Article 16 Obligations of providers of high-risk AI systems


Providers of high-risk AI systems shall:

  1. ensure that their high-risk AI systems are compliant with the requirements set out in Section 2;

  2. indicate on the high-risk AI system or, where that is not possible, on its packaging or its accompanying documentation, as applicable, their name, registered trade name or registered trade mark, the address at which they can be contacted;

  3. have a quality management system in place which complies with Article 17;

  4. keep the documentation referred to in Article 18;

  5. when under their control, keep the logs automatically generated by their high-risk AI systems as referred to in Article 19;

  6. ensure that the high-risk AI system undergoes the relevant conformity assessment means the process of verifying whether the essential cybersecurity requirements set out in Annex I have been fulfilled; procedure as referred to in Article 43, prior to its being placed on the market or put into service;

  7. draw up an EU declaration of conformity in accordance with Article 47;

  8. affix the CE marking means a marking by which a manufacturer indicates that a product with digital elements and the processes put in place by the manufacturer are in conformity with the essential cybersecurity requirements set out in Annex I and other applicable Union harmonisation legislation providing for its affixing; to the high-risk AI system or, where that is not possible, on its packaging or its accompanying documentation, to indicate conformity with this Regulation, in accordance with Article 48;

  9. comply with the registration obligations referred to in Article 49(1);

  10. take the necessary corrective actions and provide information as required in Article 20;

  11. upon a reasoned request of a national competent authorityas defined in Article 46, demonstrate the conformity of the high-risk AI system with the requirements set out in Section 2;

  12. ensure that the high-risk AI system complies with accessibility requirements in accordance with Directives (EU) 2016/2102 and (EU) 2019/882.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod