DECISION FRAMEWORK · v1.0

EU AI Act Readiness Guide

Practitioner field guide for CTOs, product owners, and compliance: who does the Act apply to? What must be satisfied? How does a product become conformant? When are which proofs due? — incl. an interactive 5-question decision tree.

REGULATION (EU) 2024/1689 · AS OF 17 MAY 2026
77
Days until Annex III + Art. 50 apply
€35M / 7%
Max. fine for prohibited practices
2 Aug 2026
Main application date for most rules
4
Risk classes — from prohibited to minimal
01 · Applicability

Does the AI Act apply to me?

The regulation's scope is extraterritorial: it covers every AI system placed on the EU market, put into service, or whose output is used in the EU — regardless of where the provider is based. Answer five questions to determine your classification and applicable obligations.

QUESTION 01 / 05
Does your AI system have an EU nexus?

The AI Act covers any of the following cases: you are a provider placing an AI system on the EU market; you are a deployer established in the EU; you are a provider or deployer outside the EU, but the system's output is used in the EU.

Legal basis · Art. 2 What matters is market reach, not corporate domicile. A US provider licensing a hiring-scoring model to a German enterprise falls under the regulation. A French company using a US service without any EU-bound output typically does not.
QUESTION 02 / 05
Does the system fall under prohibited practices (Art. 5)?

Eight practices have been EU-wide prohibited since 2 February 2025 — compliance is not an option, it is a prerequisite for market access. The list covers manipulative and exploitative techniques, social scoring by public authorities, untargeted facial-image scraping, emotion recognition in workplaces and educational settings, and certain biometric categorisations.

Excerpt Art. 5 para. 1
  • Subliminal, manipulative, or deceptive techniques causing significant harm
  • Exploitation of vulnerabilities based on age, disability, or social situation
  • Social scoring by public authorities
  • Predictive policing based purely on profiling
  • Untargeted scraping of facial images from the internet/CCTV
  • Emotion recognition in workplaces and educational settings
  • Biometric categorisation by sensitive attributes
  • Real-time remote biometric identification in public spaces (narrow exceptions for law enforcement)
QUESTION 03 / 05
Are you a provider of a General-Purpose AI model (GPAI)?

GPAI models are foundation models trained for a broad spectrum of tasks that can be integrated into a wide range of downstream systems — large language models are the typical example. Obligations have applied since 2 August 2025. Merely integrating a third-party model or shallow fine-tuning generally does not make you a GPAI provider — you remain a deployer or downstream provider.

Note · Art. 51 + Annex XIII A GPAI model with systemic risk is presumed when training compute exceeds 10²⁵ FLOPs. These models face heightened obligations: model evaluations, risk assessments, cybersecurity protection, and incident reporting.
QUESTION 04 / 05
Is your system high-risk under Annex III or Annex I?

A system is high-risk if it either serves as a safety component of an already regulated product (Annex I — e.g. medical devices, machinery, toys), or operates in one of the eight Annex-III domains. Profiling of natural persons is high-risk in every case.

Annex III · High-risk domains
  • Biometrics (remote identification, categorisation, emotion recognition outside prohibitions)
  • Critical infrastructure (transport, water, gas, electricity, critical digital infrastructure)
  • Education & vocational training (access, assessment, behaviour monitoring)
  • Employment (recruiting, performance, promotion, termination)
  • Essential services (credit scoring, insurance pricing, social benefits, emergency response)
  • Law enforcement (risk assessment, lie detection, evidence analysis)
  • Migration, asylum, border control
  • Justice administration & democratic processes
QUESTION 05 / 05
Does the system interact with humans or generate content?

Even if not high-risk, transparency obligations under Art. 50 apply from 2 August 2026 for chatbots, AI-generated or AI-manipulated content (deepfakes), emotion recognition, and biometric categorisation. Obligations are usually satisfiable through appropriate notices or labels — the compliance burden is significantly lower than for high-risk systems.

Art. 50 · Examples
  • Chatbot: users must be able to recognise they are interacting with AI
  • Generative AI: output must be marked as artificial in a machine-readable way (watermarking)
  • Deepfakes: clear labelling as AI-generated content
  • Emotion recognition / biometric categorisation: inform affected persons
Outcome · Out of scope

AI Act likely does not apply

Without an EU nexus your system falls outside the regulation's primary scope. But note: the moment you serve EU customers, employ EU staff, or output is used in the EU, the classification changes. GDPR, product liability, anti-discrimination law, and possibly national AI rules (e.g. UK, Switzerland) remain to be checked.

Status Not applicable
Re-assessment On EU market expansion
Other regimes GDPR, product liability, possibly UK AI

Recommended next steps

  1. Define trigger list: which business developments require re-assessment?
  2. Set up internal monitoring for EU market entry and EU output use
  3. Voluntary alignment with AI Act anyway — competitive advantage on EU expansion
Outcome · Prohibited practice (Art. 5)

Immediate market exclusion in the EU

The system has been prohibited in the EU since 2 February 2025. Placing on the market, putting into service, and use are forbidden. There is no conformity assessment — the practice itself is unlawful. Fines reach the highest tier of the regulation.

Applies since 2 February 2025
Max. fine €35M or 7% global turnover
Legal basis Art. 5, Art. 99 para. 3

Recommended next steps

  1. Immediate cessation in the EU — no postponement possible
  2. Legal review whether reclassification through functional change is possible
  3. Evaluate alternative architecture achieving the same business purpose without the prohibited practice
  4. Review existing contracts for liability risks, notify clients
Outcome · GPAI provider

GPAI obligations active since August 2025

As a GPAI provider you face transparency, documentation, and copyright obligations under Chapter V. Models with systemic risk (indicator: >10²⁵ FLOPs training compute) additionally face model evaluations, risk assessments, cybersecurity protection, and incident reporting. The voluntary GPAI Code of Practice (July 2025) provides a presumption of conformity.

Applies since 2 August 2025
Legacy model transition Compliance by 2 August 2027
Code of Practice Voluntary, with presumption of conformity
Supervision EU AI Office

Recommended next steps

  1. Prepare technical documentation under Annex XI (training data, energy use, architecture)
  2. Publish Public Summary of Training Content per Commission template
  3. Implement copyright compliance policy (EU copyright, respect opt-outs)
  4. Build downstream-provider information package under Annex XII
  5. For systemic risk: adversarial testing, incident-reporting channel to the AI Office
  6. Strategically evaluate signing the GPAI Code of Practice — creates a safe-harbour effect
Outcome · High-risk system

Full conformity obligations from 2 August 2026

High-risk systems face the strictest obligation catalogue of the AI Act. You must satisfy the requirements of Art. 9 through Art. 15 (risk management, data quality, technical documentation, logging, transparency, human oversight, robustness), build a quality management system, undergo conformity assessment, carry the CE marking, and register in the EU database.

Application 2 August 2026 (Annex III)
2 August 2027 (Annex I) *
Max. fine €15M or 3% global turnover
Conformity assessment Internal or notified body
CE marking Required before market entry

* Digital Omnibus (political agreement 7 May 2026) may postpone application dates for Annex-I systems, coupled to the availability of harmonised standards. Planning to the original date is recommended.

Recommended next steps

  1. Establish lifecycle risk management under Art. 9 (continuous, documented)
  2. Check datasets under Art. 10: representativeness, bias tests, lineage, lawful basis
  3. Build technical documentation under Annex IV — living document
  4. Implement logging architecture (Art. 12, at least 6 months retention, tamper-evident)
  5. Develop human oversight concept (Art. 14) — operational, not only written
  6. Establish QMS under Art. 17 (can build on ISO 9001 or ISO/IEC 42001)
  7. Choose conformity-assessment route (Art. 43) — internal for most Annex-III cases, notified body for biometrics
  8. Prepare post-market monitoring plan under Art. 72 — mandatory before market entry

→ Detailed requirements catalogue and 8-phase roadmap in sections 02 and 03 of this guide.

Outcome · Transparency obligation (Art. 50)

Limited risk — light obligations from August 2026

The system is not high-risk but subject to transparency requirements. Obligations are usually satisfiable in-product: clear notices, technical labelling (watermarking, metadata), machine-readable marking for synthetic content. The effort is manageable, but the risk of omission is real — fines reach €15M or 3% global turnover.

Applies from 2 August 2026
Max. fine €15M or 3% global turnover
Code of Practice Marking & labelling (2nd draft March 2026)

Recommended next steps

  1. UX audit: where and how is the AI nature communicated? Clearly, before or during interaction
  2. Implement watermarking strategy for generative outputs — machine-readable, state of the art
  3. Deepfake labelling systematically (layered approach: visual label + metadata)
  4. For emotion recognition / biometric categorisation: inform affected persons before processing
  5. Adopt Marking & Labelling Code of Practice (final mid-2026) as implementation guideline
Outcome · Minimal risk

No specific AI Act obligations

Your system falls into the largest risk category: minimal risk. Examples include spam filters, AI-assisted games, or recommendation algorithms without high-risk context. The AI Act imposes no specific obligations. Other legal regimes remain applicable — in particular GDPR, anti-discrimination law, product liability, and consumer protection.

AI Act obligations None
Still applicable GDPR, product liability directive, possibly sector-specific
Voluntarily recommended Voluntary codes of conduct (Art. 95)

Recommended next steps

  1. Define reclassification triggers: feature extensions can change status
  2. Implement AI literacy programme (Art. 4) — applies to all providers and deployers regardless of risk
  3. Consider voluntary code of conduct: builds customer trust and prepares for possible reclassification
  4. Re-run this decision tree on material model changes
02 · Requirements

What must be satisfied?

The following requirements apply to high-risk systems and form the core of the AI Act. Each is an independently enforceable legal obligation — and each requires solid audit evidence. The order matches Articles 9 through 15 plus complementary obligations on quality management, conformity assessment, and post-market monitoring.

Art. 9

Risk Management System

Continuous, iterative process across the full lifecycle. Identification, estimation, evaluation, and mitigation of all known and foreseeable risks to health, safety, and fundamental rights — including impacts on vulnerable groups and minors.

  • Risk inventory with severity and likelihood
  • Mitigation through design, safeguards, user information
  • Testing including real-world conditions (Art. 60)
  • Re-review on every material change
Art. 10

Data & Data Governance

Training, validation, and test data must be relevant, sufficiently representative, and as far as possible free of errors and complete with regard to the intended purpose. Bias detection and mitigation are mandatory, as is the consideration of geographic, contextual, and functional specifics.

  • Data lineage and provenance documented
  • Bias assessment per protected-attribute category
  • Lawful basis under GDPR reviewed and recorded
  • Sensitive data only where strictly necessary (Art. 10 para. 5)
Art. 11

Technical Documentation

Complete documentation under Annex IV before market entry, continuously updated. It covers system architecture, intended purpose, data flows, training and testing methodology, performance metrics, built-in risk controls, versioning, and limitations. It is the basis of every conformity assessment and market surveillance check.

  • Annex-IV-conformant structure (living document)
  • Version control with clear change history
  • 10-year retention after end of market life (Art. 18)
  • For SMEs: simplified form possible (Art. 11 para. 1)
Art. 12 + 19

Logging & Record-Keeping

The system must automatically log events across the lifecycle: inputs, outputs, operator interventions, model decisions, safety-relevant events. Logs must be tamper-evident, retained for at least 6 months, and enable traceability of relevant incidents.

  • Standardised log format with timestamps
  • At least 6 months retention (Art. 19)
  • Tamper-evidence (hashes, append-only)
  • Privacy-compliant storage (pseudonymisation)
Art. 13

Transparency to Deployers

Providers must give deployers, in clear, complete, and comprehensible form, all information needed for safe operation and lawful use: intended purpose, accuracy metrics, residual risks, training-data characteristics, expected lifetime, maintenance, and update requirements.

  • Instructions for Use (IFU) in Annex IV format
  • Performance metrics including confidence intervals
  • Clearly defined misuse risks
  • Instructions for human-oversight implementation
Art. 14

Human Oversight

The system must be designed so that natural persons can effectively oversee it during use — with the ability to intervene, override, or fully stop. Responsible persons must understand outputs, gauge limitations, and recognise automation bias.

  • Designed-in stop buttons and override mechanisms
  • Clear roles and competence definition for oversight personnel
  • Protection against automation bias (UX, training)
  • For critical applications: four-eyes principle recommended
Art. 15

Accuracy, Robustness, Cybersecurity

The system must maintain an appropriate level of accuracy, robustness, and cybersecurity across the lifecycle — suitable for its intended purpose. Robustness against faults, manipulation, and adversarial attacks is addressed architecturally, not only by policy.

