<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
    <channel>
        <title>AI Act Compliance – BAUER GROUP (English)</title>
        <link>https://ai-act.docs.bauer-group.com/</link>
        <description>EU AI Act – Compliance Documentation Updates</description>
        <lastBuildDate>Thu, 26 Mar 2026 15:50:44 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>https://github.com/jpmonette/feed</generator>
        <language>en</language>
        <copyright>© 2026 BAUER GROUP</copyright>
        <item>
            <title><![CDATA[AI Literacy – Art. 4]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/governance/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/governance/</guid>
            <pubDate>Tue, 24 Mar 2026 00:10:15 GMT</pubDate>
            <description><![CDATA[# AI Literacy – Art. 4

## Requirement

Since **2 February 2025**, providers and deployers are obliged to ensure that their staff and other persons involved in the operation and use of AI systems possess a **sufficient level of AI competence** (AI Literacy).

## What Is AI Literacy?

Art. 4 requires that persons operating AI systems:

- Understand the **capabilities and limitations** of the AI systems
- Recognise the **potential impacts** on affected persons
- Are able to use AI systems **as intended**

The requirement is **proportional** — the required level of competence depends on the context, the risk level and the potential impacts.

## BAUER GROUP Implementation

### Training Concept

| Target Group | Content | Format | Frequency |
|]]></description>
            <content:encoded><![CDATA[<h1 id="ai-literacy-–-art-4" tabindex="-1">AI Literacy – Art. 4 <a class="header-anchor" href="#ai-literacy-–-art-4" aria-label="Permalink to &quot;AI Literacy – Art. 4&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Since <strong>2 February 2025</strong>, providers and deployers are obliged to ensure that their staff and other persons involved in the operation and use of AI systems possess a <strong>sufficient level of AI competence</strong> (AI Literacy).</p>
<h2 id="what-is-ai-literacy" tabindex="-1">What Is AI Literacy? <a class="header-anchor" href="#what-is-ai-literacy" aria-label="Permalink to &quot;What Is AI Literacy?&quot;"></a></h2>
<p>Art. 4 requires that persons operating AI systems:</p>
<ul>
<li>Understand the <strong>capabilities and limitations</strong> of the AI systems</li>
<li>Recognise the <strong>potential impacts</strong> on affected persons</li>
<li>Are able to use AI systems <strong>as intended</strong></li>
</ul>
<p>The requirement is <strong>proportional</strong> — the required level of competence depends on the context, the risk level and the potential impacts.</p>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<h3 id="training-concept" tabindex="-1">Training Concept <a class="header-anchor" href="#training-concept" aria-label="Permalink to &quot;Training Concept&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Target Group</th>
<th>Content</th>
<th>Format</th>
<th>Frequency</th>
</tr>
</thead>
<tbody>
<tr>
<td>All employees</td>
<td>AI fundamentals, risks, responsible use</td>
<td>Onboarding module (30 min)</td>
<td>Once + upon significant changes</td>
</tr>
<tr>
<td>Developers with AI contact</td>
<td>AI Act basics, risk classification, prompt engineering best practices</td>
<td>Workshop (2h)</td>
<td>Annually</td>
</tr>
<tr>
<td>Product owners</td>
<td>Complete AI Act, Go/No-Go process, documentation obligations</td>
<td>Workshop (4h)</td>
<td>Annually</td>
</tr>
</tbody>
</table>
<h3 id="documentation-obligation" tabindex="-1">Documentation Obligation <a class="header-anchor" href="#documentation-obligation" aria-label="Permalink to &quot;Documentation Obligation&quot;"></a></h3>
<p>Every training participation is documented. See: <a href="/en/templates/ai-literacy">AI Literacy Training Record</a></p>
<div class="tip custom-block"><p class="custom-block-title">Minimal Effort</p>
<p>AI Literacy is integrated into existing training processes, not as a separate compliance track. The onboarding module is created once and updated as needed.</p>
</div>
<div class="tip custom-block"><p class="custom-block-title">NIS2 Synergy</p>
<p>The organizational risk management framework under NIS2 (§30 BSIG) provides the foundation for AI system governance. Details in the <a href="https://nis2.docs.bauer-group.com/en/governance/" target="_blank" rel="noreferrer">NIS2 Compliance Documentation</a>.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Roles & Responsibilities]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/governance/roles</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/governance/roles</guid>
            <pubDate>Tue, 24 Mar 2026 00:10:15 GMT</pubDate>
            <description><![CDATA[# Roles & Responsibilities

## AI Act Roles within the BAUER GROUP

### Executive Management

- Final Go/No-Go decision for AI products in the EU market
- Strategic positioning (avoidance vs. compliance)
- Resource allocation for compliance measures

### Head of Development

- Technical implementation of Art. 8–15 requirements (for high-risk)
- Integration of AI Act checks into CI/CD pipeline
- Model versioning and documentation
- Cybersecurity (coordinated with CRA responsible person)

### Project Management

- Maintain AI system inventory
- Conduct risk classification per product
- Create and update technical documentation
- Coordinate conformity assessment

### All Employees with AI Contact

- Complete AI Literacy training
- Use AI systems in accordance with their intended purpose
- Report anomalies and incidents

## Mapping to CRA Roles

| CRA Role | AI Act Extension |
|]]></description>
            <content:encoded><![CDATA[<h1 id="roles-responsibilities" tabindex="-1">Roles &amp; Responsibilities <a class="header-anchor" href="#roles-responsibilities" aria-label="Permalink to &quot;Roles &amp; Responsibilities&quot;"></a></h1>
<h2 id="ai-act-roles-within-the-bauer-group" tabindex="-1">AI Act Roles within the BAUER GROUP <a class="header-anchor" href="#ai-act-roles-within-the-bauer-group" aria-label="Permalink to &quot;AI Act Roles within the BAUER GROUP&quot;"></a></h2>
<h3 id="executive-management" tabindex="-1">Executive Management <a class="header-anchor" href="#executive-management" aria-label="Permalink to &quot;Executive Management&quot;"></a></h3>
<ul>
<li>Final Go/No-Go decision for AI products in the EU market</li>
<li>Strategic positioning (avoidance vs. compliance)</li>
<li>Resource allocation for compliance measures</li>
</ul>
<h3 id="head-of-development" tabindex="-1">Head of Development <a class="header-anchor" href="#head-of-development" aria-label="Permalink to &quot;Head of Development&quot;"></a></h3>
<ul>
<li>Technical implementation of Art. 8–15 requirements (for high-risk)</li>
<li>Integration of AI Act checks into CI/CD pipeline</li>
<li>Model versioning and documentation</li>
<li>Cybersecurity (coordinated with CRA responsible person)</li>
</ul>
<h3 id="project-management" tabindex="-1">Project Management <a class="header-anchor" href="#project-management" aria-label="Permalink to &quot;Project Management&quot;"></a></h3>
<ul>
<li>Maintain AI system inventory</li>
<li>Conduct risk classification per product</li>
<li>Create and update technical documentation</li>
<li>Coordinate conformity assessment</li>
</ul>
<h3 id="all-employees-with-ai-contact" tabindex="-1">All Employees with AI Contact <a class="header-anchor" href="#all-employees-with-ai-contact" aria-label="Permalink to &quot;All Employees with AI Contact&quot;"></a></h3>
<ul>
<li>Complete AI Literacy training</li>
<li>Use AI systems in accordance with their intended purpose</li>
<li>Report anomalies and incidents</li>
</ul>
<h2 id="mapping-to-cra-roles" tabindex="-1">Mapping to CRA Roles <a class="header-anchor" href="#mapping-to-cra-roles" aria-label="Permalink to &quot;Mapping to CRA Roles&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>CRA Role</th>
<th>AI Act Extension</th>
</tr>
</thead>
<tbody>
<tr>
<td>Security Officer</td>
<td>+ AI-specific threat analysis (Adversarial ML)</td>
</tr>
<tr>
<td>SBOM Responsible</td>
<td>No extension (AI Act has no SBOM equivalent)</td>
</tr>
<tr>
<td>Incident Response</td>
<td>+ AI incident reporting to market surveillance authority</td>
</tr>
</tbody>
</table>
<div class="tip custom-block"><p class="custom-block-title">NIS2 Synergy</p>
<p>Information security roles and responsibilities (ISO, IT Lead) are defined in the <a href="https://nis2.docs.bauer-group.com/en/governance/" target="_blank" rel="noreferrer">NIS2 Governance Documentation</a>.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Accuracy, Robustness, Cybersecurity – Art. 15]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/accuracy-robustness</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/accuracy-robustness</guid>
            <pubDate>Tue, 24 Mar 2026 00:10:15 GMT</pubDate>
            <description><![CDATA[# Accuracy, Robustness, Cybersecurity – Art. 15

## Requirement

High-risk AI systems must exhibit an **appropriate level of accuracy, robustness and cybersecurity**.

## Accuracy

- Accuracy levels must be **declared in the instructions for use**
- Define and measure appropriate **metrics** for the respective intended purpose
- Accuracy levels must be **appropriate** for the intended purpose

## Robustness

- Resilience against **errors, faults and inconsistencies** in the operating environment
- Technical redundancy (backup systems, fail-safe mechanisms)
- Robustness against **adversarial attacks** (Adversarial ML)

## Cybersecurity

- Protection against unauthorised access and manipulation
- Address **Model Poisoning**, **Data Poisoning** and **Adversarial Examples**
- Measures to protect **confidentiality, integrity and availability**

::: tip CRA Synergies
The cybersecurity requirements of Art. 15 overlap considerably with the CRA requirements (Annex I Part II). The existing CRA security architecture and vulnerability management already cover the majority of these requirements. In addition, AI-specific threats (Adversarial ML, Prompt Injection, Model Extraction) must be addressed.
:::

::: tip NIS2 Synergies
The organizational risk management framework under NIS2 (§30 BSIG) provides the foundation for AI system cybersecurity. Incident response, access control and cryptography requirements are described in the [NIS2 Compliance Documentation](https://nis2.docs.bauer-group.com).
:::

## BAUER GROUP Implementation

| Art. 15 Requirement | CRA Coverage | AI Act Supplement |
|]]></description>
            <content:encoded><![CDATA[<h1 id="accuracy-robustness-cybersecurity-–-art-15" tabindex="-1">Accuracy, Robustness, Cybersecurity – Art. 15 <a class="header-anchor" href="#accuracy-robustness-cybersecurity-–-art-15" aria-label="Permalink to &quot;Accuracy, Robustness, Cybersecurity – Art. 15&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>High-risk AI systems must exhibit an <strong>appropriate level of accuracy, robustness and cybersecurity</strong>.</p>
<h2 id="accuracy" tabindex="-1">Accuracy <a class="header-anchor" href="#accuracy" aria-label="Permalink to &quot;Accuracy&quot;"></a></h2>
<ul>
<li>Accuracy levels must be <strong>declared in the instructions for use</strong></li>
<li>Define and measure appropriate <strong>metrics</strong> for the respective intended purpose</li>
<li>Accuracy levels must be <strong>appropriate</strong> for the intended purpose</li>
</ul>
<h2 id="robustness" tabindex="-1">Robustness <a class="header-anchor" href="#robustness" aria-label="Permalink to &quot;Robustness&quot;"></a></h2>
<ul>
<li>Resilience against <strong>errors, faults and inconsistencies</strong> in the operating environment</li>
<li>Technical redundancy (backup systems, fail-safe mechanisms)</li>
<li>Robustness against <strong>adversarial attacks</strong> (Adversarial ML)</li>
</ul>
<h2 id="cybersecurity" tabindex="-1">Cybersecurity <a class="header-anchor" href="#cybersecurity" aria-label="Permalink to &quot;Cybersecurity&quot;"></a></h2>
<ul>
<li>Protection against unauthorised access and manipulation</li>
<li>Address <strong>Model Poisoning</strong>, <strong>Data Poisoning</strong> and <strong>Adversarial Examples</strong></li>
<li>Measures to protect <strong>confidentiality, integrity and availability</strong></li>
</ul>
<div class="tip custom-block"><p class="custom-block-title">CRA Synergies</p>
<p>The cybersecurity requirements of Art. 15 overlap considerably with the CRA requirements (Annex I Part II). The existing CRA security architecture and vulnerability management already cover the majority of these requirements. In addition, AI-specific threats (Adversarial ML, Prompt Injection, Model Extraction) must be addressed.</p>
</div>
<div class="tip custom-block"><p class="custom-block-title">NIS2 Synergies</p>
<p>The organizational risk management framework under NIS2 (§30 BSIG) provides the foundation for AI system cybersecurity. Incident response, access control and cryptography requirements are described in the <a href="https://nis2.docs.bauer-group.com" target="_blank" rel="noreferrer">NIS2 Compliance Documentation</a>.</p>
</div>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Art. 15 Requirement</th>
<th>CRA Coverage</th>
<th>AI Act Supplement</th>
</tr>
</thead>
<tbody>
<tr>
<td>Cybersecurity</td>
<td>✅ CRA Art. 10–14</td>
<td>+ Adversarial ML, Prompt Injection</td>
</tr>
<tr>
<td>Accuracy</td>
<td>❌ Not in CRA</td>
<td>Model metrics in CI/CD + documentation</td>
</tr>
<tr>
<td>Robustness</td>
<td>Partial (CRA Annex I)</td>
<td>+ ML-specific stress tests</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[EU AI Act – Introduction]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/</guid>
            <pubDate>Tue, 24 Mar 2026 00:10:15 GMT</pubDate>
            <description><![CDATA[# EU AI Act – Introduction

## Regulation (EU) 2024/1689

The **EU Artificial Intelligence Act** (AI Act) is the world's first comprehensive regulation for Artificial Intelligence. The regulation entered into force on **1 August 2024** and will become fully applicable by **2 August 2027** in phases.

::: warning BAUER GROUP Guiding Principle
This documentation serves **external regulatory completeness**. Internally: every AI system undergoes a Go/No-Go assessment before EU market entry. If compliance effort is disproportionate to expected revenue, the product will **not be offered in the EU single market**. The AI Act addresses AI systems — not software in general.
:::

## Distinction from the Cyber Resilience Act (CRA)

| Criterion | CRA (Reg. 2024/2847) | AI Act (Reg. 2024/1689) |
|]]></description>
            <content:encoded><![CDATA[<h1 id="eu-ai-act-–-introduction" tabindex="-1">EU AI Act – Introduction <a class="header-anchor" href="#eu-ai-act-–-introduction" aria-label="Permalink to &quot;EU AI Act – Introduction&quot;"></a></h1>
<h2 id="regulation-eu-2024-1689" tabindex="-1">Regulation (EU) 2024/1689 <a class="header-anchor" href="#regulation-eu-2024-1689" aria-label="Permalink to &quot;Regulation (EU) 2024/1689&quot;"></a></h2>
<p>The <strong>EU Artificial Intelligence Act</strong> (AI Act) is the world's first comprehensive regulation for Artificial Intelligence. The regulation entered into force on <strong>1 August 2024</strong> and will become fully applicable by <strong>2 August 2027</strong> in phases.</p>
<div class="warning custom-block"><p class="custom-block-title">BAUER GROUP Guiding Principle</p>
<p>This documentation serves <strong>external regulatory completeness</strong>. Internally: every AI system undergoes a Go/No-Go assessment before EU market entry. If compliance effort is disproportionate to expected revenue, the product will <strong>not be offered in the EU single market</strong>. The AI Act addresses AI systems — not software in general.</p>
</div>
<h2 id="distinction-from-the-cyber-resilience-act-cra" tabindex="-1">Distinction from the Cyber Resilience Act (CRA) <a class="header-anchor" href="#distinction-from-the-cyber-resilience-act-cra" aria-label="Permalink to &quot;Distinction from the Cyber Resilience Act (CRA)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Criterion</th>
<th>CRA (Reg. 2024/2847)</th>
<th>AI Act (Reg. 2024/1689)</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Scope</strong></td>
<td>Products with digital elements</td>
<td>AI systems</td>
</tr>
<tr>
<td><strong>Focus</strong></td>
<td>Cybersecurity</td>
<td>Safety, fundamental rights, transparency</td>
</tr>
<tr>
<td><strong>Approach</strong></td>
<td>Product safety (CE)</td>
<td>Risk-based (4 tiers)</td>
</tr>
<tr>
<td><strong>Reporting</strong></td>
<td>ENISA (24h/72h/14d)</td>
<td>Market surveillance + EU database</td>
</tr>
<tr>
<td><strong>Existing docs</strong></td>
<td><a href="https://cra.docs.bauer-group.com" target="_blank" rel="noreferrer">cra.docs.bauer-group.com</a></td>
<td>This documentation</td>
</tr>
</tbody>
</table>
<h2 id="core-principles" tabindex="-1">Core Principles <a class="header-anchor" href="#core-principles" aria-label="Permalink to &quot;Core Principles&quot;"></a></h2>
<p>The AI Act follows a <strong>risk-based approach</strong> with four risk tiers:</p>
<ol>
<li><strong>Unacceptable risk</strong> (prohibited) — Art. 5</li>
<li><strong>High risk</strong> (strictly regulated) — Art. 6–49, Annex I + III</li>
<li><strong>Limited risk</strong> (transparency obligations) — Art. 50</li>
<li><strong>Minimal risk</strong> (unregulated) — no specific obligations</li>
</ol>
<h2 id="extraterritorial-applicability" tabindex="-1">Extraterritorial Applicability <a class="header-anchor" href="#extraterritorial-applicability" aria-label="Permalink to &quot;Extraterritorial Applicability&quot;"></a></h2>
<p>The AI Act applies to:</p>
<ul>
<li><strong>Providers</strong> who place AI systems on the EU market — regardless of their place of establishment</li>
<li><strong>Deployers</strong> who professionally use AI systems within the EU</li>
<li><strong>Importers and distributors</strong> in the AI value chain</li>
<li><strong>Third-country providers</strong> whose AI system output is used within the EU</li>
</ul>
<h2 id="documentation-structure" tabindex="-1">Documentation Structure <a class="header-anchor" href="#documentation-structure" aria-label="Permalink to &quot;Documentation Structure&quot;"></a></h2>
<p>This documentation is structured in 10 chapters + appendix and is available in DE/EN/ZH. It forms the regulatory counterpart to the existing CRA documentation and addresses all obligations arising from the AI Act for BAUER GROUP as provider and deployer of AI-powered systems.</p>
<div class="tip custom-block"><p class="custom-block-title">NIS2 Reference</p>
<p>For organizational cybersecurity (operational security, risk management, reporting obligations) see the <a href="https://nis2.docs.bauer-group.com" target="_blank" rel="noreferrer">NIS2 Compliance Documentation</a>.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Effort Assessment & Go/No-Go]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/compliance-matrix/effort-assessment</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/compliance-matrix/effort-assessment</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Effort Assessment & Go/No-Go

## Effort by Risk Level

| Risk Level | One-off Effort | Annual Effort | Typical Cost (internal) |
|]]></description>
            <content:encoded><![CDATA[<h1 id="effort-assessment-go-no-go" tabindex="-1">Effort Assessment &amp; Go/No-Go <a class="header-anchor" href="#effort-assessment-go-no-go" aria-label="Permalink to &quot;Effort Assessment &amp; Go/No-Go&quot;"></a></h1>
<h2 id="effort-by-risk-level" tabindex="-1">Effort by Risk Level <a class="header-anchor" href="#effort-by-risk-level" aria-label="Permalink to &quot;Effort by Risk Level&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Risk Level</th>
<th>One-off Effort</th>
<th>Annual Effort</th>
<th>Typical Cost (internal)</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Minimal</strong></td>
<td>0h</td>
<td>0h</td>
<td>0 EUR</td>
</tr>
<tr>
<td><strong>Limited</strong> (Transparency)</td>
<td>8–16h</td>
<td>4–8h</td>
<td>960–1,920 EUR one-off</td>
</tr>
<tr>
<td><strong>High-risk</strong> (Self-assessment)</td>
<td>268–536h</td>
<td>104–208h</td>
<td>32–64k EUR one-off + 12–25k EUR/year</td>
</tr>
<tr>
<td><strong>High-risk</strong> (Third party)</td>
<td>400–800h+</td>
<td>160–320h+</td>
<td>48–96k EUR+ one-off + 19–38k EUR/year + Notified Body</td>
</tr>
</tbody>
</table>
<h2 id="decision-rules" tabindex="-1">Decision Rules <a class="header-anchor" href="#decision-rules" aria-label="Permalink to &quot;Decision Rules&quot;"></a></h2>
<h3 id="automatic-go" tabindex="-1">Automatic GO <a class="header-anchor" href="#automatic-go" aria-label="Permalink to &quot;Automatic GO&quot;"></a></h3>
<ul>
<li>Minimal risk</li>
<li>Limited risk (transparency obligations are trivial)</li>
</ul>
<h3 id="go-no-go-assessment-required" tabindex="-1">Go/No-Go Assessment Required <a class="header-anchor" href="#go-no-go-assessment-required" aria-label="Permalink to &quot;Go/No-Go Assessment Required&quot;"></a></h3>
<ul>
<li>High-risk with self-assessment (Annex VI)</li>
</ul>
<h3 id="automatic-no-go-eu" tabindex="-1">Automatic NO-GO EU <a class="header-anchor" href="#automatic-no-go-eu" aria-label="Permalink to &quot;Automatic NO-GO EU&quot;"></a></h3>
<ul>
<li>High-risk with third-party assessment (Annex VII)</li>
<li>Any system where compliance effort &gt; 15% of the 3-year contribution margin</li>
</ul>
<h2 id="cra-synergies-effort-reduction" tabindex="-1">CRA Synergies (Effort Reduction) <a class="header-anchor" href="#cra-synergies-effort-reduction" aria-label="Permalink to &quot;CRA Synergies (Effort Reduction)&quot;"></a></h2>
<p>Where a product is already CRA-compliant, the additional AI Act effort is reduced significantly:</p>
<table tabindex="0">
<thead>
<tr>
<th>AI Act Requirement</th>
<th>Without CRA</th>
<th>With CRA Basis</th>
<th>Saving</th>
</tr>
</thead>
<tbody>
<tr>
<td>QMS</td>
<td>40–80h</td>
<td>10–20h</td>
<td>~75%</td>
</tr>
<tr>
<td>Technical documentation</td>
<td>80–160h</td>
<td>30–60h</td>
<td>~60%</td>
</tr>
<tr>
<td>Cybersecurity (Art. 15)</td>
<td>20–40h</td>
<td>5–10h</td>
<td>~75%</td>
</tr>
<tr>
<td>Incident response</td>
<td>10–20h</td>
<td>2–4h</td>
<td>~80%</td>
</tr>
<tr>
<td><strong>Total high-risk</strong></td>
<td><strong>268–536h</strong></td>
<td><strong>~120–240h</strong></td>
<td><strong>~55%</strong></td>
</tr>
</tbody>
</table>
<div class="tip custom-block"><p class="custom-block-title">TIP</p>
<p>For CRA-compliant products, the AI Act effort for high-risk is estimated to fall to <strong>14,400–28,800 EUR one-off</strong> plus <strong>8,000–16,000 EUR/year</strong>. This significantly improves the Go/No-Go calculation.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Compliance Matrix – Requirements Mapping]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/compliance-matrix/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/compliance-matrix/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Compliance Matrix – Requirements Mapping

## Obligations by Risk Level and Role

### Minimal Risk

| Obligation | Article | Provider | Deployer |
|]]></description>
            <content:encoded><![CDATA[<h1 id="compliance-matrix-–-requirements-mapping" tabindex="-1">Compliance Matrix – Requirements Mapping <a class="header-anchor" href="#compliance-matrix-–-requirements-mapping" aria-label="Permalink to &quot;Compliance Matrix – Requirements Mapping&quot;"></a></h1>
<h2 id="obligations-by-risk-level-and-role" tabindex="-1">Obligations by Risk Level and Role <a class="header-anchor" href="#obligations-by-risk-level-and-role" aria-label="Permalink to &quot;Obligations by Risk Level and Role&quot;"></a></h2>
<h3 id="minimal-risk" tabindex="-1">Minimal Risk <a class="header-anchor" href="#minimal-risk" aria-label="Permalink to &quot;Minimal Risk&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Article</th>
<th>Provider</th>
<th>Deployer</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI Literacy</td>
<td>Art. 4</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td><em>No further obligations</em></td>
<td>—</td>
<td>—</td>
<td>—</td>
</tr>
</tbody>
</table>
<h3 id="limited-risk-transparency" tabindex="-1">Limited Risk (Transparency) <a class="header-anchor" href="#limited-risk-transparency" aria-label="Permalink to &quot;Limited Risk (Transparency)&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Article</th>
<th>Provider</th>
<th>Deployer</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI Literacy</td>
<td>Art. 4</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Disclose AI interaction</td>
<td>Art. 50(1)</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Label synthetic content</td>
<td>Art. 50(2)</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Deepfake disclosure</td>
<td>Art. 50(4)</td>
<td>—</td>
<td>✅</td>
</tr>
</tbody>
</table>
<h3 id="high-risk" tabindex="-1">High-Risk <a class="header-anchor" href="#high-risk" aria-label="Permalink to &quot;High-Risk&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Article</th>
<th>Provider</th>
<th>Deployer</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI Literacy</td>
<td>Art. 4</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Risk management system</td>
<td>Art. 9</td>
<td>✅</td>
<td>✅*</td>
</tr>
<tr>
<td>Data Governance</td>
<td>Art. 10</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Technical documentation</td>
<td>Art. 11</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Record-keeping</td>
<td>Art. 12</td>
<td>✅</td>
<td>✅ (retention)</td>
</tr>
<tr>
<td>Transparency (instructions for use)</td>
<td>Art. 13</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Human oversight</td>
<td>Art. 14</td>
<td>✅ (design)</td>
<td>✅ (implementation)</td>
</tr>
<tr>
<td>Accuracy, robustness, cybersecurity</td>
<td>Art. 15</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>QMS</td>
<td>Art. 17</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Conformity assessment</td>
<td>Art. 43</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>EU Declaration of Conformity</td>
<td>Art. 47</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>CE marking</td>
<td>Art. 48</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Registration (EU database)</td>
<td>Art. 49</td>
<td>✅</td>
<td>✅**</td>
</tr>
<tr>
<td>Post-market monitoring</td>
<td>Art. 72</td>
<td>✅</td>
<td>—</td>
</tr>
<tr>
<td>Incident reporting</td>
<td>Art. 73</td>
<td>✅</td>
<td>✅</td>
</tr>
</tbody>
</table>
<p><em>* Deployer: simplified risk management per Art. 26</em>
<em>** Deployer: public authorities only</em></p>
<h3 id="gpai-model-providers-only" tabindex="-1">GPAI (Model Providers Only) <a class="header-anchor" href="#gpai-model-providers-only" aria-label="Permalink to &quot;GPAI (Model Providers Only)&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Article</th>
<th>All GPAI</th>
<th>+ Systemic Risk</th>
</tr>
</thead>
<tbody>
<tr>
<td>Technical documentation</td>
<td>Art. 53(1)(a)</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Info to downstream providers</td>
<td>Art. 53(1)(b)</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Copyright policy</td>
<td>Art. 53(1)(c)</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Training data summary</td>
<td>Art. 53(1)(d)</td>
<td>✅</td>
<td>✅</td>
</tr>
<tr>
<td>Model evaluation</td>
<td>Art. 55(1)(a)</td>
<td>—</td>
<td>✅</td>
</tr>
<tr>
<td>Adversarial testing</td>
<td>Art. 55(1)(a)</td>
<td>—</td>
<td>✅</td>
</tr>
<tr>
<td>Risk mitigation</td>
<td>Art. 55(1)(b)</td>
<td>—</td>
<td>✅</td>
</tr>
<tr>
<td>Incident reporting</td>
<td>Art. 55(1)(c)</td>
<td>—</td>
<td>✅</td>
</tr>
<tr>
<td>Model cybersecurity</td>
<td>Art. 55(1)(d)</td>
<td>—</td>
<td>✅</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Third-Party Conformity Assessment – Annex VII]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/annex-vii</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/annex-vii</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[When Is It Required?
An assessment by a Notified Body is only required for certain high-risk systems]]></description>
            <content:encoded><![CDATA[<h1 id="third-party-conformity-assessment-–-annex-vii" tabindex="-1">Third-Party Conformity Assessment – Annex VII <a class="header-anchor" href="#third-party-conformity-assessment-–-annex-vii" aria-label="Permalink to &quot;Third-Party Conformity Assessment – Annex VII&quot;"></a></h1>
<h2 id="when-is-it-required" tabindex="-1">When Is It Required? <a class="header-anchor" href="#when-is-it-required" aria-label="Permalink to &quot;When Is It Required?&quot;"></a></h2>
<p>An assessment by a <strong>Notified Body</strong> is only required for certain high-risk systems, in particular remote biometric identification and certain law enforcement AI.</p>
<h2 id="procedure-annex-vii" tabindex="-1">Procedure (Annex VII) <a class="header-anchor" href="#procedure-annex-vii" aria-label="Permalink to &quot;Procedure (Annex VII)&quot;"></a></h2>
<p>The procedure comprises the assessment of:</p>
<ol>
<li><strong>Quality Management System</strong> — comprehensive review of the QMS by the Notified Body</li>
<li><strong>Technical Documentation</strong> — review for completeness and plausibility</li>
<li><strong>Sample Testing</strong> — tests on the system itself</li>
</ol>
<p>The Notified Body issues a <strong>certificate</strong> upon a positive outcome.</p>
<div class="danger custom-block"><p class="custom-block-title">BAUER GROUP Position</p>
<p>Systems requiring an Annex VII assessment are <strong>automatically a No-Go</strong> for the EU market. The effort involved (Notified Body costs, preparation time, recurring audits) is disproportionate for the BAUER GROUP business model.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[CE Marking – Art. 48]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/ce-marking</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/ce-marking</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Requirement
High-risk AI systems must bear the CE marking to indicate conformity with the AI Act.
 A]]></description>
            <content:encoded><![CDATA[<h1 id="ce-marking-–-art-48" tabindex="-1">CE Marking – Art. 48 <a class="header-anchor" href="#ce-marking-–-art-48" aria-label="Permalink to &quot;CE Marking – Art. 48&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>High-risk AI systems must bear the <strong>CE marking</strong> to indicate conformity with the AI Act.</p>
<h2 id="affixing" tabindex="-1">Affixing <a class="header-anchor" href="#affixing" aria-label="Permalink to &quot;Affixing&quot;"></a></h2>
<p>The CE marking shall be affixed to:</p>
<ol>
<li>The <strong>AI system itself</strong> (for physical products) — visible, legible, indelible</li>
<li>The <strong>packaging</strong> — where affixing to the system is not possible</li>
<li>The <strong>accompanying documentation</strong> — as a last resort</li>
</ol>
<h2 id="rules" tabindex="-1">Rules <a class="header-anchor" href="#rules" aria-label="Permalink to &quot;Rules&quot;"></a></h2>
<ul>
<li>Must be affixed <strong>before placing on the market</strong></li>
<li>Must comply with the <strong>format pursuant to EU harmonisation legislation</strong> (minimum height 5 mm)</li>
<li>For software without a physical product: in the <strong>digital documentation</strong> and, where applicable, in the UI</li>
</ul>
<h2 id="synergies-with-cra" tabindex="-1">Synergies with CRA <a class="header-anchor" href="#synergies-with-cra" aria-label="Permalink to &quot;Synergies with CRA&quot;"></a></h2>
<p>Where the product already bears a CRA CE marking, the AI Act conformity is integrated into the same declaration. No duplicate CE marking is required.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[EU Declaration of Conformity – Art. 47]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/declaration-of-conformity</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/declaration-of-conformity</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Requirement
Providers of high-risk AI systems must issue an EU Declaration of Conformity confirming ]]></description>
            <content:encoded><![CDATA[<h1 id="eu-declaration-of-conformity-–-art-47" tabindex="-1">EU Declaration of Conformity – Art. 47 <a class="header-anchor" href="#eu-declaration-of-conformity-–-art-47" aria-label="Permalink to &quot;EU Declaration of Conformity – Art. 47&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Providers of high-risk AI systems must issue an <strong>EU Declaration of Conformity</strong> confirming that the system meets the requirements of the AI Act.</p>
<h2 id="content" tabindex="-1">Content <a class="header-anchor" href="#content" aria-label="Permalink to &quot;Content&quot;"></a></h2>
<p>The declaration must contain at least:</p>
<ul>
<li>Name and address of the provider</li>
<li>Unique identification of the AI system (name, type, serial number/version)</li>
<li>Statement that the system complies with the requirements of the AI Act</li>
<li>Reference to applied harmonised standards or other technical specifications</li>
<li>Where applicable, name and identification number of the notified body (for Annex VII)</li>
<li>Date and signature</li>
</ul>
<h2 id="single-source-of-truth" tabindex="-1">Single Source of Truth <a class="header-anchor" href="#single-source-of-truth" aria-label="Permalink to &quot;Single Source of Truth&quot;"></a></h2>
<p>The EU Declaration of Conformity is generated from the machine-readable file <code>.compliance/ai-act-statement.json</code>. This ensures that:</p>
<ul>
<li><strong>One source</strong> — JSON is the sole location where compliance data are maintained</li>
<li><strong>Consistency</strong> — Human-readable DoC, CE marking and EU database registration use the same data</li>
<li><strong>Automation</strong> — Validation and generation in the CI/CD pipeline</li>
</ul>
<p>See: <a href="/en/conformity/machine-readable">Machine-Readable Format</a></p>
<h2 id="retention" tabindex="-1">Retention <a class="header-anchor" href="#retention" aria-label="Permalink to &quot;Retention&quot;"></a></h2>
<p>The EU Declaration of Conformity must be retained for <strong>10 years</strong> after the AI system is placed on the market and presented to the competent authorities upon request.</p>
<h2 id="template" tabindex="-1">Template <a class="header-anchor" href="#template" aria-label="Permalink to &quot;Template&quot;"></a></h2>
<p>See: <a href="/en/templates/declaration-of-conformity">EU Declaration of Conformity Template</a></p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Conformity Assessment – Art. 43]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Overview
High-risk AI systems must undergo a conformity assessment before being placed on the market]]></description>
            <content:encoded><![CDATA[<h1 id="conformity-assessment-–-art-43" tabindex="-1">Conformity Assessment – Art. 43 <a class="header-anchor" href="#conformity-assessment-–-art-43" aria-label="Permalink to &quot;Conformity Assessment – Art. 43&quot;"></a></h1>
<h2 id="overview" tabindex="-1">Overview <a class="header-anchor" href="#overview" aria-label="Permalink to &quot;Overview&quot;"></a></h2>
<p>High-risk AI systems must undergo a <strong>conformity assessment before being placed on the market</strong>. The AI Act provides two paths:</p>
<h3 id="path-1-internal-control-annex-vi-—-self-assessment" tabindex="-1">Path 1: Internal Control (Annex VI) — Self-Assessment <a class="header-anchor" href="#path-1-internal-control-annex-vi-—-self-assessment" aria-label="Permalink to &quot;Path 1: Internal Control (Annex VI) — Self-Assessment&quot;"></a></h3>
<p>For <strong>most</strong> high-risk AI systems, a self-assessment by the provider is sufficient. This comprises:</p>
<ul>
<li>Review of the QMS (Art. 17)</li>
<li>Review of the technical documentation</li>
<li>Confirmation of conformity with Art. 8–15</li>
</ul>
<h3 id="path-2-third-party-assessment-annex-vii" tabindex="-1">Path 2: Third-Party Assessment (Annex VII) <a class="header-anchor" href="#path-2-third-party-assessment-annex-vii" aria-label="Permalink to &quot;Path 2: Third-Party Assessment (Annex VII)&quot;"></a></h3>
<p>Only required for certain <strong>Annex III systems</strong>, in particular:</p>
<ul>
<li>Remote biometric identification (Annex III No. 1)</li>
<li>Critical infrastructure (Annex III No. 2) — under certain conditions</li>
<li>Certain law enforcement systems (Annex III No. 6–7)</li>
</ul>
<div class="tip custom-block"><p class="custom-block-title">BAUER GROUP Strategy</p>
<p>BAUER GROUP will only place AI systems on the EU market for which <strong>self-assessment (Annex VI)</strong> is sufficient. Systems requiring third-party conformity assessment are subject to an automatic <strong>No-Go</strong> due to disproportionate effort.</p>
</div>
<h2 id="procedure-for-products-under-eu-harmonisation-legislation" tabindex="-1">Procedure for Products under EU Harmonisation Legislation <a class="header-anchor" href="#procedure-for-products-under-eu-harmonisation-legislation" aria-label="Permalink to &quot;Procedure for Products under EU Harmonisation Legislation&quot;"></a></h2>
<p>Where the AI system is a safety component of an already regulated product (Annex I), the AI Act conformity assessment is integrated into the <strong>existing product conformity assessment</strong>.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Machine-Readable Format – AI Act Compliance Statement]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/machine-readable</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/machine-readable</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Machine-Readable Format – AI Act Compliance Statement

## Purpose

Machine-readable compliance data enable:

- **Automated publication** on the compliance portal
- **Programmatic validation** in CI/CD pipelines
- **Aggregation** across all AI systems in a central dashboard
- **Authority access** via API for market surveillance authorities
- **Generation** of the human-readable EU Declaration of Conformity (Annex V)

::: tip FORMAT
**JSON** is the primary format. The file name is `ai-act-statement.json`, stored in `.compliance/` within the product repository.
:::

## JSON Schema

The AI Act Compliance Statement follows a defined JSON schema:

```json
{
  "$schema": "https://ai-act.app.bauer-group.com/schemas/ai-act-statement/v1.json",
  "schema_version": "1.0.0",

  "provider": {
    "name": "BAUER GROUP",
    "address": "[Full postal address]",
    "contact_email": "compliance@bauer-group.com",
    "website": "[URL]",
    "authorised_representative": null
  },

  "ai_system": {
    "name": "[Name of the AI system]",
    "version": "[X.Y.Z]",
    "type": "[standalone|embedded|gpai_based]",
    "description": "[Brief description of the intended use]",
    "identifier": "AI-BGI-XXXX",
    "intended_purpose": "[Intended purpose pursuant to Art. 13]",
    "deployer_type": "[internal|b2b|b2c|public_authority]"
  },

  "risk_classification": {
    "risk_level": "[minimal|limited|high_risk]",
    "annex_iii_category": "[1-8 or null]",
    "annex_i_product": "[Annex I reference or null]",
    "classification_rationale": "[Rationale for the classification]"
  },

  "conformity_assessment": {
    "procedure": "[annex_vi|annex_vii]",
    "notified_body": null,
    "assessment_date": "[YYYY-MM-DD]",
    "declaration_url": "[URL to the full DoC]",
    "declaration_date": "[YYYY-MM-DD]",
    "ce_marking": true,
    "ce_marking_placement": "[product|packaging|documentation|digital]"
  },

  "compliance": {
    "art_9_risk_management": true,
    "art_10_data_governance": true,
    "art_11_technical_documentation": true,
    "art_12_record_keeping": true,
    "art_13_transparency": true,
    "art_14_human_oversight": true,
    "art_15_accuracy_robustness": true,
    "art_17_qms": true
  },

  "transparency": {
    "ai_interaction_disclosed": true,
    "synthetic_content_labelled": false,
    "deployer_instructions_provided": true,
    "eu_database_registered": true,
    "eu_database_id": "[Registration number or null]"
  },

  "support_period": {
    "start_date": "[YYYY-MM-DD]",
    "end_date": "[YYYY-MM-DD]",
    "phase": "[active|monitoring|eol]",
    "post_market_monitoring": true
  },

  "harmonised_standards": [
    {
      "identifier": "[e.g. EN XXXXX:YYYY]",
      "description": "[Description]"
    }
  ],

  "metadata": {
    "generated_at": "[ISO 8601 Timestamp]",
    "generator": "[Tool or manual]",
    "statement_version": "[Version of the statement]",
    "regulation": "(EU) 2024/1689"
  }
}
```

## Field Overview

### Required Fields

| Field | Type | Description |
|]]></description>
            <content:encoded><![CDATA[<h1 id="machine-readable-format-–-ai-act-compliance-statement" tabindex="-1">Machine-Readable Format – AI Act Compliance Statement <a class="header-anchor" href="#machine-readable-format-–-ai-act-compliance-statement" aria-label="Permalink to &quot;Machine-Readable Format – AI Act Compliance Statement&quot;"></a></h1>
<h2 id="purpose" tabindex="-1">Purpose <a class="header-anchor" href="#purpose" aria-label="Permalink to &quot;Purpose&quot;"></a></h2>
<p>Machine-readable compliance data enable:</p>
<ul>
<li><strong>Automated publication</strong> on the compliance portal</li>
<li><strong>Programmatic validation</strong> in CI/CD pipelines</li>
<li><strong>Aggregation</strong> across all AI systems in a central dashboard</li>
<li><strong>Authority access</strong> via API for market surveillance authorities</li>
<li><strong>Generation</strong> of the human-readable EU Declaration of Conformity (Annex V)</li>
</ul>
<div class="tip custom-block"><p class="custom-block-title">FORMAT</p>
<p><strong>JSON</strong> is the primary format. The file name is <code>ai-act-statement.json</code>, stored in <code>.compliance/</code> within the product repository.</p>
</div>
<h2 id="json-schema" tabindex="-1">JSON Schema <a class="header-anchor" href="#json-schema" aria-label="Permalink to &quot;JSON Schema&quot;"></a></h2>
<p>The AI Act Compliance Statement follows a defined JSON schema:</p>
<div class="language-json vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang">json</span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">{</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "$schema"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"https://ai-act.app.bauer-group.com/schemas/ai-act-statement/v1.json"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "schema_version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"1.0.0"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "provider"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "name"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"BAUER GROUP"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "address"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Full postal address]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "contact_email"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"compliance@bauer-group.com"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "website"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[URL]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "authorised_representative"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">null</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "ai_system"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "name"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Name of the AI system]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[X.Y.Z]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "type"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[standalone|embedded|gpai_based]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "description"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Brief description of the intended use]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "identifier"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"AI-BGI-XXXX"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "intended_purpose"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Intended purpose pursuant to Art. 13]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "deployer_type"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[internal|b2b|b2c|public_authority]"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "risk_classification"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "risk_level"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[minimal|limited|high_risk]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "annex_iii_category"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[1-8 or null]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "annex_i_product"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Annex I reference or null]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "classification_rationale"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Rationale for the classification]"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "conformity_assessment"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "procedure"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[annex_vi|annex_vii]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "notified_body"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">null</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "assessment_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[YYYY-MM-DD]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "declaration_url"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[URL to the full DoC]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "declaration_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[YYYY-MM-DD]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ce_marking"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ce_marking_placement"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[product|packaging|documentation|digital]"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "compliance"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_9_risk_management"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_10_data_governance"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_11_technical_documentation"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_12_record_keeping"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_13_transparency"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_14_human_oversight"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_15_accuracy_robustness"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_17_qms"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "transparency"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ai_interaction_disclosed"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "synthetic_content_labelled"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">false</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "deployer_instructions_provided"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "eu_database_registered"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "eu_database_id"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Registration number or null]"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "support_period"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "start_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[YYYY-MM-DD]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "end_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[YYYY-MM-DD]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "phase"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[active|monitoring|eol]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "post_market_monitoring"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "harmonised_standards"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: [</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "identifier"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[e.g. EN XXXXX:YYYY]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "description"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Description]"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    }</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  ],</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "metadata"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "generated_at"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[ISO 8601 Timestamp]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "generator"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Tool or manual]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "statement_version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Version of the statement]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "regulation"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"(EU) 2024/1689"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  }</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">}</span></span></code></pre>
</div><h2 id="field-overview" tabindex="-1">Field Overview <a class="header-anchor" href="#field-overview" aria-label="Permalink to &quot;Field Overview&quot;"></a></h2>
<h3 id="required-fields" tabindex="-1">Required Fields <a class="header-anchor" href="#required-fields" aria-label="Permalink to &quot;Required Fields&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Type</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>schema_version</code></td>
<td>string</td>
<td>Version of the schema (SemVer)</td>
</tr>
<tr>
<td><code>provider.name</code></td>
<td>string</td>
<td>Company name of the provider</td>
</tr>
<tr>
<td><code>provider.contact_email</code></td>
<td>string</td>
<td>Compliance contact</td>
</tr>
<tr>
<td><code>ai_system.name</code></td>
<td>string</td>
<td>Name of the AI system</td>
</tr>
<tr>
<td><code>ai_system.version</code></td>
<td>string</td>
<td>Current version (SemVer)</td>
</tr>
<tr>
<td><code>ai_system.type</code></td>
<td>enum</td>
<td><code>standalone</code>, <code>embedded</code>, <code>gpai_based</code></td>
</tr>
<tr>
<td><code>ai_system.identifier</code></td>
<td>string</td>
<td>Unique system ID</td>
</tr>
<tr>
<td><code>ai_system.intended_purpose</code></td>
<td>string</td>
<td>Intended purpose</td>
</tr>
<tr>
<td><code>risk_classification.risk_level</code></td>
<td>enum</td>
<td><code>minimal</code>, <code>limited</code>, <code>high_risk</code></td>
</tr>
<tr>
<td><code>conformity_assessment.procedure</code></td>
<td>enum</td>
<td><code>annex_vi</code>, <code>annex_vii</code></td>
</tr>
<tr>
<td><code>conformity_assessment.assessment_date</code></td>
<td>string (date)</td>
<td>Date of the conformity assessment</td>
</tr>
<tr>
<td><code>conformity_assessment.declaration_date</code></td>
<td>string (date)</td>
<td>Date of the DoC</td>
</tr>
<tr>
<td><code>conformity_assessment.ce_marking</code></td>
<td>boolean</td>
<td>CE marking affixed?</td>
</tr>
<tr>
<td><code>compliance.art_9_risk_management</code></td>
<td>boolean</td>
<td>Art. 9 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_10_data_governance</code></td>
<td>boolean</td>
<td>Art. 10 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_11_technical_documentation</code></td>
<td>boolean</td>
<td>Art. 11 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_12_record_keeping</code></td>
<td>boolean</td>
<td>Art. 12 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_13_transparency</code></td>
<td>boolean</td>
<td>Art. 13 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_14_human_oversight</code></td>
<td>boolean</td>
<td>Art. 14 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_15_accuracy_robustness</code></td>
<td>boolean</td>
<td>Art. 15 fulfilled?</td>
</tr>
<tr>
<td><code>compliance.art_17_qms</code></td>
<td>boolean</td>
<td>Art. 17 QMS in place?</td>
</tr>
<tr>
<td><code>support_period.start_date</code></td>
<td>string (date)</td>
<td>Support start</td>
</tr>
<tr>
<td><code>support_period.end_date</code></td>
<td>string (date)</td>
<td>Support end</td>
</tr>
</tbody>
</table>
<h3 id="optional-fields" tabindex="-1">Optional Fields <a class="header-anchor" href="#optional-fields" aria-label="Permalink to &quot;Optional Fields&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Type</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>provider.address</code></td>
<td>string</td>
<td>Postal address</td>
</tr>
<tr>
<td><code>provider.website</code></td>
<td>string (URL)</td>
<td>Company website</td>
</tr>
<tr>
<td><code>provider.authorised_representative</code></td>
<td>string</td>
<td>Authorised representative (if applicable)</td>
</tr>
<tr>
<td><code>ai_system.description</code></td>
<td>string</td>
<td>Brief description</td>
</tr>
<tr>
<td><code>ai_system.deployer_type</code></td>
<td>enum</td>
<td><code>internal</code>, <code>b2b</code>, <code>b2c</code>, <code>public_authority</code></td>
</tr>
<tr>
<td><code>risk_classification.annex_iii_category</code></td>
<td>integer</td>
<td>Annex III category (1–8)</td>
</tr>
<tr>
<td><code>risk_classification.annex_i_product</code></td>
<td>string</td>
<td>Annex I product reference</td>
</tr>
<tr>
<td><code>risk_classification.classification_rationale</code></td>
<td>string</td>
<td>Rationale</td>
</tr>
<tr>
<td><code>conformity_assessment.notified_body</code></td>
<td>string</td>
<td>Notified body (for Annex VII)</td>
</tr>
<tr>
<td><code>conformity_assessment.declaration_url</code></td>
<td>string (URL)</td>
<td>Link to the DoC</td>
</tr>
<tr>
<td><code>transparency.eu_database_id</code></td>
<td>string</td>
<td>EU database registration no.</td>
</tr>
<tr>
<td><code>support_period.phase</code></td>
<td>enum</td>
<td><code>active</code>, <code>monitoring</code>, <code>eol</code></td>
</tr>
<tr>
<td><code>harmonised_standards[]</code></td>
<td>array</td>
<td>Applied standards</td>
</tr>
<tr>
<td><code>metadata.*</code></td>
<td>object</td>
<td>Generation information</td>
</tr>
</tbody>
</table>
<h2 id="generation-flow" tabindex="-1">Generation Flow <a class="header-anchor" href="#generation-flow" aria-label="Permalink to &quot;Generation Flow&quot;"></a></h2>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>.compliance/ai-act-statement.json (Single Source of Truth)</span></span>
<span class="line"><span>    ↓</span></span>
<span class="line"><span>    ├─→ EU Declaration of Conformity (PDF/HTML — Annex V)</span></span>
<span class="line"><span>    ├─→ CE Marking (product, packaging, documentation)</span></span>
<span class="line"><span>    ├─→ EU Database Registration (Art. 49)</span></span>
<span class="line"><span>    ├─→ Compliance Dashboard (central aggregation)</span></span>
<span class="line"><span>    └─→ Deployer Information (instructions for use Art. 13)</span></span></code></pre>
</div><h2 id="validation" tabindex="-1">Validation <a class="header-anchor" href="#validation" aria-label="Permalink to &quot;Validation&quot;"></a></h2>
<h3 id="ci-cd-pipeline" tabindex="-1">CI/CD Pipeline <a class="header-anchor" href="#ci-cd-pipeline" aria-label="Permalink to &quot;CI/CD Pipeline&quot;"></a></h3>
<div class="language-yaml vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang">yaml</span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span style="--shiki-light:#6A737D;--shiki-dark:#6A737D"># Example: GitHub Actions Step</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">- </span><span style="--shiki-light:#22863A;--shiki-dark:#85E89D">name</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">Validate AI Act Statement</span></span>
<span class="line"><span style="--shiki-light:#22863A;--shiki-dark:#85E89D">  run</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#D73A49;--shiki-dark:#F97583">|</span></span>
<span class="line"><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">    npx ajv validate \</span></span>
<span class="line"><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">      -s schemas/ai-act-statement-v1.schema.json \</span></span>
<span class="line"><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">      -d .compliance/ai-act-statement.json</span></span></code></pre>
</div><h3 id="validation-rules" tabindex="-1">Validation Rules <a class="header-anchor" href="#validation-rules" aria-label="Permalink to &quot;Validation Rules&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Check</th>
<th style="text-align:center">Severity</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td>Schema conformity</td>
<td style="text-align:center">🔴 Blocker</td>
<td>JSON must validate against the schema</td>
</tr>
<tr>
<td>Required fields present</td>
<td style="text-align:center">🔴 Blocker</td>
<td>All required fields must be completed</td>
</tr>
<tr>
<td>Risk level ↔ compliance fields</td>
<td style="text-align:center">🔴 Blocker</td>
<td>For <code>high_risk</code>, all Art. 8–15 fields must be <code>true</code></td>
</tr>
<tr>
<td>Annex VI ↔ notified body</td>
<td style="text-align:center">🔴 Blocker</td>
<td>For <code>annex_vi</code>, <code>notified_body</code> must not be set</td>
</tr>
<tr>
<td>Date consistency</td>
<td style="text-align:center">🟡 Warning</td>
<td><code>end_date</code> must be after <code>start_date</code></td>
</tr>
<tr>
<td>Support not expired</td>
<td style="text-align:center">🟡 Warning</td>
<td><code>end_date</code> should be in the future</td>
</tr>
<tr>
<td>EU database ID</td>
<td style="text-align:center">🟡 Warning</td>
<td>For <code>high_risk</code>, <code>eu_database_id</code> should be set</td>
</tr>
</tbody>
</table>
<h2 id="complete-example" tabindex="-1">Complete Example <a class="header-anchor" href="#complete-example" aria-label="Permalink to &quot;Complete Example&quot;"></a></h2>
<div class="language-json vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang">json</span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">{</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "$schema"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"https://ai-act.app.bauer-group.com/schemas/ai-act-statement/v1.json"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "schema_version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"1.0.0"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "provider"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "name"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"BAUER GROUP"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "address"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"Musterstraße 1, 12345 Musterstadt, Deutschland"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "contact_email"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"compliance@bauer-group.com"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "website"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"https://bauer-group.com"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "authorised_representative"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">null</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "ai_system"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "name"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"BAUER Predictive Maintenance Engine"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"1.2.0"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "type"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"embedded"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "description"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"AI-based predictive maintenance for construction machinery hydraulic systems"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "identifier"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"AI-BGI-0042"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "intended_purpose"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"Prediction of maintenance needs based on sensor data (vibration, temperature, pressure) to prevent unplanned downtime"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "deployer_type"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"b2b"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "risk_classification"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "risk_level"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"high_risk"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "annex_iii_category"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">2</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "annex_i_product"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"Machinery Regulation (EU) 2023/1230"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "classification_rationale"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"Safety component in Annex I product (construction machinery) — Art. 6(1)"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "conformity_assessment"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "procedure"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"annex_vi"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "notified_body"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">null</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "assessment_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"2026-07-15"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "declaration_url"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"https://ai-act.app.bauer-group.com/systems/AI-BGI-0042/doc"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "declaration_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"2026-07-15"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ce_marking"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ce_marking_placement"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"documentation"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "compliance"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_9_risk_management"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_10_data_governance"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_11_technical_documentation"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_12_record_keeping"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_13_transparency"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_14_human_oversight"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_15_accuracy_robustness"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "art_17_qms"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "transparency"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "ai_interaction_disclosed"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">false</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "synthetic_content_labelled"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">false</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "deployer_instructions_provided"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "eu_database_registered"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "eu_database_id"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"EU-AI-DB-2026-004217"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "support_period"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "start_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"2026-07-15"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "end_date"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"2031-07-15"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "phase"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"active"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "post_market_monitoring"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">true</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  },</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "harmonised_standards"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: [</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "identifier"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"ISO/IEC 42001:2023"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "description"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"AI Management System"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    },</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "identifier"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"ISO/IEC 23894:2023"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">      "description"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"AI Risk Management"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">    }</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  ],</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">  "metadata"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: {</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "generated_at"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"2026-07-15T09:00:00Z"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "generator"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"manual"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "statement_version"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"1.0.0"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">,</span></span>
<span class="line"><span style="--shiki-light:#005CC5;--shiki-dark:#79B8FF">    "regulation"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">: </span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"(EU) 2024/1689"</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">  }</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">}</span></span></code></pre>
</div><h2 id="schema-versioning" tabindex="-1">Schema Versioning <a class="header-anchor" href="#schema-versioning" aria-label="Permalink to &quot;Schema Versioning&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Rule</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>schema_version</code></td>
<td>Follows SemVer (MAJOR.MINOR.PATCH)</td>
</tr>
<tr>
<td>MAJOR</td>
<td>Incompatible changes (new required fields, structural changes)</td>
</tr>
<tr>
<td>MINOR</td>
<td>Backwards-compatible extensions (new optional fields)</td>
</tr>
<tr>
<td>PATCH</td>
<td>Corrections to descriptions or validation rules</td>
</tr>
</tbody>
</table>
<div class="warning custom-block"><p class="custom-block-title">COMPATIBILITY</p>
<p>When a schema MAJOR update occurs, all existing <code>ai-act-statement.json</code> files must be migrated. Migration guides are documented in this manual.</p>
</div>
<h2 id="cross-references" tabindex="-1">Cross-References <a class="header-anchor" href="#cross-references" aria-label="Permalink to &quot;Cross-References&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Topic</th>
<th>Link</th>
</tr>
</thead>
<tbody>
<tr>
<td>EU Declaration of Conformity (content)</td>
<td><a href="/en/conformity/declaration-of-conformity">Art. 47 Explanation</a></td>
</tr>
<tr>
<td>EU Declaration of Conformity (template)</td>
<td><a href="/en/templates/declaration-of-conformity">Template</a></td>
</tr>
<tr>
<td>EU Database Registration</td>
<td><a href="/en/conformity/registration">Art. 49</a></td>
</tr>
<tr>
<td>CE Marking</td>
<td><a href="/en/conformity/ce-marking">Art. 48</a></td>
</tr>
<tr>
<td>Risk Classification</td>
<td><a href="/en/risk-classification/">Chapter 2</a></td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[EU Database Registration – Art. 49]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/registration</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/registration</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Obligation
Providers must register high-risk AI systems in the EU database (Art. 71) before placing ]]></description>
            <content:encoded><![CDATA[<h1 id="eu-database-registration-–-art-49" tabindex="-1">EU Database Registration – Art. 49 <a class="header-anchor" href="#eu-database-registration-–-art-49" aria-label="Permalink to &quot;EU Database Registration – Art. 49&quot;"></a></h1>
<h2 id="obligation" tabindex="-1">Obligation <a class="header-anchor" href="#obligation" aria-label="Permalink to &quot;Obligation&quot;"></a></h2>
<p>Providers must register high-risk AI systems in the EU database (Art. 71) <strong>before placing on the market</strong>.</p>
<h2 id="registration-contents-annex-viii" tabindex="-1">Registration Contents (Annex VIII) <a class="header-anchor" href="#registration-contents-annex-viii" aria-label="Permalink to &quot;Registration Contents (Annex VIII)&quot;"></a></h2>
<h3 id="section-a-—-provider-information" tabindex="-1">Section A — Provider Information <a class="header-anchor" href="#section-a-—-provider-information" aria-label="Permalink to &quot;Section A — Provider Information&quot;"></a></h3>
<ul>
<li>Name, address, contact details</li>
<li>Where applicable, name of the authorised representative</li>
</ul>
<h3 id="section-b-—-system-information" tabindex="-1">Section B — System Information <a class="header-anchor" href="#section-b-—-system-information" aria-label="Permalink to &quot;Section B — System Information&quot;"></a></h3>
<ul>
<li>Designation and version of the AI system</li>
<li>Status (on the market / withdrawn)</li>
<li>Description of the intended purpose</li>
<li>Risk classification</li>
<li>Member States in which the system is offered</li>
<li>URL of the instructions for use</li>
<li>Reference to the EU Declaration of Conformity</li>
</ul>
<h2 id="timing" tabindex="-1">Timing <a class="header-anchor" href="#timing" aria-label="Permalink to &quot;Timing&quot;"></a></h2>
<ul>
<li><strong>High-risk systems:</strong> Registration before placing on the market (Art. 49(1))</li>
<li><strong>Non-high-risk Annex III systems:</strong> Registration before placing on the market (Art. 49(2))</li>
</ul>
<h2 id="access" tabindex="-1">Access <a class="header-anchor" href="#access" aria-label="Permalink to &quot;Access&quot;"></a></h2>
<p>The EU database is operated by the Commission and is <strong>publicly accessible</strong> (with the exception of certain law enforcement information).</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Self-Assessment – Annex VI]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/conformity/self-assessment</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/conformity/self-assessment</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Self-Assessment – Annex VI

## Internal Control (Annex VI)

The self-assessment is the **standard conformity assessment procedure** for high-risk AI systems (where no third-party assessment is required).

### Step 1: QMS Verification

Confirmation that the QMS (Art. 17) is implemented and meets the requirements.

### Step 2: Technical Documentation

Verification that the technical documentation (Art. 11, Annex IV) is complete and up to date.

### Step 3: Conformity Check

Systematic check against all requirements of Art. 8–15:

| Requirement | Checked | Conforming | Remark |
|]]></description>
            <content:encoded><![CDATA[<h1 id="self-assessment-–-annex-vi" tabindex="-1">Self-Assessment – Annex VI <a class="header-anchor" href="#self-assessment-–-annex-vi" aria-label="Permalink to &quot;Self-Assessment – Annex VI&quot;"></a></h1>
<h2 id="internal-control-annex-vi" tabindex="-1">Internal Control (Annex VI) <a class="header-anchor" href="#internal-control-annex-vi" aria-label="Permalink to &quot;Internal Control (Annex VI)&quot;"></a></h2>
<p>The self-assessment is the <strong>standard conformity assessment procedure</strong> for high-risk AI systems (where no third-party assessment is required).</p>
<h3 id="step-1-qms-verification" tabindex="-1">Step 1: QMS Verification <a class="header-anchor" href="#step-1-qms-verification" aria-label="Permalink to &quot;Step 1: QMS Verification&quot;"></a></h3>
<p>Confirmation that the QMS (Art. 17) is implemented and meets the requirements.</p>
<h3 id="step-2-technical-documentation" tabindex="-1">Step 2: Technical Documentation <a class="header-anchor" href="#step-2-technical-documentation" aria-label="Permalink to &quot;Step 2: Technical Documentation&quot;"></a></h3>
<p>Verification that the technical documentation (Art. 11, Annex IV) is complete and up to date.</p>
<h3 id="step-3-conformity-check" tabindex="-1">Step 3: Conformity Check <a class="header-anchor" href="#step-3-conformity-check" aria-label="Permalink to &quot;Step 3: Conformity Check&quot;"></a></h3>
<p>Systematic check against all requirements of Art. 8–15:</p>
<table tabindex="0">
<thead>
<tr>
<th>Requirement</th>
<th>Checked</th>
<th>Conforming</th>
<th>Remark</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk Management System (Art. 9)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Data Governance (Art. 10)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Technical Documentation (Art. 11)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Record-Keeping (Art. 12)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Transparency (Art. 13)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Human Oversight (Art. 14)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
<tr>
<td>Accuracy, Robustness, Cybersecurity (Art. 15)</td>
<td>☐</td>
<td>☐</td>
<td></td>
</tr>
</tbody>
</table>
<h3 id="step-4-eu-declaration-of-conformity" tabindex="-1">Step 4: EU Declaration of Conformity <a class="header-anchor" href="#step-4-eu-declaration-of-conformity" aria-label="Permalink to &quot;Step 4: EU Declaration of Conformity&quot;"></a></h3>
<p>Upon successful self-assessment: issue the EU Declaration of Conformity (Art. 47).</p>
<h3 id="step-5-ce-marking" tabindex="-1">Step 5: CE Marking <a class="header-anchor" href="#step-5-ce-marking" aria-label="Permalink to &quot;Step 5: CE Marking&quot;"></a></h3>
<p>Affix the CE marking (Art. 48).</p>
<h3 id="step-6-registration" tabindex="-1">Step 6: Registration <a class="header-anchor" href="#step-6-registration" aria-label="Permalink to &quot;Step 6: Registration&quot;"></a></h3>
<p>Register in the EU database (Art. 49).</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[AI Office & AI Board]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/enforcement/ai-office</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/enforcement/ai-office</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[EU AI Office
The AI Office was established on 24 January 2024 by Commission decision and has been op]]></description>
            <content:encoded><![CDATA[<h1 id="ai-office-ai-board" tabindex="-1">AI Office &amp; AI Board <a class="header-anchor" href="#ai-office-ai-board" aria-label="Permalink to &quot;AI Office &amp; AI Board&quot;"></a></h1>
<h2 id="eu-ai-office" tabindex="-1">EU AI Office <a class="header-anchor" href="#eu-ai-office" aria-label="Permalink to &quot;EU AI Office&quot;"></a></h2>
<p>The AI Office was established on <strong>24 January 2024</strong> by Commission decision and has been operational since <strong>2 August 2025</strong>.</p>
<h3 id="tasks" tabindex="-1">Tasks <a class="header-anchor" href="#tasks" aria-label="Permalink to &quot;Tasks&quot;"></a></h3>
<ul>
<li>Enforcement of GPAI rules (Art. 88–94)</li>
<li>Coordination of the uniform application of the AI Act</li>
<li>Support for Member States</li>
<li>Administration of the EU database</li>
<li>Monitoring of systemic risks posed by GPAI models</li>
<li>Publication of guidelines and best practices</li>
</ul>
<h2 id="ai-board" tabindex="-1">AI Board <a class="header-anchor" href="#ai-board" aria-label="Permalink to &quot;AI Board&quot;"></a></h2>
<p>The AI Board consists of representatives from the Member States and advises the Commission. It has been operational since August 2025.</p>
<h3 id="tasks-1" tabindex="-1">Tasks <a class="header-anchor" href="#tasks-1" aria-label="Permalink to &quot;Tasks&quot;"></a></h3>
<ul>
<li>Ensure consistent application of the AI Act</li>
<li>Exchange best practices between Member States</li>
<li>Advise the Commission on delegated acts</li>
<li>Coordination of national authorities</li>
</ul>
<h2 id="relevance-for-bauer-group" tabindex="-1">Relevance for BAUER GROUP <a class="header-anchor" href="#relevance-for-bauer-group" aria-label="Permalink to &quot;Relevance for BAUER GROUP&quot;"></a></h2>
<p>The AI Office and the AI Board are primarily relevant to the <strong>regulatory infrastructure</strong>. Direct interaction between BAUER GROUP and these bodies is only expected in exceptional cases (e.g. enquiries regarding specific classification questions or GPAI-related topics).</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Sanctions Regime – Art. 99]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/enforcement/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/enforcement/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Sanctions Regime – Art. 99

## Fine Framework

The AI Act provides for **graduated sanctions** applicable since 2 August 2025:

| Infringement | Fine (max.) | Alternative |
|]]></description>
            <content:encoded><![CDATA[<h1 id="sanctions-regime-–-art-99" tabindex="-1">Sanctions Regime – Art. 99 <a class="header-anchor" href="#sanctions-regime-–-art-99" aria-label="Permalink to &quot;Sanctions Regime – Art. 99&quot;"></a></h1>
<h2 id="fine-framework" tabindex="-1">Fine Framework <a class="header-anchor" href="#fine-framework" aria-label="Permalink to &quot;Fine Framework&quot;"></a></h2>
<p>The AI Act provides for <strong>graduated sanctions</strong> applicable since 2 August 2025:</p>
<table tabindex="0">
<thead>
<tr>
<th>Infringement</th>
<th>Fine (max.)</th>
<th>Alternative</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Prohibited AI practices (Art. 5)</strong></td>
<td>EUR 35 million</td>
<td>7% of global annual turnover</td>
</tr>
<tr>
<td><strong>Other obligations</strong> (high-risk, transparency, GPAI, etc.)</td>
<td>EUR 15 million</td>
<td>3% of global annual turnover</td>
</tr>
<tr>
<td><strong>False/misleading information to authorities</strong></td>
<td>EUR 7.5 million</td>
<td>1% of global annual turnover</td>
</tr>
</tbody>
</table>
<p>The <strong>higher amount</strong> applies in each case.</p>
<h3 id="sme-privilege" tabindex="-1">SME Privilege <a class="header-anchor" href="#sme-privilege" aria-label="Permalink to &quot;SME Privilege&quot;"></a></h3>
<p>For SMEs and start-ups, the <strong>lower</strong> of the stated amounts (absolute vs. percentage) applies.</p>
<h2 id="further-measures" tabindex="-1">Further Measures <a class="header-anchor" href="#further-measures" aria-label="Permalink to &quot;Further Measures&quot;"></a></h2>
<p>In addition to fines, market surveillance authorities may:</p>
<ul>
<li>Order <strong>withdrawal</strong> of the AI system from the market</li>
<li>Enforce <strong>corrective measures</strong> (remediation, retraining)</li>
<li><strong>Prohibit</strong> placing into service until conformity is achieved</li>
<li>Issue <strong>warnings</strong></li>
</ul>
<h2 id="bauer-group-risk-assessment" tabindex="-1">BAUER GROUP Risk Assessment <a class="header-anchor" href="#bauer-group-risk-assessment" aria-label="Permalink to &quot;BAUER GROUP Risk Assessment&quot;"></a></h2>
<p>The fine risk is proportional to the infringement. For BAUER GROUP:</p>
<table tabindex="0">
<thead>
<tr>
<th>Scenario</th>
<th>Risk</th>
<th>Mitigation</th>
</tr>
</thead>
<tbody>
<tr>
<td>Prohibited practice (Art. 5)</td>
<td>Extremely high</td>
<td>Screening schema for every product → risk ≈ 0</td>
</tr>
<tr>
<td>High-risk without conformity</td>
<td>High</td>
<td>Go/No-Go framework → non-conforming products not placed in the EU</td>
</tr>
<tr>
<td>Missing transparency labelling</td>
<td>Medium</td>
<td>Templates and processes implemented</td>
</tr>
<tr>
<td>Missing AI Literacy</td>
<td>Low</td>
<td>Integrated into onboarding</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Market Surveillance]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/enforcement/market-surveillance</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/enforcement/market-surveillance</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Jurisdiction
Enforcement of the AI Act takes place at two levels:
 EU Level
- AI Office (within the ]]></description>
            <content:encoded><![CDATA[<h1 id="market-surveillance" tabindex="-1">Market Surveillance <a class="header-anchor" href="#market-surveillance" aria-label="Permalink to &quot;Market Surveillance&quot;"></a></h1>
<h2 id="jurisdiction" tabindex="-1">Jurisdiction <a class="header-anchor" href="#jurisdiction" aria-label="Permalink to &quot;Jurisdiction&quot;"></a></h2>
<p>Enforcement of the AI Act takes place at two levels:</p>
<h3 id="eu-level" tabindex="-1">EU Level <a class="header-anchor" href="#eu-level" aria-label="Permalink to &quot;EU Level&quot;"></a></h3>
<ul>
<li><strong>AI Office</strong> (within the European Commission) — responsible for GPAI models and systemic risks</li>
<li><strong>AI Board</strong> — coordination body of the Member States</li>
</ul>
<h3 id="national-level" tabindex="-1">National Level <a class="header-anchor" href="#national-level" aria-label="Permalink to &quot;National Level&quot;"></a></h3>
<ul>
<li><strong>Market surveillance authorities</strong> — responsible for high-risk AI and other obligations</li>
<li><strong>Notifying authorities</strong> — supervision of notified bodies</li>
</ul>
<p>Each Member State was required to designate its competent authorities by <strong>2 August 2025</strong>.</p>
<h2 id="germany" tabindex="-1">Germany <a class="header-anchor" href="#germany" aria-label="Permalink to &quot;Germany&quot;"></a></h2>
<p>In Germany, responsibility is expected to lie with:</p>
<ul>
<li><strong>Bundesnetzagentur (BNetzA)</strong> as the central market surveillance authority for the AI Act</li>
<li>Potentially sector-specific authorities for particular areas of application</li>
</ul>
<h2 id="powers-of-the-authorities-from-august-2026" tabindex="-1">Powers of the Authorities (from August 2026) <a class="header-anchor" href="#powers-of-the-authorities-from-august-2026" aria-label="Permalink to &quot;Powers of the Authorities (from August 2026)&quot;"></a></h2>
<ul>
<li>Access to AI systems and their documentation</li>
<li>Access to source code (under certain conditions)</li>
<li>Access to training data and test data</li>
<li>Ordering corrective measures</li>
<li>Market withdrawal and recall</li>
<li>Imposition of fines</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[AI Governance Framework]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/governance/framework</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/governance/framework</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# AI Governance Framework

## Structure

The BAUER GROUP integrates AI governance into the existing organisational structure. No separate governance apparatus.

