What it is and how it works. AI & Society, 39(4), 1871–1882. https://doi.org/10.1007/s00146-023-01635-y

Sánchez Acevedo, M. E. (2022). La inteligencia artificial en el sector público y su límite respecto de los derechos fundamentales. Estudios Constitucionales, 20(2), 257–284. https://doi.org/10.4067/S0718-52002022000200257

Selbst, A. D., & Powles, J. (2017). Meaningful information and the right to explanation. International Data Privacy Law, 7(4), 233–242. https://doi.org/10.1093/idpl/ipx022

Viollier, P., & Contreras, P. (2026). Derecho a una explicación en decisiones automatizadas: Contrapunto entre el GDPR y la Ley 21.719. Revista Chilena de Derecho y Ciencia Política, 17(1), 1–27. https://doi.org/10.7770/rchdcp-v17n1-art527

Wachter, S., Mittelstadt, B., & Floridi, L. (2017). Why a right to explanation of automated decision-making does not exist in the General Data Protection Regulation. International Data Privacy Law, 7(2), 76–99. https://doi.org/10.1093/idpl/ipx005

Downloads

Published

2026-08-20

How to Cite

Santini Rodriguez, F. J., Rodriguez Montaño, L. C., & Romero Lamadrid, M. I. (2026). Data protection, algorithmic transparency, and compliance: a review of the legal challenges of artificial intelligence. Sage Sphere in Artificial Intelligence, 4(1), 1-25. https://doi.org/10.63688/b35xe061