  • Measurable performance KPIs published in IFU
  • Fallback modes for system failures
  • Protection against data poisoning, model evasion, prompt injection
  • Feedback loops for continuous improvement
Art. 17

Quality Management System

Providers must operate a documented QMS that organisationally anchors all obligations. It can build on existing standards (ISO 9001, ISO/IEC 42001), but must cover AI-Act-specific aspects: compliance strategy, design controls, testing procedures, conformity assessment, data management, incident reporting.

  • 13 mandatory components under Art. 17 para. 1
  • For SMEs: simplified form possible (Art. 63)
  • Audit trail of all compliance decisions
  • Integration with existing ISO 9001 / 27001 landscape recommended
Art. 43 + 47 + 48

Conformity Assessment + CE Marking

Before market entry: conformity assessment under Art. 43. Most Annex-III cases can be assessed internally; biometrics require a notified body. Then: EU declaration of conformity (Art. 47, 10-year retention) and CE marking (Art. 48). Only after these steps is the system lawful on the EU market.

  • Choose assessment route in documented form (internal vs. notified body)
  • EU Declaration of Conformity under Annex V
  • Ongoing obligation: re-assessment on material changes
  • Re-assessment on substantial modification
Art. 49 + 71

EU Database Registration

Certain high-risk systems (notably Annex III) must be registered in the public EU database before market entry. It gives authorities and the public transparency: intended purpose, provider, operational status. The entry must be updated on every material change.

  • Mandatory entry before market provision
  • Information per Annex VIII
  • Updates on material changes
  • For real-world tests additionally per Annex IX
Art. 72

Post-Market Monitoring

Providers must operate a documented post-market monitoring system — proactive and systematic. Goal: measure performance, accuracy, safety, and compliance across the full market lifetime. Insights feed back into risk management, technical documentation, and where needed corrective measures.

  • Post-market monitoring plan before market entry
  • Structured capture of performance data
  • Corrective duty on risk escalation (Art. 20)
  • Direct input for the continuous-compliance loop
Art. 73

Serious Incident Reporting

Serious incidents and malfunctions that may constitute a breach of fundamental rights must be reported to the competent national authorities. Deadlines are short — at the latest 15 days, 10 days for fatal incidents, 2 days for widespread or infrastructure-related damage.

  • Incident-reporting channel and escalation process
  • Deadlines: 2/10/15 days by severity
  • Link to vigilance systems of other sectors (e.g. MDR for medical)
  • Lessons learned fed back into risk management
03 · Implementation

How does my product become ready?

Eight phases from inventory to live operation. Duration and effort estimates are based on mid-sized B2B providers with one high-risk system. Scaling up and down is possible — with multiple systems the inventory, QMS, and conformity assessment are largely reusable.

01
2–4 weeks

AI Inventory & Classification

Complete capture of all AI systems in the organisation — proprietary, purchased, embedded in SaaS, in development. Classify each system by risk class with documented justification. Output: single source of truth for compliance steering. Without this base, every later phase is blind.

Deliverable AI inventory register
Deliverable Risk-classification sheet per system
Owner AI Governance / CTO Office
02
3–6 weeks

Gap analysis against Art. 9–15

For every high-risk system: target-actual comparison against all requirements of Chapter III, Section 2. Capture existence, maturity, and auditability of every measure. Output is a prioritised action catalogue with severity, effort, and time horizon. Common gaps: risk management not lifecycle-oriented, data lineage incomplete, logging not tamper-evident.

Deliverable Compliance gap report
Deliverable Prioritised action plan
Owner Compliance + Engineering Lead
03
6–12 weeks

Governance & Quality Management System

Build or extend the QMS under Art. 17. Those already running ISO 9001 or ISO/IEC 27001 integrate the AI-Act-specific requirements — orienting on ISO/IEC 42001 (AI Management System) is recommended. Central: clear roles (AI Officer, Data Steward, oversight responsibles), documented escalation paths, version control for models and datasets.