### Responsibilities

| Role | Person/Function | AI Act Responsibility |
|]]></description>
            <content:encoded><![CDATA[<h1 id="ai-governance-framework" tabindex="-1">AI Governance Framework <a class="header-anchor" href="#ai-governance-framework" aria-label="Permalink to &quot;AI Governance Framework&quot;"></a></h1>
<h2 id="structure" tabindex="-1">Structure <a class="header-anchor" href="#structure" aria-label="Permalink to &quot;Structure&quot;"></a></h2>
<p>The BAUER GROUP integrates AI governance into the existing organisational structure. No separate governance apparatus.</p>
<h3 id="responsibilities" tabindex="-1">Responsibilities <a class="header-anchor" href="#responsibilities" aria-label="Permalink to &quot;Responsibilities&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Role</th>
<th>Person/Function</th>
<th>AI Act Responsibility</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>AI Act Compliance Owner</strong></td>
<td>Executive Management (Karl)</td>
<td>Strategic decisions, Go/No-Go</td>
</tr>
<tr>
<td><strong>Technical Implementation</strong></td>
<td>Head of Development</td>
<td>Implementation of requirements</td>
</tr>
<tr>
<td><strong>Documentation</strong></td>
<td>Project Management</td>
<td>Maintenance of compliance documentation</td>
</tr>
<tr>
<td><strong>AI Literacy</strong></td>
<td>HR / Onboarding</td>
<td>Training delivery and records</td>
</tr>
</tbody>
</table>
<h3 id="processes" tabindex="-1">Processes <a class="header-anchor" href="#processes" aria-label="Permalink to &quot;Processes&quot;"></a></h3>
<ol>
<li><strong>New product with AI:</strong> Assessment schema Art. 5 → Risk classification → Go/No-Go → (if Go) Compliance implementation</li>
<li><strong>Existing product + AI extension:</strong> Same as new product, but review whether risk level changes</li>
<li><strong>Internal AI usage:</strong> Ensure AI Literacy, observe deployer obligations</li>
<li><strong>Annual review:</strong> Update AI inventory, review classifications, conduct training</li>
</ol>
<h3 id="documentation-hierarchy" tabindex="-1">Documentation Hierarchy <a class="header-anchor" href="#documentation-hierarchy" aria-label="Permalink to &quot;Documentation Hierarchy&quot;"></a></h3>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>ai-act.docs.bauer-group.com  (this site)</span></span>
<span class="line"><span>  └── Regulatory Documentation (public)</span></span>
<span class="line"><span>       ├── General Compliance Presentation</span></span>
<span class="line"><span>       ├── Templates and Forms</span></span>
<span class="line"><span>       └── Reference to CRA Documentation</span></span>
<span class="line"><span></span></span>
<span class="line"><span>Internal Documents (not public)</span></span>
<span class="line"><span>  ├── AI System Inventory (product-specific)</span></span>
<span class="line"><span>  ├── Go/No-Go Decision Protocols</span></span>
<span class="line"><span>  ├── Risk Classifications (product-specific)</span></span>
<span class="line"><span>  └── Training Records</span></span></code></pre>
</div>]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[AI Inventory & Registration]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/governance/inventory</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/governance/inventory</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# AI Inventory & Registration

## AI System Inventory

Every organisation should maintain an inventory of all AI systems it develops, deploys or distributes. This is not an explicit obligation under the AI Act, but a prerequisite for correct risk classification and compliance assessment.

### Inventory Fields

| Field | Description |
|]]></description>
            <content:encoded><![CDATA[<h1 id="ai-inventory-registration" tabindex="-1">AI Inventory &amp; Registration <a class="header-anchor" href="#ai-inventory-registration" aria-label="Permalink to &quot;AI Inventory &amp; Registration&quot;"></a></h1>
<h2 id="ai-system-inventory" tabindex="-1">AI System Inventory <a class="header-anchor" href="#ai-system-inventory" aria-label="Permalink to &quot;AI System Inventory&quot;"></a></h2>
<p>Every organisation should maintain an inventory of all AI systems it develops, deploys or distributes. This is not an explicit obligation under the AI Act, but a prerequisite for correct risk classification and compliance assessment.</p>
<h3 id="inventory-fields" tabindex="-1">Inventory Fields <a class="header-anchor" href="#inventory-fields" aria-label="Permalink to &quot;Inventory Fields&quot;"></a></h3>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td>System ID</td>
<td>Unique identifier</td>
</tr>
<tr>
<td>Name</td>
<td>Product name / internal designation</td>
</tr>
<tr>
<td>Description</td>
<td>Brief description of the AI functionality</td>
</tr>
<tr>
<td>AI Component</td>
<td>Type (ML, DL, LLM, etc.)</td>
</tr>
<tr>
<td>BAUER GROUP Role</td>
<td>Provider / Deployer / Distributor</td>
</tr>
<tr>
<td>Risk Level</td>
<td>Prohibited / High / Limited / Minimal</td>
</tr>
<tr>
<td>Go/No-Go EU</td>
<td>Go / No-Go / Open</td>
</tr>
<tr>
<td>Deadline</td>
<td>Relevant compliance deadline</td>
</tr>
<tr>
<td>Responsible</td>
<td>Responsible person</td>
</tr>
<tr>
<td>Last Review</td>
<td>Date of last classification review</td>
</tr>
</tbody>
</table>
<p>Template: <a href="/en/templates/ai-inventory">AI System Inventory</a></p>
<h2 id="eu-database-registration-art-49" tabindex="-1">EU Database Registration (Art. 49) <a class="header-anchor" href="#eu-database-registration-art-49" aria-label="Permalink to &quot;EU Database Registration (Art. 49)&quot;"></a></h2>
<h3 id="obligation-to-register" tabindex="-1">Obligation to Register <a class="header-anchor" href="#obligation-to-register" aria-label="Permalink to &quot;Obligation to Register&quot;"></a></h3>
<p>Before placing on the market or putting into service, <strong>providers</strong> must register the following systems in the EU database:</p>
<ul>
<li><strong>High-risk AI systems</strong> (Art. 49(1))</li>
<li><strong>Non-high-risk-classified Annex III systems</strong> (Art. 49(2))</li>
</ul>
<p><strong>Deployers</strong> must register if they are public authorities or act on behalf of public authorities.</p>
<h3 id="registration-contents" tabindex="-1">Registration Contents <a class="header-anchor" href="#registration-contents" aria-label="Permalink to &quot;Registration Contents&quot;"></a></h3>
<p>The required information is defined in <strong>Annex VIII</strong>:</p>
<ul>
<li>Section A: Provider information</li>
<li>Section B: Information on the high-risk AI system</li>
<li>Section C: Deployer information (public authorities only)</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[BAUER GROUP as GPAI Deployer]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/gpai/deployer-perspective</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/gpai/deployer-perspective</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# BAUER GROUP as GPAI Deployer

## Use of GPAI Models

The BAUER GROUP uses GPAI models (LLMs) in various contexts:

| Use | Model(s) | Context | AI Act Obligations |
|]]></description>
            <content:encoded><![CDATA[<h1 id="bauer-group-as-gpai-deployer" tabindex="-1">BAUER GROUP as GPAI Deployer <a class="header-anchor" href="#bauer-group-as-gpai-deployer" aria-label="Permalink to &quot;BAUER GROUP as GPAI Deployer&quot;"></a></h1>
<h2 id="use-of-gpai-models" tabindex="-1">Use of GPAI Models <a class="header-anchor" href="#use-of-gpai-models" aria-label="Permalink to &quot;Use of GPAI Models&quot;"></a></h2>
<p>The BAUER GROUP uses GPAI models (LLMs) in various contexts:</p>
<table tabindex="0">
<thead>
<tr>
<th>Use</th>
<th>Model(s)</th>
<th>Context</th>
<th>AI Act Obligations</th>
</tr>
</thead>
<tbody>
<tr>
<td>Internal productivity</td>
<td>Claude, GPT</td>
<td>Code review, documentation, research</td>
<td><strong>Art. 4 (AI Literacy)</strong> — employees must be competent in handling</td>
</tr>
<tr>
<td>Customer product integration</td>
<td>Variable</td>
<td>AI features in B2B software</td>
<td><strong>Dependent on risk level</strong> of the resulting system</td>
</tr>
<tr>
<td>Chatbots (customer service)</td>
<td>LLM-based</td>
<td>Interaction with natural persons</td>
<td><strong>Art. 50 (Transparency)</strong> — labelling as AI system</td>
</tr>
</tbody>
</table>
<h2 id="obligations-as-deployer" tabindex="-1">Obligations as Deployer <a class="header-anchor" href="#obligations-as-deployer" aria-label="Permalink to &quot;Obligations as Deployer&quot;"></a></h2>
<p>As a professional user of AI systems, the BAUER GROUP has the following deployer obligations:</p>
<h3 id="general-all-ai-systems" tabindex="-1">General (all AI systems) <a class="header-anchor" href="#general-all-ai-systems" aria-label="Permalink to &quot;General (all AI systems)&quot;"></a></h3>
<ul>
<li><strong>AI Literacy</strong> (Art. 4) — personnel with AI contact must be adequately trained</li>
</ul>
<h3 id="for-high-risk-ai-if-deployed" tabindex="-1">For High-Risk AI (if deployed) <a class="header-anchor" href="#for-high-risk-ai-if-deployed" aria-label="Permalink to &quot;For High-Risk AI (if deployed)&quot;"></a></h3>
<ul>
<li>Use in accordance with intended purpose as per provider instructions</li>
<li>Ensure human oversight</li>
<li>Monitor input data quality</li>
<li>Retain logs for at least 6 months</li>
<li>Report risks and serious incidents to providers and authorities</li>
<li>If deployed in the workplace: inform workers</li>
</ul>
<h3 id="transparency-obligations-art-50" tabindex="-1">Transparency Obligations (Art. 50) <a class="header-anchor" href="#transparency-obligations-art-50" aria-label="Permalink to &quot;Transparency Obligations (Art. 50)&quot;"></a></h3>
<ul>
<li>Labelling of AI-generated content</li>
<li>Disclosure of AI interactions (chatbots)</li>
</ul>
<h2 id="vendor-due-diligence" tabindex="-1">Vendor Due Diligence <a class="header-anchor" href="#vendor-due-diligence" aria-label="Permalink to &quot;Vendor Due Diligence&quot;"></a></h2>
<p>When selecting GPAI providers, the BAUER GROUP verifies:</p>
<ul>
<li>Is the GPAI provider registered in the EU database?</li>
<li>Does the provider supply the required documentation (Annex XII)?</li>
<li>Is there a designated EU authorised representative (for third-country providers)?</li>
<li>Does the provider fulfil its copyright obligations?</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[General-Purpose AI (GPAI) – Art. 51–56]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/gpai/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/gpai/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# General-Purpose AI (GPAI) – Art. 51–56

## Definition

**GPAI models** are AI models that can be used for a wide variety of different tasks (e.g. Large Language Models such as GPT, Claude, Gemini). They are not trained for a specific purpose but can be adapted for various downstream tasks after training.

## Distinction: GPAI Model vs. GPAI System

| | GPAI Model | GPAI System |
|]]></description>
            <content:encoded><![CDATA[<h1 id="general-purpose-ai-gpai-–-art-51–56" tabindex="-1">General-Purpose AI (GPAI) – Art. 51–56 <a class="header-anchor" href="#general-purpose-ai-gpai-–-art-51–56" aria-label="Permalink to &quot;General-Purpose AI (GPAI) – Art. 51–56&quot;"></a></h1>
<h2 id="definition" tabindex="-1">Definition <a class="header-anchor" href="#definition" aria-label="Permalink to &quot;Definition&quot;"></a></h2>
<p><strong>GPAI models</strong> are AI models that can be used for a wide variety of different tasks (e.g. Large Language Models such as GPT, Claude, Gemini). They are not trained for a specific purpose but can be adapted for various downstream tasks after training.</p>
<h2 id="distinction-gpai-model-vs-gpai-system" tabindex="-1">Distinction: GPAI Model vs. GPAI System <a class="header-anchor" href="#distinction-gpai-model-vs-gpai-system" aria-label="Permalink to &quot;Distinction: GPAI Model vs. GPAI System&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th></th>
<th>GPAI Model</th>
<th>GPAI System</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>What</strong></td>
<td>The trained model itself</td>
<td>A system that integrates a GPAI model</td>
</tr>
<tr>
<td><strong>Who regulates</strong></td>
<td>The model provider (OpenAI, Anthropic, Google, etc.)</td>
<td>The system provider (whoever integrates the model into a product)</td>
</tr>
<tr>
<td><strong>Obligations</strong></td>
<td>Art. 53 (all), Art. 55 (for systemic risk)</td>
<td>Dependent on the risk level of the system</td>
</tr>
</tbody>
</table>
<h2 id="systemic-risk-art-51" tabindex="-1">Systemic Risk (Art. 51) <a class="header-anchor" href="#systemic-risk-art-51" aria-label="Permalink to &quot;Systemic Risk (Art. 51)&quot;"></a></h2>
<p>A GPAI model has <strong>systemic risk</strong> if:</p>
<ul>
<li>Cumulative computing power for training &gt; <strong>10²⁵ FLOPS</strong>, OR</li>
<li>The EU Commission classifies the model accordingly (due to high capabilities/impact)</li>
</ul>
<p>Providers of GPAI models with systemic risk have <strong>additional obligations</strong> (Art. 55).</p>
<h2 id="bauer-group-perspective" tabindex="-1">BAUER GROUP Perspective <a class="header-anchor" href="#bauer-group-perspective" aria-label="Permalink to &quot;BAUER GROUP Perspective&quot;"></a></h2>
<p>The BAUER GROUP is <strong>currently not a GPAI model provider</strong>. In-house model development in the future is not ruled out. Our current role is:</p>
<ul>
<li><strong>GPAI deployer</strong> — we use GPAI models (Claude, GPT, etc.) as tools</li>
<li><strong>Potentially a system provider</strong> — if we integrate GPAI models into customer products</li>
</ul>
<p>The GPAI provider obligations (Art. 53, 55) do <strong>not apply to the BAUER GROUP</strong> but to Anthropic, OpenAI, etc. Responsibility only shifts if we place a GPAI-based system on the EU market under our own name as a high-risk system.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[GPAI Provider Obligations – Art. 53]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/gpai/obligations</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/gpai/obligations</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# GPAI Provider Obligations – Art. 53

## Obligations for ALL GPAI Model Providers

Since **2 August 2025**, GPAI model providers must:

1. **Prepare and maintain technical documentation** (Annex XI)
2. **Provide information and documentation** to downstream providers (Annex XII), so they can understand the model and fulfil their obligations
3. **Comply with copyright directive** — establish a policy for the protection of copyright
4. **Publish a summary of training data** (according to the EU AI Office template)

## Additional Obligations for Systemic Risk (Art. 55)

Providers of GPAI models with systemic risk must additionally:

- **Conduct model evaluations** (including adversarial testing)
- **Assess and mitigate systemic risks**
- **Report serious incidents** to the AI Office
- **Ensure cybersecurity** of the model

## Open-Source Exception

GPAI models under a **free and open licence** (parameters, architecture, and usage publicly accessible) need only fulfil points 3 and 4 — **unless** they present systemic risk.

