← Research
Research

What does AI literacy mean for leaders?

A legal obligation since February 2025, enforced since this month. Tool training satisfies a procurement line, not the duty.

Last reviewed: 26 August 2026

What Article 4 actually requires, the clause almost every literacy programme misses, the four capabilities leaders need that staff do not, and why judgement is a stronger frame than literacy.

Questions this page answersAll 616 questions this research covers

For leaders operating in the European Union, AI literacy stopped being a development topic on 2 February 2025. Article 4 of the EU AI Act requires providers and deployers to "take measures to ensure, to their best extent, a sufficient level of AI literacy" among staff and anyone else operating AI systems on their behalf. It applies to every provider and deployer, at every risk tier, whether or not the organisation runs anything classified as high-risk. Commission supervision and enforcement of the literacy rules began on 2 August 2026.

Most organisations have responded by buying tool training and calling it literacy. That satisfies a procurement line rather than the obligation, and more importantly it does not produce the thing the obligation exists to produce.

What the Article actually says, and what it deliberately does not#

The text is short. Measures must be taken "to their best extent", judged against "technical knowledge, experience, education and training and the context the AI systems are to be used in", and taking account of "the persons or groups of persons on whom the AI systems are to be used."

Three things follow, and the third is the one that gets missed.

It is proportionate, not uniform. There is no prescribed curriculum and no certificate. A radiographer, a recruiter and a board director need different things, and a compliance approach that gives all three the same ninety-minute module has satisfied nobody's actual need.

It is contextual. Literacy is defined relative to the systems being used and the setting they are used in, which means it cannot be bought off the shelf and cannot be finished. It changes when the tools change.

It extends to people affected, not only people operating. The final clause pulls in the persons on whom systems are used. For an employer that includes candidates screened by a system and staff whose work is allocated by one. Very few AI literacy programmes have noticed this clause exists.

What leaders specifically need, which is not what staff need#

The obligation covers staff. But a leader's literacy failure is more consequential than a user's, because leaders decide what gets deployed, what gets cut, and what gets measured. Four capabilities matter more than any tool knowledge.

Knowing what these systems are bad at, not just what they are good at. The competence boundary is jagged rather than smooth: in the Dell'Acqua field experiment with 758 consultants, those working just outside it were 19 percentage points less likely to reach a correct answer than consultants with no AI at all. A leader who cannot describe where their systems fail is authorising deployments blind.

Reading a claim about AI performance. Distinguishing a randomised trial from a vendor survey, noticing when an average conceals opposite effects on different people, asking what a study does not support. In the radiology evidence, the effect of AI assistance ran from strongly positive to strongly negative between individual readers and was not predicted by experience. An average is not a finding, and leaders are shown averages constantly.

Understanding what deployment does to capability. Automating a task removes the practice that built the judgement for it. Someone has to be accountable for whether the organisation can still do the work if the system fails, and that person is not in the IT function.

Knowing what you personally can no longer verify. The most useful question a leader can ask themselves is which decisions they are now approving rather than making. That is a personal question rather than a governance one, and nobody else can answer it for them.

A weak frame for a strong obligation#

"AI literacy" is a weak frame for a strong obligation, and the weakness is predictable. Literacy language invites a training solution: a course, a completion rate, a dashboard. But completion is not capability, and an organisation can reach 100 per cent completion while its actual ability to judge machine output stays exactly where it was. That is usage theatre with a compliance certificate attached.

The stronger frame is judgement. Article 4 does not ask whether people know how to use the tools. It asks whether they have a sufficient level of understanding for their context and for the people affected. That is a question about competence to decide, not familiarity with an interface. Read that way, the obligation and the capability argument point the same direction, and Article 14 confirms it by requiring that overseers of high-risk systems can detect anomalies and remain aware of automation bias.

There is a real risk worth naming. Because Article 4 says "to their best extent" and prescribes no curriculum, it is unusually easy to comply with cheaply and badly. The likely equilibrium is a market of certificates that satisfy auditors and change nothing. An organisation that wants the capability rather than the certificate has to measure something other than completion, which almost nobody currently does. See how should leaders respond to AI.

