Skip to main content
🚀 Taking AI from prototype to production? Find the architecture, GPU, security and governance gaps before they become incidents. Get a Production AI Readiness Assessment
The main hall at Snowflake World Tour Amsterdam 2024, with the keynote stage and Benoit Dageville's name on the side screens
AI

Snowflake World Tour Amsterdam 2024: Cortex and EU AI Act

Snowflake World Tour Amsterdam 2024: the Enterprise AI keynote, Cortex Analyst and Search, the EU Data Act and AI Act, Native App security and Cortex SQL.

LB
Luca Berton
· 9 min read

On 3 October 2024 I spent the day at Snowflake World Tour Amsterdam. The event page gave the venue as Taets Art & Event Park in Zaandam, with shuttle buses from Zaandam station, and the theme as “Join us in the Era of Enterprise AI”. I went for the AI and governance content. As a consultant, I keep being asked how a data platform fits with the EU AI Act, and this agenda had a whole session on it.

Luca Berton at the Snowstore at Snowflake World Tour Amsterdam 2024, holding a copy of Amp It Up

Before the keynote, at the Snowstore with a copy of Frank Slootman’s “Amp It Up”.

The agenda boards in the expo area listed hands-on Snow Labs, such as “Build and Manage Snowflake Cortex LLM Functions in Coalesce” and an Eredivisie 2024/2025 football forecasting lab. They also showed a Data Foundation track with sessions like “All Aboard the NS Data Express” and “Security and Compliance Risk Management with Snowflake’s Trust Center”.

The keynote: the AI Data Cloud

Martin Frederik, Snowflake’s Country Manager Benelux, opened the keynote. The side screens then introduced Benoit Dageville, co-founder and President of Products. The main slide summed up Snowflake’s pitch: the AI Data Cloud as an “AI-powered data platform” plus a “data-powered AI platform”.

Keynote at Snowflake World Tour Amsterdam 2024 in a packed hall, with Benoit Dageville's name and photo on both side screens

The main hall as the keynote got going.

The slides I photographed covered:

  • Efficiency: “Efficient. Better TCO”, with a single platform for all workloads and built-in cost controls.
  • Snowflake Marketplace: “over 2,400 listings” of data products.
  • Dynamic Tables: a quote from Boston Children’s Hospital said they simplified its ETL tooling, and loads that took 4 hours in the early morning now ran in 45 minutes.
  • Customer stories: a Swire Coca-Cola slide said it uses Snowpark to identify millions in savings and speed up route optimisation, and Sigma appeared as a partner.

The live demo was about cost. A notebook titled “Batch Text Processing using LLMs and Fine-tuning” sorted support tickets with the Cortex COMPLETE function on a large Llama model. The presenter then switched to Mistral 7B, which on its own did worse. Next he fine-tuned the small model on the large model’s answers until its output matched. The demo ended with a text-to-SQL analyst over the same tickets and a RAG chatbot over billing documents for call-centre agents. His point was that the data never left the account.

Cortex Analyst and Cortex Search: “Talk to your data”

The first Business Track breakout was “Talk to your data: fast, accurate answers to business questions”. The opening slide credited Grace Adamson (Senior Product Marketing Manager AI/ML, Snowflake EMEA) and Tom Christian (Platform Principal AI & ML, Snowflake EMEA).

Cortex Analyst was presented as self-service, conversational analytics over structured data: business users ask questions and get SQL-backed answers. Snowflake’s slide claimed it was about 2x more accurate than single-shot SQL generation from state-of-the-art LLMs, and 11% more accurate than other text-to-SQL solutions. Those are Snowflake’s own numbers. A demo app answered movie questions such as “What was the highest-grossing series
”. A Bayer case slide said the company uses Streamlit in Snowflake and Cortex Analyst for self-serve analytics, to reduce reliance on data teams.

For unstructured text, the talk moved to Cortex Search: “fully managed indexing and retrieval” for chatbots that use RAG. The examples were customer service bots on FAQs, research lookup for wealth managers, risk reports and questions over SEC filings.

Chatbots using RAG with Cortex Search slide at Snowflake World Tour Amsterdam 2024, with two presenters on stage

The Cortex Search use cases slide in the Business Track.

European regulation: the Data Act and the AI Act

The session I most wanted to see was “European Regulation: Opportunities and Challenges”, presented by Grace Adamson. The agenda had four questions: what the EU Data Act is, what the EU AI Act is, and what customers should consider for each.

The EU Data Act was framed as a “mandate to share data”. It sets who can create value from data, and on what terms, for users, holders and recipients of connected products and data processing services. The principles were fair, reasonable and non-discriminatory sharing, openness balanced with non-competition, and reasonable compensation for sharing with third parties. A “data sharing and portability are key” slide used an automotive example and listed manufacturing (enabling data collection in IoT), energy (usage data for optimisation and pricing) and financial services (more customised insurance offerings). Snowflake’s angle was “turn compliance into a competitive edge”: sharing and Marketplace listings can make compliance work into data products.

The EU AI Act half was the more useful one for me. One slide set out the roles in the AI value chain: providers, deployers, importers and distributors. Organisations can sit in several roles at once, and each role carries obligations that range from monitoring and documentation to governance and reporting.

EU AI Act risk pyramid slide: unacceptable, high, limited and minimal risk with examples, at Snowflake World Tour Amsterdam 2024

The two year journey has just started: EU AI Act timeline slide from July 2024 to December 2030

Left: the four risk tiers. Right: the AI Act timeline as presented in October 2024.