## Relevance for BAUER GROUP

| Question | Answer |
|]]></description>
            <content:encoded><![CDATA[<h1 id="gpai-provider-obligations-–-art-53" tabindex="-1">GPAI Provider Obligations – Art. 53 <a class="header-anchor" href="#gpai-provider-obligations-–-art-53" aria-label="Permalink to &quot;GPAI Provider Obligations – Art. 53&quot;"></a></h1>
<h2 id="obligations-for-all-gpai-model-providers" tabindex="-1">Obligations for ALL GPAI Model Providers <a class="header-anchor" href="#obligations-for-all-gpai-model-providers" aria-label="Permalink to &quot;Obligations for ALL GPAI Model Providers&quot;"></a></h2>
<p>Since <strong>2 August 2025</strong>, GPAI model providers must:</p>
<ol>
<li><strong>Prepare and maintain technical documentation</strong> (Annex XI)</li>
<li><strong>Provide information and documentation</strong> to downstream providers (Annex XII), so they can understand the model and fulfil their obligations</li>
<li><strong>Comply with copyright directive</strong> — establish a policy for the protection of copyright</li>
<li><strong>Publish a summary of training data</strong> (according to the EU AI Office template)</li>
</ol>
<h2 id="additional-obligations-for-systemic-risk-art-55" tabindex="-1">Additional Obligations for Systemic Risk (Art. 55) <a class="header-anchor" href="#additional-obligations-for-systemic-risk-art-55" aria-label="Permalink to &quot;Additional Obligations for Systemic Risk (Art. 55)&quot;"></a></h2>
<p>Providers of GPAI models with systemic risk must additionally:</p>
<ul>
<li><strong>Conduct model evaluations</strong> (including adversarial testing)</li>
<li><strong>Assess and mitigate systemic risks</strong></li>
<li><strong>Report serious incidents</strong> to the AI Office</li>
<li><strong>Ensure cybersecurity</strong> of the model</li>
</ul>
<h2 id="open-source-exception" tabindex="-1">Open-Source Exception <a class="header-anchor" href="#open-source-exception" aria-label="Permalink to &quot;Open-Source Exception&quot;"></a></h2>
<p>GPAI models under a <strong>free and open licence</strong> (parameters, architecture, and usage publicly accessible) need only fulfil points 3 and 4 — <strong>unless</strong> they present systemic risk.</p>
<h2 id="relevance-for-bauer-group" tabindex="-1">Relevance for BAUER GROUP <a class="header-anchor" href="#relevance-for-bauer-group" aria-label="Permalink to &quot;Relevance for BAUER GROUP&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Question</th>
<th>Answer</th>
</tr>
</thead>
<tbody>
<tr>
<td>Is BAUER GROUP a GPAI model provider?</td>
<td><strong>No</strong></td>
</tr>
<tr>
<td>Do Art. 53/55 apply to BAUER?</td>
<td><strong>No</strong> — they apply to the model providers (Anthropic, OpenAI, etc.)</td>
</tr>
<tr>
<td>What must BAUER GROUP verify?</td>
<td>Whether the GPAI providers used fulfil their obligations (due diligence)</td>
</tr>
<tr>
<td>Does BAUER GROUP become a provider?</td>
<td>Only if a GPAI-based system is placed on the EU market under its own name as a high-risk system</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Systemic Risk – Art. 55]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/gpai/systemic-risk</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/gpai/systemic-risk</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Criterion
A GPAI model is classified as posing systemic risk if:
- The cumulative computing power fo]]></description>
            <content:encoded><![CDATA[<h1 id="systemic-risk-–-art-55" tabindex="-1">Systemic Risk – Art. 55 <a class="header-anchor" href="#systemic-risk-–-art-55" aria-label="Permalink to &quot;Systemic Risk – Art. 55&quot;"></a></h1>
<h2 id="criterion" tabindex="-1">Criterion <a class="header-anchor" href="#criterion" aria-label="Permalink to &quot;Criterion&quot;"></a></h2>
<p>A GPAI model is classified as posing systemic risk if:</p>
<ul>
<li>The cumulative computing power for training exceeds <strong>10²⁵ FLOPS</strong> (Annex XIII), OR</li>
<li>The EU Commission classifies it by decision</li>
</ul>
<p>Providers must notify the Commission <strong>within 2 weeks</strong> when their model meets this criterion.</p>
<h2 id="affected-models-as-of-march-2026" tabindex="-1">Affected Models (as of March 2026) <a class="header-anchor" href="#affected-models-as-of-march-2026" aria-label="Permalink to &quot;Affected Models (as of March 2026)&quot;"></a></h2>
<p>Models that, based on current knowledge, are or may be considered as posing systemic risk:</p>
<ul>
<li>GPT-4/4o (OpenAI)</li>
<li>Claude 3.5/4 (Anthropic)</li>
<li>Gemini Ultra/Pro (Google)</li>
<li>Llama 3.1 405B (Meta)</li>
</ul>
<h2 id="bauer-group-relevance" tabindex="-1">BAUER GROUP Relevance <a class="header-anchor" href="#bauer-group-relevance" aria-label="Permalink to &quot;BAUER GROUP Relevance&quot;"></a></h2>
<p><strong>None directly.</strong> The BAUER GROUP is a user of these models, not a provider. The obligations under Art. 55 apply to the respective model providers.</p>
<p>Indirect relevance: The BAUER GROUP should verify, as part of its <strong>vendor selection</strong> (vendor due diligence), whether the GPAI provider fulfils its obligations. This reduces its own liability risk when integrating into customer products.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Data & Data Governance – Art. 10]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/data-governance</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/data-governance</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Data & Data Governance – Art. 10

## Requirement

Training, validation and test datasets for high-risk AI systems are subject to specific Data Governance requirements.

## Data Requirements

Datasets must:

- Be **relevant** to the intended purpose
- Be **sufficiently representative**, particularly for affected groups of persons
- Be **as far as possible free from errors** and **complete**
- Possess appropriate **statistical properties** (including with regard to geographical, behavioural and functional aspects)

## Data Governance Measures

Providers must document:

- **Data provenance** and collection methods
- **Data preparation processes** (labelling, cleansing, enrichment)
- **Bias assessment** and countermeasures taken
- Measures for the detection and remediation of **data gaps and deficiencies**
- Legal basis under data protection law (GDPR compliance)

## BAUER GROUP Implementation

| Scenario | Approach |
|]]></description>
            <content:encoded><![CDATA[<h1 id="data-data-governance-–-art-10" tabindex="-1">Data &amp; Data Governance – Art. 10 <a class="header-anchor" href="#data-data-governance-–-art-10" aria-label="Permalink to &quot;Data &amp; Data Governance – Art. 10&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Training, validation and test datasets for high-risk AI systems are subject to specific Data Governance requirements.</p>
<h2 id="data-requirements" tabindex="-1">Data Requirements <a class="header-anchor" href="#data-requirements" aria-label="Permalink to &quot;Data Requirements&quot;"></a></h2>
<p>Datasets must:</p>
<ul>
<li>Be <strong>relevant</strong> to the intended purpose</li>
<li>Be <strong>sufficiently representative</strong>, particularly for affected groups of persons</li>
<li>Be <strong>as far as possible free from errors</strong> and <strong>complete</strong></li>
<li>Possess appropriate <strong>statistical properties</strong> (including with regard to geographical, behavioural and functional aspects)</li>
</ul>
<h2 id="data-governance-measures" tabindex="-1">Data Governance Measures <a class="header-anchor" href="#data-governance-measures" aria-label="Permalink to &quot;Data Governance Measures&quot;"></a></h2>
<p>Providers must document:</p>
<ul>
<li><strong>Data provenance</strong> and collection methods</li>
<li><strong>Data preparation processes</strong> (labelling, cleansing, enrichment)</li>
<li><strong>Bias assessment</strong> and countermeasures taken</li>
<li>Measures for the detection and remediation of <strong>data gaps and deficiencies</strong></li>
<li>Legal basis under data protection law (GDPR compliance)</li>
</ul>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Scenario</th>
<th>Approach</th>
</tr>
</thead>
<tbody>
<tr>
<td>BAUER GROUP trains its own models</td>
<td>Full Data Governance documentation required</td>
</tr>
<tr>
<td>BAUER GROUP uses third-party models (API)</td>
<td>Documentation of the provider's terms of use, input/output monitoring</td>
</tr>
<tr>
<td>BAUER GROUP fine-tunes third-party models</td>
<td>Data Governance for the fine-tuning dataset required</td>
</tr>
</tbody>
</table>
<div class="warning custom-block"><p class="custom-block-title">Disproportionate Effort</p>
<p>Where the Data Governance requirements (particularly for training data documentation, bias analysis, representativeness evidence) exceed the product value → <strong>No-Go EU</strong>, distribution in third-country markets only.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Human Oversight – Art. 14]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/human-oversight</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/human-oversight</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Human Oversight – Art. 14

## Requirement

High-risk AI systems must be designed in such a way that they can be **effectively overseen** by natural persons.

## Oversight Requirements

Persons to whom human oversight is assigned must be enabled to:

1. **Understand the relevant capabilities and limitations** of the system and properly monitor its operation
2. Remain aware of the possible tendency to automatically rely on the system output **(Automation Bias)**
3. **Correctly interpret the output** of the system
4. Decide **not to use** the system or to **disregard, override or reverse** the output
5. Safely interrupt the system using a **stop mechanism**

## BAUER GROUP Implementation

| Measure | Implementation |
|]]></description>
            <content:encoded><![CDATA[<h1 id="human-oversight-–-art-14" tabindex="-1">Human Oversight – Art. 14 <a class="header-anchor" href="#human-oversight-–-art-14" aria-label="Permalink to &quot;Human Oversight – Art. 14&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>High-risk AI systems must be designed in such a way that they can be <strong>effectively overseen</strong> by natural persons.</p>
<h2 id="oversight-requirements" tabindex="-1">Oversight Requirements <a class="header-anchor" href="#oversight-requirements" aria-label="Permalink to &quot;Oversight Requirements&quot;"></a></h2>
<p>Persons to whom human oversight is assigned must be enabled to:</p>
<ol>
<li><strong>Understand the relevant capabilities and limitations</strong> of the system and properly monitor its operation</li>
<li>Remain aware of the possible tendency to automatically rely on the system output <strong>(Automation Bias)</strong></li>
<li><strong>Correctly interpret the output</strong> of the system</li>
<li>Decide <strong>not to use</strong> the system or to <strong>disregard, override or reverse</strong> the output</li>
<li>Safely interrupt the system using a <strong>stop mechanism</strong></li>
</ol>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Measure</th>
<th>Implementation</th>
</tr>
</thead>
<tbody>
<tr>
<td>Stop mechanism</td>
<td>Kill switch / deactivation of the AI component</td>
</tr>
<tr>
<td>Automation Bias prevention</td>
<td>Warning notice in UI: &quot;AI-generated result — human review required&quot;</td>
</tr>
<tr>
<td>Output transparency</td>
<td>Display confidence scores, explainability where technically feasible</td>
</tr>
<tr>
<td>Training</td>
<td>Deployer training as part of the product documentation</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[High-Risk AI – Requirements Art. 8–15]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# High-Risk AI – Requirements Art. 8–15

## Overview

High-risk AI systems are subject to the full set of obligations under the AI Act. Art. 8 stipulates that these systems must fulfil the requirements of Art. 9–15, taking into account their intended purpose and the generally acknowledged state of the art.

::: danger BAUER GROUP Position
High-risk AI systems shall only be placed on the EU market if the [Go/No-Go assessment](/en/overview/go-no-go) yields a positive outcome. The following pages document the complete requirements in the event of a Go decision.
:::

## Catalogue of Requirements

| Article | Requirement | Effort |
|]]></description>
            <content:encoded><![CDATA[<h1 id="high-risk-ai-–-requirements-art-8–15" tabindex="-1">High-Risk AI – Requirements Art. 8–15 <a class="header-anchor" href="#high-risk-ai-–-requirements-art-8–15" aria-label="Permalink to &quot;High-Risk AI – Requirements Art. 8–15&quot;"></a></h1>
<h2 id="overview" tabindex="-1">Overview <a class="header-anchor" href="#overview" aria-label="Permalink to &quot;Overview&quot;"></a></h2>
<p>High-risk AI systems are subject to the full set of obligations under the AI Act. Art. 8 stipulates that these systems must fulfil the requirements of Art. 9–15, taking into account their intended purpose and the generally acknowledged state of the art.</p>
<div class="danger custom-block"><p class="custom-block-title">BAUER GROUP Position</p>
<p>High-risk AI systems shall only be placed on the EU market if the <a href="/en/overview/go-no-go">Go/No-Go assessment</a> yields a positive outcome. The following pages document the complete requirements in the event of a Go decision.</p>
</div>
<h2 id="catalogue-of-requirements" tabindex="-1">Catalogue of Requirements <a class="header-anchor" href="#catalogue-of-requirements" aria-label="Permalink to &quot;Catalogue of Requirements&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Article</th>
<th>Requirement</th>
<th>Effort</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Art. 9</strong></td>
<td>Risk management system</td>
<td>Medium – iterative process over the lifecycle</td>
</tr>
<tr>
<td><strong>Art. 10</strong></td>
<td>Data and Data Governance</td>
<td>High – training data documentation</td>
</tr>
<tr>
<td><strong>Art. 11</strong></td>
<td>Technical documentation</td>
<td>High – Annex IV full format</td>
</tr>
<tr>
<td><strong>Art. 12</strong></td>
<td>Record-keeping (logging)</td>
<td>Low – automated logs</td>
</tr>
<tr>
<td><strong>Art. 13</strong></td>
<td>Transparency and information for deployers</td>
<td>Medium – instructions for use</td>
</tr>
<tr>
<td><strong>Art. 14</strong></td>
<td>Human oversight</td>
<td>Medium – oversight mechanisms</td>
</tr>
<tr>
<td><strong>Art. 15</strong></td>
<td>Accuracy, robustness, cybersecurity</td>
<td>Medium – testing + CRA synergies</td>
</tr>
</tbody>
</table>
<h2 id="integration-with-cra-compliance" tabindex="-1">Integration with CRA Compliance <a class="header-anchor" href="#integration-with-cra-compliance" aria-label="Permalink to &quot;Integration with CRA Compliance&quot;"></a></h2>
<p>Art. 8(2) explicitly permits the <strong>integration into existing compliance processes</strong>:</p>
<blockquote>
<p>&quot;in order to ensure coherence, avoid duplication and minimise additional burden, providers may integrate the necessary testing, reporting and documentation into already existing procedures&quot;</p>
</blockquote>
<p>The BAUER GROUP leverages this possibility to incorporate AI Act documentation as far as possible into the existing <strong>CRA QMS</strong> and <strong>CRA technical documentation</strong>.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Record-Keeping – Art. 12]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/logging</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/logging</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Record-Keeping – Art. 12

## Requirement

High-risk AI systems must be technically designed in such a way that **events are automatically recorded** (logging).