Deliverable QMS manual (Art. 17 para. 1, 13 components)
Deliverable RACI matrix for AI compliance
Owner Quality / Compliance Office
04
8–16 weeks

Technical implementation of requirements

The engineering core package. Implementation of risk controls, data pipelines, logging infrastructure, human-oversight UI, robustness tests. This is where it is decided whether compliance is by design or as a bolt-on layer. The second variant is more expensive, more fragile, and harder to audit. Recommendation: treat compliance requirements like functional requirements, with acceptance criteria and CI gates.

Deliverable Implemented Art. 9–15 controls
Deliverable Automated test suites (bias, robustness)
Deliverable Logging pipeline (Annex IV-conformant)
Owner Engineering / Data / Security
05
4–8 weeks

Technical documentation under Annex IV

Creation of the full Annex-IV dossier — living document, continuously maintained. It is the heart of every audit. Contents: general system description, design specification, training methodology, data management, risks & mitigations, test procedures, performance metrics, versioning, limitations. Recommendation: structured documentation in a versionable format (e.g. markdown in the git repo next to the code), not in isolated office documents.

Deliverable Annex-IV dossier (living doc)
Deliverable Instructions for Use (IFU) for deployers
Deliverable Model card & data card
Owner Product + Engineering + Compliance
06
2–8 weeks

Conformity assessment + CE marking

Choose the assessment route under Art. 43: internal control (Annex VI) for most Annex-III cases, notified body (Annex VII) for biometrics or Annex-I-embedded systems. Then: issue the EU declaration of conformity (Annex V), apply CE marking physically or digitally, 10-year retention. On material changes — new training data, changed intended purpose, significant model updates — re-assessment is mandatory.

Deliverable Conformity-assessment report
Deliverable EU Declaration of Conformity
Deliverable CE marking affixed
Owner Compliance + possibly notified body
07
1–2 weeks

Registration & market entry

Entry into the EU database under Art. 49 for Annex-III systems. Only then may the system be placed on the EU market. Accompanying: update of all sales materials, contracts (especially deployer contracts with clear role boundaries) and online presence. For B2B: onboarding briefing for first deployers that operationalises the IFU in daily work.

Deliverable EU DB entry (Annex VIII)
Deliverable Updated deployer contracts
Deliverable Go-to-market compliance pack
Owner Legal + Sales + Compliance
08
Continuous

Post-market monitoring + continuous compliance

Compliance does not end at market entry — it starts there. Post-market monitoring under Art. 72 continuously captures performance, bias drift, safety incidents, user feedback. Incidents are reported under Art. 73, corrective measures documented under Art. 20. Model updates and material changes trigger re-assessments. Recommendation: quarterly compliance review, annual full audit, trigger-based incident handling.

Deliverable Post-market monitoring reports
Deliverable Incident log + authority notifications
Deliverable Annual compliance review
Owner AI Governance + Engineering
04 · Timeline

When is what due?

The AI Act follows a staggered application plan. Several milestones already passed — prohibitions and GPAI are active. The next and largest wave hits on 2 August 2026: high-risk Annex III, transparency obligations Art. 50, and the start of enforcement. Those not ready accept a real fine exposure.

01 AUG 2024 past

Regulation enters into force

Regulation (EU) 2024/1689 enters into force in the EU Official Journal. The staggered application deadlines begin. From this date the EU formally has the legal basis for all subsequent obligations.

What had to happen
  • Initial inventory of your own AI systems
  • Plan compliance roadmap — with clear milestones
  • Secure top-management sponsorship
02 FEB 2025 past

Prohibitions + AI literacy applicable

Art. 5 (prohibited practices) and Art. 4 (AI literacy obligations) become applicable. The eight prohibited practices have been EU-wide forbidden since then. Every provider and deployer must additionally ensure that staff using AI systems have an adequate understanding.

What had to happen
  • Screening all systems against Art. 5
  • Roll out AI literacy programme to all staff
  • Documentation: who was trained when, with what content
02 AUG 2025 past

GPAI rules + governance applicable

Chapter V (GPAI obligations) takes effect. Providers of new GPAI models must furnish technical documentation under Annex XI, public training summary, copyright policy, and downstream information under Annex XII. Member states designate supervisory authorities, the AI Office is operational, AI Board and Scientific Panel established.

What had to happen
  • GPAI providers: Annex-XI documentation published
  • Public training summary per Commission template
  • Code-of-Practice signature decided
  • For systemic risk: model evaluations + incident channel
17 MAY 2026 today

Current status — critical window

77 days to the major application date. The EU Commission reached a political agreement on the Digital Omnibus on 7 May 2026, which may postpone application dates for Annex-I systems. For Annex III the date 2 August 2026 stands unchanged. Anyone not yet in phases 5–6 of the implementation roadmap is under significant time pressure.

What to do now
  • Finalise technical documentation (Annex IV) — living doc, current
  • Start conformity-assessment route or book notified body
  • Operationally prepare post-market monitoring plan
  • Test incident-reporting channel — not first after market entry
  • Review deployer contracts for Art. 13/14 conformity
02 AUG 2026 critical

Main application date + enforcement start

The majority of AI Act rules take effect: high-risk obligations for Annex-III systems, transparency obligations under Art. 50 for limited-risk systems, innovation measures (at least one AI regulatory sandbox per member state), and the formal start of enforcement by national authorities and EU AI Office.

What must be ready by then
  • Complete conformity documentation (Annex IV) available
  • Conformity assessment completed, CE marking affixed
  • EU declaration of conformity signed, 10-year retention secured
  • EU database entry (Annex VIII) live
  • Post-market monitoring operational
  • Transparency implementation for chatbots, generative AI, deepfakes
02 AUG 2027 future

Annex-I systems + legacy GPAI

High-risk obligations for systems embedded as safety components in regulated products (Annex I — e.g. medical devices, machinery, toys). GPAI models already on the market before 2 August 2025 must be fully compliant by this date. Note: the Digital Omnibus may couple and postpone these dates to the availability of harmonised standards.

Preparations
  • Integrate AI Act compliance with MDR / Machinery Directive / Toy Safety Directive
  • Legacy GPAI: catch-up plan for Annex-XI documentation
  • Secure notified-body capacity early (bottleneck expected)
31 DEC 2030 future

Legacy high-risk in public bodies

High-risk systems put into service by public authorities before 2 August 2026 must be fully compliant by this date. This long transition reflects the complexity of public-sector migrations. Private providers serving authorities should align their compliance roadmap to this date.

↻ Continuous Compliance Loop

Ongoing evolution is mandatory — not optional

Compliance is not a one-off, it is a lifecycle. After market entry several parallel cycles run: technical reviews, compliance audits, incident handling, and risk-management updates. The following cadences have proven themselves for mid-sized providers — larger organisations tend to shorter intervals, SMEs to pragmatically longer ones with clear trigger points.

Continuous

Logging & Monitoring

Automated capture of performance, drift, anomalies. Alerts on threshold breach.

Weekly

Bias & Drift Checks

Automated tests against protected attributes. Re-evaluation of representativeness.

Monthly

Incident Review

Structured handling of all incidents — including those below reporting threshold.

Quarterly

Compliance Review

Status of action plans, update of technical documentation, refresh of risk matrix.

Half-yearly

Post-Market Monitoring Report

Consolidated report for market surveillance and internal risk management.

Yearly

Full Compliance Audit

Complete review against Art. 9–15 and QMS audit. Re-conformity assessment as needed.

Event-driven

Material Change

Model update, new intended purpose, significant data change — triggers re-assessment.

Incident-driven

Serious-Incident Report

Deadline 2–15 days by severity. Under Art. 73 to national authority.

05 · Fines

What is at risk?

Fines are staggered by severity of breach. Levels are above average in the European regulatory comparison — for prohibited practices they even exceed GDPR. Imposed by the national supervisory authority of the affected member state, for GPAI breaches by the EU AI Office (Art. 101).

€35M / 7%
Art. 99 para. 3 · Prohibited practices

Breach of Art. 5. Highest tier — up to €35M or 7% of global annual turnover, whichever is higher.

€15M / 3%
Art. 99 para. 4 · Other obligations

Breaches of obligations on high-risk systems, transparency, GPAI obligations, conformity assessment. Up to €15M or 3% global turnover.

€7.5M / 1%
Art. 99 para. 5 · False information

Incorrect, incomplete, or misleading information to authorities. Up to €7.5M or 1% global turnover.

€15M / 3%
Art. 101 · GPAI providers (from 2 Aug 2026)

Independent sanctioning power of the EU AI Office against GPAI providers. Up to €15M or 3% global turnover.