The risk slide had four tiers:

  • Unacceptable risk: prohibited (manipulation, social scoring).
  • High risk: permitted with strict rules (biometrics, critical infrastructure, employment, essential services, education, law enforcement, migration, justice and democratic processes).
  • Limited risk: permitted with some rules (some image or text generation).
  • Minimal risk: permitted without restriction (likely spam filters, video games).

The timeline slide was titled “The two year journey has just started”. It ran from publication in the Official Journal in July 2024, through the Article 5 prohibitions in February 2025 and the GPAI rules in August 2025, to general application in August 2026, Article 6(1) high-risk rules in August 2027, and full force by December 2030. The speaker’s main points were that AI compliance is now a board-level topic, that “AI is not just a point in time”, and that the gap analysis has to cover the whole organisation, from the board down to day-to-day processes.

The last part mapped the obligations onto the platform. AI quality management and compliance went with data and model governance. Human oversight and responsible AI went with impact assessments. Monitoring went with post-deployment monitoring plans. On the Snowflake side, the slides showed Snowflake Horizon (governance, data quality and lineage), ML explainability and observability in Snowsight, and “a single source of truth for data and models”.

What has changed since. Some of those dates have moved. The Data Act has applied since 12 September 2025. For the AI Act, the Council gave its final approval on 29 June 2026 to an amendment that moves the high-risk rules to 2 December 2027 for stand-alone systems and 2 August 2028 for systems embedded in products. The February 2025 prohibitions and the August 2025 GPAI obligations kept their dates. I covered the details in EU AI Act high-risk deadlines postponed.

Snowflake Native Apps: the security model

After lunch I went to Fredrik Göransson (Field CTO, Snowflake) on the Snowflake Native App Framework. He compared it with traditional software, where the consumer installs and patches it, and with SaaS, which the provider hosts outside the customer’s infrastructure. A Native App is installed and runs inside the consumer’s Snowflake account, and is distributed through the Marketplace.

Application Access slide: least privilege and trusted, the application runs as itself, at Snowflake World Tour Amsterdam 2024

“Application runs as itself. Not as the role of the user who installed it.”

The security points, from the slides:

  • The app runs as itself, not as the installing user’s role. It only has access to what it creates during installation. Anything else it has to request, and an administrator manages that access.
  • Components: manifest.yml (properties and permissions), setup.sql (creates or upgrades objects in the consumer account), code for procedures, functions and Streamlit, and containers on Snowpark Container Services (marked “new”).
  • Code is scanned before publishing to the Marketplace. Consumers can run the code without seeing it, and providers push upgrades.
  • References let the app ask the consumer to bind specific objects. They are resolved as the role of the user who binds them.
  • Telemetry levels are set by the provider in manifest.yml (log_level, telemetry_event_definitions), but the consumer has to consent to sharing and sees switches for each level. The speaker noted that logs can expose the names of internal procedures, so providers should choose the level carefully.

From 5K lines of Python to 10 lines of SQL

The last breakout I photographed was the most concrete. The speaker described classifying customer product suggestions for a supermarket. According to the slides, they received about 50K suggestions a month in 2023, 70% of them from “our most loyal or new customers”. An example suggestion, “Lipton ice tea green strawberry”, was split into brand, product and variant, and then mapped to Dutch-language shop categories such as “Koffie & thee”.

The first version called gpt-4o-mini through the OpenAI Python client. With more than 3M suggestions, they used batches of 50K and waited up to 24 hours for each batch. Then came the slide “What if
 you can just write SQL? From 5K lines Python code to 10 lines SQL.”

SNOWFLAKE.CORTEX.COMPLETE SQL slide using llama3.1-70b to classify product suggestions at Snowflake World Tour Amsterdam 2024

The replacement: one SNOWFLAKE.CORTEX.COMPLETE call over the suggestions table, with llama3.1-70b “or any other model”.

The SQL version was a single CTE that called SNOWFLAKE.CORTEX.COMPLETE('llama3.1-70b', 
) with the system prompt and the suggestion as messages and a temperature of 0.3. It extracted the answer and the token usage as columns. The next slide, “Even easier!”, replaced the prompt with SNOWFLAKE.CORTEX.CLASSIFY_TEXT(s.suggestion, c.categories) joined to a categories table. The speaker also listed the caveats: about 30 ms per row, so 1M rows take about 8 hours, and model availability.

Today Snowflake’s docs list COMPLETE and CLASSIFY_TEXT as legacy functions. New work should start from AI_COMPLETE and AI_CLASSIFY, and the COMPLETE page says it will be deprecated by the end of 2026. The Cortex Analyst docs now recommend moving to Cortex Agents. Cortex Search, the Native App Framework and Horizon Catalog are still current product names.

My take

From a data-platform and AI-governance angle, the useful part of the day was that the regulation session and the product sessions described the same thing from two sides. The AI Act asks who you are in the value chain, what risk tier each system is in, and how you show oversight and monitoring. In practice, most of that evidence is about data: lineage, access, quality and logs. Running LLM calls as SQL inside the governed platform, as in the supermarket case, leaves the prompts, model choice and token counts in tables you can audit. A Python job sending batches to an external API leaves a much thinner trail.

Two cautions, though. First, “inside the platform” doesn’t decide your role under the Act: if you build and deploy the classifier, you are still the deployer, and possibly the provider. Second, the 30 ms per row caveat matters. Row-by-row LLM calls are fine for millions of rows a month, but cost and latency have to be measured before you scale, as in the keynote’s switch to a small fine-tuned model. For more on the governance side, see Building an AI Governance Framework That Actually Works and Edge AI and EU AI Act Compliance.

Luca Berton in the emptied main hall at Snowflake World Tour Amsterdam 2024, with a group photo being taken on stage behind him

End of the day: the main hall was empty, and a group photo was being taken on stage.

Free 30-min Production AI consultation

Book Now