Enforcement has only just begun#

Article 4 has been in force since February 2025, but enforcement only began this month, and no guidance yet defines what "sufficient" means in practice. There is no case law and no penalty precedent. Reasonable organisations will interpret the standard very differently for at least the next year, and anyone stating confidently what compliance requires is going beyond what exists.

This page describes the obligation and offers an interpretation of what it should mean. It is not legal advice, and organisations should take their own.

Segment by decision rights#

On the oversight duty that follows from this, meaningful human oversight. On why completion is not capability, usage theatre and the AI readiness lie. On the leadership response, how should leaders respond to AI and the CHRO guide. On what erodes underneath, capability debt.

Key sources

About this research#

Rahim Hirji is the author of SuperSkills (Kogan Page, 2026), keynote speaker on AI and human capability, and founder of The SuperSkills Intelligence Company. AI literacy is a term from the regulation and the wider field, not a coinage from this work. The regulatory position is quoted from the primary text and dated; the interpretation is the author's and is kept separate. Not legal advice. On a 90-day review cycle while enforcement practice develops.

How this research works  ·  Reviewed quarterly  ·  Found an error? Tell me and it is corrected on the page.

Cite this

Hirji, R. (2026). What does AI literacy mean for leaders? The SuperSkills Intelligence Company. Last reviewed 26 August 2026. thesuperskills.com/research/what-does-ai-literacy-mean-for-leaders

Questions answered on this page

Is AI literacy a legal requirement?

In the European Union, yes. Article 4 of the EU AI Act has applied since 2 February 2025 and requires providers and deployers of AI systems to take measures to ensure, to their best extent, a sufficient level of AI literacy among their staff and other persons dealing with the operation and use of AI systems on their behalf. It applies to every provider and deployer regardless of risk tier, not only to organisations running high-risk systems. Commission supervision and enforcement of the literacy rules began on 2 August 2026.

What does Article 4 actually require?

Measures taken to their best extent, judged against technical knowledge, experience, education and training, and the context the systems are used in, and taking account of the persons or groups on whom the systems are used. Three things follow. It is proportionate rather than uniform, so different roles need different things. It is contextual, so it cannot be bought off the shelf or finished. And that final clause extends the duty to people affected by systems, not only those operating them, which most literacy programmes have missed.

What do leaders need that staff do not?

Four capabilities. Knowing what these systems are bad at, since the competence boundary is jagged and consultants working just outside it performed worse than those with no AI at all. Reading a claim about AI performance, including noticing when an average conceals opposite effects on different people. Understanding what deployment does to capability over time. And knowing which decisions they personally are now approving rather than making.

Why is tool training not enough?

Because completion is not capability. An organisation can reach full completion on a training module while its actual ability to judge machine output stays exactly where it was. Article 4 does not ask whether people can use the tools; it asks whether they have sufficient understanding for their context and for the people affected, which is a question about competence to decide. Because the standard says to their best extent and prescribes no curriculum, it is unusually easy to comply cheaply and badly, so the measure that matters is capability change rather than completion rate.

In this hub

Organisations and leadership

What a leadership team actually has to decide, and what to measure.

The work

Where the writing comes from.

These essays draw on research across more than 200 organisations in 30 countries. See the wider body of work, or bring it into your organisation.

All research →

Leadership teams who use the tools closely enough to know where they fail are past the literacy problem. For everyone else, turning this into something you can run for an executive team is the engagement. Board advisory.

This argument is one a board usually meets for the first time in the room. There is the boards and leadership version, and the full range of topics and audiences.

Box of Amazing

Rahim’s free weekly letter on AI and human capability

If this was useful, the weekly letter is where the thinking happens first. Most of what ends up on this site starts there. Weekly essays on AI, capability and the future of work. Read by 25,000 people, every week since 2017. Free, and one click to stop.

Opens Substack to confirm. No pitch in it, unsubscribe in one click, and nobody follows up because you read something.