Annex IV Technical documentation referred to in Article 11(1)


The technical documentation referred to in Article 11(1) shall contain at least the following information, as applicable to the relevant AI system:

  1. A general description of the AI system including:

    1. its intended purpose means the use for which a product with digital elements is intended by the manufacturer, including the specific context and conditions of use, as specified in the information supplied by the manufacturer in the instructions for use, promotional or sales materials and statements, as well as in the technical documentation;, the name of the provider and the version of the system reflecting its relation to previous versions;

    2. how the AI system interacts with, or can be used to interact with, hardware means a physical electronic information system, or parts thereof capable of processing, storing or transmitting digital data; or software means the part of an electronic information system which consists of computer code;, including with other AI systems, that are not part of the AI system itself, where applicable;

    3. the versions of relevant software means the part of an electronic information system which consists of computer code; or firmware, and any requirements related to version updates;

    4. the description of all the forms in which the AI system is placed on the market or put into service, such as software means the part of an electronic information system which consists of computer code; packages embedded into hardware means a physical electronic information system, or parts thereof capable of processing, storing or transmitting digital data;, downloads, or APIs;

    5. the description of the hardware means a physical electronic information system, or parts thereof capable of processing, storing or transmitting digital data; on which the AI system is intended to run;

    6. where the AI system is a component means software or hardware intended for integration into an electronic information system; of products, photographs or illustrations showing external features, the marking and internal layout of those products;

    7. a basic description of the user-interface provided to the deployer;

    8. instructions for use for the deployer, and a basic description of the user-interface provided to the deployer, where applicable;

  2. A detailed description of the elements of the AI system and of the process for its development, including:

    1. the methods and steps performed for the development of the AI system, including, where relevant, recourse to pre-trained systems or tools provided by third parties and how those were used, integrated or modified by the provider;

    2. the design specifications of the system, namely the general logic of the AI system and of the algorithms; the key design choices including the rationale and assumptions made, including with regard to persons or groups means a group as defined in Article 2, point (11), of Directive 2013/34/EU; of persons in respect of who, the system is intended to be used; the main classification choices; what the system is designed to optimise for, and the relevance of the different parameters; the description of the expected output and output quality of the system; the decisions about any possible trade-off made regarding the technical solutions adopted to comply with the requirements set out in Chapter III, Section 2;

    3. the description of the system architecture explaining how software means the part of an electronic information system which consists of computer code; components means software or hardware intended for integration into an electronic information system; build on or feed into each other and integrate into the overall processing; the computational resources used to develop, train, test and validate the AI system;

    4. where relevant, the data requirements in terms of datasheets describing the training methodologies and techniques and the training data sets used, including a general description of these data sets, information about their provenance, scope and main characteristics; how the data was obtained and selected; labelling procedures (e.g. for supervised learning), data cleaning methodologies (e.g. outliers detection);

    5. assessment of the human oversight measures needed in accordance with Article 14, including an assessment of the technical measures needed to facilitate the interpretation of the outputs of AI systems by the deployers, in accordance with Article 13(3), point (d);

    6. where applicable, a detailed description of pre-determined changes to the AI system and its performance, together with all the relevant information related to the technical solutions adopted to ensure continuous compliance of the AI system with the relevant requirements set out in Chapter III, Section 2;

    7. the validation and testing procedures used, including information about the validation and testing data used and their main characteristics; metrics used to measure accuracy, robustness and compliance with other relevant requirements set out in Chapter III, Section 2, as well as potentially discriminatory impacts; test logs and all test reports dated and signed by the responsible persons, including with regard to pre-determined changes as referred to under point (f);

    8. cybersecurity means cybersecurity as defined in Article 2, point (1), of Regulation (EU) 2019/881; measures put in place;

  3. Detailed information about the monitoring, functioning and control of the AI system, in particular with regard to: its capabilities and limitations in performance, including the degrees of accuracy for specific persons or groups means a group as defined in Article 2, point (11), of Directive 2013/34/EU; of persons on which the system is intended to be used and the overall expected level of accuracy in relation to its intended purpose means the use for which a product with digital elements is intended by the manufacturer, including the specific context and conditions of use, as specified in the information supplied by the manufacturer in the instructions for use, promotional or sales materials and statements, as well as in the technical documentation;; the foreseeable unintended outcomes and sources of risks means the potential for loss or disruption caused by an incident and is to be expressed as a combination of the magnitude of such loss or disruption and the likelihood of occurrence of the incident; to health and safety, fundamental rights and discrimination in view of the intended purpose means the use for which a product with digital elements is intended by the manufacturer, including the specific context and conditions of use, as specified in the information supplied by the manufacturer in the instructions for use, promotional or sales materials and statements, as well as in the technical documentation; of the AI system; the human oversight measures needed in accordance with Article 14, including the technical measures put in place to facilitate the interpretation of the outputs of AI systems by the deployers; specifications on input data, as appropriate;

  4. A description of the appropriateness of the performance metrics for the specific AI system;

  5. A detailed description of the risk means the potential for loss or disruption caused by an incident and is to be expressed as a combination of the magnitude of such loss or disruption and the likelihood of occurrence of the incident; management system in accordance with Article 9;

  6. A description of relevant changes made by the provider to the system through its lifecycle;

  7. A list of the harmonised standards means a harmonised standard as defined in Article 2, point (1)(c), of Regulation (EU) No 1025/2012; applied in full or in part the references of which have been published in the Official Journal of the European Union; where no such harmonised standards means a harmonised standard as defined in Article 2, point (1)(c), of Regulation (EU) No 1025/2012; have been applied, a detailed description of the solutions adopted to meet the requirements set out in Chapter III, Section 2, including a list of other relevant standards means a standard as defined in Article 2, point (1), of Regulation (EU) No 1025/2012 of the European Parliament and of the Council (^29^); Regulation (EU) No 1025/2012 of the European Parliament and of the Council of 25 October 2012 on European standardisation, amending Council Directives 89/686/EEC and 93/15/EEC and Directives 94/9/EC, 94/25/EC, 95/16/EC, 97/23/EC, 98/34/EC, 2004/22/EC, 2007/23/EC, 2009/23/EC and 2009/105/EC of the European Parliament and of the Council and repealing Council decision 87/95/EEC and Decision No 1673/2006/EC of the European Parliament and of the Council (OJ L 316, 14.11.2012, p. 12). and technical specifications means a technical specification as defined in Article 2, point (4), of Regulation (EU) No 1025/2012; applied;

  8. A copy of the EU declaration of conformity referred to in Article 47;

  9. A detailed description of the system in place to evaluate the AI system performance in the post-market phase in accordance with Article 72, including the post-market monitoring plan referred to in Article 72(3).

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod