← All obligations
Article 26

Obligations of deployers of high-risk AI systems

https://eur-lex.europa.eu/legal-content/EN/TXT/HTML/?uri=CELEX:32024R1689#art_26 ↗
Deployers Article 26(2)

Deployers must assign human oversight to natural persons who have the necessary competence, training and authority, as well as the necessary support.

Show source text · Article 26(2)
Deployers shall assign human oversight to natural persons who have the necessary competence, training and authority, as well as the necessary support.
Deployers Article 26(4)

Deployers must ensure that input data is relevant and sufficiently representative in view of the intended purpose of the high-risk AI system.

Show source text · Article 26(4)
to the extent the deployer exercises control over the input data, that deployer shall ensure that input data is relevant and sufficiently representative in view of the intended purpose of the high-risk AI system.
Deployers Article 26(5)

Deployers must monitor the operation of the high-risk AI system on the basis of the instructions for use and, where relevant, inform providers in accordance with Article 72.

Show source text · Article 26(5)
Deployers shall monitor the operation of the high-risk AI system on the basis of the instructions for use and, where relevant, inform providers in accordance with Article 72.
Deployers Article 26(5) Deadline: without undue delay

Deployers must inform the provider or distributor and the relevant market surveillance authority without undue delay if the use of the high-risk AI system may result in that AI system presenting a risk.

Show source text · Article 26(5)
Where deployers have reason to consider that the use of the high-risk AI system in accordance with the instructions may result in that AI system presenting a risk within the meaning of Article 79(1), they shall, without undue delay, inform the provider or distributor and the relevant market surveillance authority, and shall suspend the use of that system.
Deployers Article 26(5) Deadline: immediately

Deployers must inform the provider, importer or distributor and the relevant market surveillance authorities immediately if a serious incident is identified.

Show source text · Article 26(5)
Where deployers have identified a serious incident, they shall also immediately inform first the provider, and then the importer or distributor and the relevant market surveillance authorities of that incident.
Deployers Article 26(6)

Deployers must keep the logs automatically generated by that high-risk AI system for a period appropriate to the intended purpose of the high-risk AI system, of at least six months.

Show source text · Article 26(6)
Deployers of high-risk AI systems shall keep the logs automatically generated by that high-risk AI system to the extent such logs are under their control, for a period appropriate to the intended purpose of the high-risk AI system, of at least six months, unless provided otherwise in applicable Union or national law, in particular in Union law on the protection of personal data.
Deployers

Deployers of high-risk AI systems must submit annual reports to the relevant market surveillance and national data protection authorities on their use of post-remote biometric identification systems.

Show source text
Deployers shall submit annual reports to the relevant market surveillance and national data protection authorities on their use of post-remote biometric identification systems, excluding the disclosure of sensitive operational data related to law enforcement.
Deployers

Deployers of high-risk AI systems must make available documented information to the relevant market surveillance authority and the national data protection authority upon request.

Show source text
documented in the relevant police file and shall be made available to the relevant market surveillance authority and the national data protection authority upon request
Deployers Article 26(11)

Deployers of high-risk AI systems must inform natural persons that they are subject to the use of the high-risk AI system.

Show source text · Article 26(11)
deployers of high-risk AI systems referred to in Annex III that make decisions or assist in making decisions related to natural persons shall inform the natural persons that they are subject to the use of the high-risk AI system
Deployers Article 26(12)

Deployers of high-risk AI systems must cooperate with the relevant competent authorities in any action those authorities take in relation to the high-risk AI system.

Show source text · Article 26(12)
Deployers shall cooperate with the relevant competent authorities in any action those authorities take in relation to the high-risk AI system in order to implement this Regulation.

Stay ahead of the AI Act

Get notified when new obligations, deadlines, or guidance are added — or ask us how the caveauAI Compliance Workbench can track this for your organization.