## Minimum Requirements

The automatic logging must cover:

- **Periods of use** (start/end of each use)
- **Reference database** against which input data are checked
- **Input data** that led to a search
- **Identification** of the natural persons involved in human oversight

## Retention Periods

- Provider: retain logs **in so far as under their control**
- Deployer: retain logs for **at least 6 months** (Art. 26(6))

## BAUER GROUP Implementation

| Measure | Implementation |
|]]></description>
            <content:encoded><![CDATA[<h1 id="record-keeping-–-art-12" tabindex="-1">Record-Keeping – Art. 12 <a class="header-anchor" href="#record-keeping-–-art-12" aria-label="Permalink to &quot;Record-Keeping – Art. 12&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>High-risk AI systems must be technically designed in such a way that <strong>events are automatically recorded</strong> (logging).</p>
<h2 id="minimum-requirements" tabindex="-1">Minimum Requirements <a class="header-anchor" href="#minimum-requirements" aria-label="Permalink to &quot;Minimum Requirements&quot;"></a></h2>
<p>The automatic logging must cover:</p>
<ul>
<li><strong>Periods of use</strong> (start/end of each use)</li>
<li><strong>Reference database</strong> against which input data are checked</li>
<li><strong>Input data</strong> that led to a search</li>
<li><strong>Identification</strong> of the natural persons involved in human oversight</li>
</ul>
<h2 id="retention-periods" tabindex="-1">Retention Periods <a class="header-anchor" href="#retention-periods" aria-label="Permalink to &quot;Retention Periods&quot;"></a></h2>
<ul>
<li>Provider: retain logs <strong>in so far as under their control</strong></li>
<li>Deployer: retain logs for <strong>at least 6 months</strong> (Art. 26(6))</li>
</ul>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Measure</th>
<th>Implementation</th>
</tr>
</thead>
<tbody>
<tr>
<td>Automatic logs</td>
<td>Structured logging (JSON) within the existing logging infrastructure</td>
</tr>
<tr>
<td>Retention</td>
<td>Retention policy ≥ 6 months (already covered by CRA requirements)</td>
</tr>
<tr>
<td>Access</td>
<td>Logs available to authorities upon request</td>
</tr>
</tbody>
</table>
<div class="tip custom-block"><p class="custom-block-title">Minimal Effort</p>
<p>Where the system already has structured logging in place (which is standard for BAUER GROUP products), the additional effort is limited to ensuring that the AI Act-specific fields are included.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Provider Obligations – Art. 16–21]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/provider-obligations</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/provider-obligations</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Provider Obligations – Art. 16–21

## Complete Catalogue of Obligations

Art. 16 summarises all obligations that a provider of high-risk AI systems must fulfil:

| Obligation | Article | Description |
|]]></description>
            <content:encoded><![CDATA[<h1 id="provider-obligations-–-art-16–21" tabindex="-1">Provider Obligations – Art. 16–21 <a class="header-anchor" href="#provider-obligations-–-art-16–21" aria-label="Permalink to &quot;Provider Obligations – Art. 16–21&quot;"></a></h1>
<h2 id="complete-catalogue-of-obligations" tabindex="-1">Complete Catalogue of Obligations <a class="header-anchor" href="#complete-catalogue-of-obligations" aria-label="Permalink to &quot;Complete Catalogue of Obligations&quot;"></a></h2>
<p>Art. 16 summarises all obligations that a provider of high-risk AI systems must fulfil:</p>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Article</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td>Ensure conformity</td>
<td>Art. 16(a)</td>
<td>System complies with Art. 8–15</td>
</tr>
<tr>
<td>Labelling</td>
<td>Art. 16(b)</td>
<td>Name, brand, contact address on system or packaging</td>
</tr>
<tr>
<td>QMS</td>
<td>Art. 16(c) + Art. 17</td>
<td>Implement a quality management system</td>
</tr>
<tr>
<td>Retain documentation</td>
<td>Art. 16(d) + Art. 18</td>
<td>Retain technical documentation for 10 years</td>
</tr>
<tr>
<td>Retain logs</td>
<td>Art. 16(e) + Art. 19</td>
<td>Retain automatically generated logs</td>
</tr>
<tr>
<td>Conformity assessment</td>
<td>Art. 16(f) + Art. 43</td>
<td>Carry out before placing on the market</td>
</tr>
<tr>
<td>EU declaration of conformity</td>
<td>Art. 16(g) + Art. 47</td>
<td>Draw up and keep available</td>
</tr>
<tr>
<td>CE marking</td>
<td>Art. 16(h) + Art. 48</td>
<td>Affix (on system, packaging or accompanying documentation)</td>
</tr>
<tr>
<td>Registration</td>
<td>Art. 16(i) + Art. 49</td>
<td>Register in the EU database</td>
</tr>
<tr>
<td>Corrective measures</td>
<td>Art. 16(j) + Art. 20</td>
<td>In case of non-conformity: correction, recall, deactivation</td>
</tr>
<tr>
<td>Cooperation with authorities</td>
<td>Art. 21</td>
<td>Demonstrate conformity upon request</td>
</tr>
</tbody>
</table>
<h2 id="retention-periods" tabindex="-1">Retention Periods <a class="header-anchor" href="#retention-periods" aria-label="Permalink to &quot;Retention Periods&quot;"></a></h2>
<ul>
<li><strong>Technical documentation:</strong> 10 years after placing on the market (Art. 18)</li>
<li><strong>Automatic logs:</strong> To the extent under the provider's control (Art. 19)</li>
<li><strong>EU declaration of conformity:</strong> 10 years (Art. 47)</li>
</ul>
<h2 id="post-market-monitoring" tabindex="-1">Post-Market Monitoring <a class="header-anchor" href="#post-market-monitoring" aria-label="Permalink to &quot;Post-Market Monitoring&quot;"></a></h2>
<p>Providers must establish a <strong>post-market monitoring system</strong> (Art. 72), proportionate to the risk level. For high-risk AI, this system must <strong>actively and systematically</strong> collect and analyse relevant data on the system's performance.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Quality Management System – Art. 17]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/qms</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/qms</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Quality Management System – Art. 17

## Requirement

Providers of high-risk AI systems must implement and maintain a **documented QMS**.

## QMS Components (Art. 17(1))

The QMS must cover:

1. **Strategy** for compliance with regulatory requirements
2. **Conformity assessment procedures** (design, testing, validation)
3. **Technical specifications** and standards
4. **Data management** (collection, analysis, labelling, storage, filtering, aggregation, retention)
5. **Risk management** (Art. 9)
6. **Post-market monitoring** (Art. 72)
7. **Incident/vulnerability reporting** (Art. 73)
8. **Communication with authorities, deployers and other stakeholders**
9. **Change management** — procedures and measures for system changes
10. **Training and support programmes** for personnel

## BAUER GROUP Implementation

The AI Act QMS is implemented **as an extension of the existing CRA QMS**, not as a separate system.

| CRA QMS Element | AI Act Supplement |
|]]></description>
            <content:encoded><![CDATA[<h1 id="quality-management-system-–-art-17" tabindex="-1">Quality Management System – Art. 17 <a class="header-anchor" href="#quality-management-system-–-art-17" aria-label="Permalink to &quot;Quality Management System – Art. 17&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Providers of high-risk AI systems must implement and maintain a <strong>documented QMS</strong>.</p>
<h2 id="qms-components-art-17-1" tabindex="-1">QMS Components (Art. 17(1)) <a class="header-anchor" href="#qms-components-art-17-1" aria-label="Permalink to &quot;QMS Components (Art. 17(1))&quot;"></a></h2>
<p>The QMS must cover:</p>
<ol>
<li><strong>Strategy</strong> for compliance with regulatory requirements</li>
<li><strong>Conformity assessment procedures</strong> (design, testing, validation)</li>
<li><strong>Technical specifications</strong> and standards</li>
<li><strong>Data management</strong> (collection, analysis, labelling, storage, filtering, aggregation, retention)</li>
<li><strong>Risk management</strong> (Art. 9)</li>
<li><strong>Post-market monitoring</strong> (Art. 72)</li>
<li><strong>Incident/vulnerability reporting</strong> (Art. 73)</li>
<li><strong>Communication with authorities, deployers and other stakeholders</strong></li>
<li><strong>Change management</strong> — procedures and measures for system changes</li>
<li><strong>Training and support programmes</strong> for personnel</li>
</ol>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<p>The AI Act QMS is implemented <strong>as an extension of the existing CRA QMS</strong>, not as a separate system.</p>
<table tabindex="0">
<thead>
<tr>
<th>CRA QMS Element</th>
<th>AI Act Supplement</th>
</tr>
</thead>
<tbody>
<tr>
<td>Conformity assessment</td>
<td>+ AI-specific assessment criteria</td>
</tr>
<tr>
<td>Technical documentation</td>
<td>+ Annex IV content</td>
</tr>
<tr>
<td>Vulnerability management</td>
<td>+ AI-specific vulnerabilities (bias, adversarial)</td>
</tr>
<tr>
<td>Incident response</td>
<td>+ AI incident reporting to market surveillance</td>
</tr>
<tr>
<td>Change management</td>
<td>+ Model versioning, retraining protocols</td>
</tr>
<tr>
<td>Training</td>
<td>+ AI literacy (Art. 4)</td>
</tr>
</tbody>
</table>
<div class="tip custom-block"><p class="custom-block-title">Core Principle</p>
<p><strong>One QMS, two regulations.</strong> No separate paper tiger for the AI Act. The CRA QMS structure is extended with the AI-specific elements.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Risk Management – Art. 9]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/risk-management</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/risk-management</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Risk Management – Art. 9

## Requirement

Providers of high-risk AI systems must implement a **risk management system** as a continuous iterative process throughout the entire lifecycle.

## Mandatory Components

The risk management system must:

1. **Identify and analyse known and foreseeable risks** — during intended use and during reasonably foreseeable misuse
2. **Assess risks** that may arise during intended use and during reasonably foreseeable misuse
3. **Develop and implement appropriate risk mitigation measures**
4. **Assess and document residual risks** — taking into account the risk mitigation measures
5. **Test** — before placing on the market and throughout the lifecycle, to ensure the system functions as intended

## Testing Requirements

- Tests against **pre-defined metrics and thresholds**
- Consideration of the **intended purpose**
- Testing for **bias** with regard to affected groups of persons
- Regardless of data format: structured, unstructured, mixed

## BAUER GROUP Implementation (Minimal Approach)

| Measure | Implementation |
|]]></description>
            <content:encoded><![CDATA[<h1 id="risk-management-–-art-9" tabindex="-1">Risk Management – Art. 9 <a class="header-anchor" href="#risk-management-–-art-9" aria-label="Permalink to &quot;Risk Management – Art. 9&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Providers of high-risk AI systems must implement a <strong>risk management system</strong> as a continuous iterative process throughout the entire lifecycle.</p>
<h2 id="mandatory-components" tabindex="-1">Mandatory Components <a class="header-anchor" href="#mandatory-components" aria-label="Permalink to &quot;Mandatory Components&quot;"></a></h2>
<p>The risk management system must:</p>
<ol>
<li><strong>Identify and analyse known and foreseeable risks</strong> — during intended use and during reasonably foreseeable misuse</li>
<li><strong>Assess risks</strong> that may arise during intended use and during reasonably foreseeable misuse</li>
<li><strong>Develop and implement appropriate risk mitigation measures</strong></li>
<li><strong>Assess and document residual risks</strong> — taking into account the risk mitigation measures</li>
<li><strong>Test</strong> — before placing on the market and throughout the lifecycle, to ensure the system functions as intended</li>
</ol>
<h2 id="testing-requirements" tabindex="-1">Testing Requirements <a class="header-anchor" href="#testing-requirements" aria-label="Permalink to &quot;Testing Requirements&quot;"></a></h2>
<ul>
<li>Tests against <strong>pre-defined metrics and thresholds</strong></li>
<li>Consideration of the <strong>intended purpose</strong></li>
<li>Testing for <strong>bias</strong> with regard to affected groups of persons</li>
<li>Regardless of data format: structured, unstructured, mixed</li>
</ul>
<h2 id="bauer-group-implementation-minimal-approach" tabindex="-1">BAUER GROUP Implementation (Minimal Approach) <a class="header-anchor" href="#bauer-group-implementation-minimal-approach" aria-label="Permalink to &quot;BAUER GROUP Implementation (Minimal Approach)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Measure</th>
<th>Implementation</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk identification</td>
<td>Extension of the existing CRA risk assessment form with AI-specific risk categories</td>
</tr>
<tr>
<td>Risk assessment</td>
<td>Simple risk matrix (likelihood × impact)</td>
</tr>
<tr>
<td>Risk mitigation</td>
<td>Documentation of chosen measures in the CRA risk assessment form</td>
</tr>
<tr>
<td>Testing</td>
<td>Integration into the existing CI/CD pipeline (ML model metrics as quality gate)</td>
</tr>
<tr>
<td>Documentation</td>
<td>Template-based, product-specific</td>
</tr>
</tbody>
</table>
<div class="tip custom-block"><p class="custom-block-title">Synergies with CRA</p>
<p>CRA vulnerability management already covers cybersecurity risks. AI Act risk management supplements this with AI-specific risks (bias, hallucination, explainability, robustness).</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Technical Documentation – Art. 11]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/technical-documentation</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/technical-documentation</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Requirement
The technical documentation must be drawn up before placing on the market and kept up to]]></description>
            <content:encoded><![CDATA[<h1 id="technical-documentation-–-art-11" tabindex="-1">Technical Documentation – Art. 11 <a class="header-anchor" href="#technical-documentation-–-art-11" aria-label="Permalink to &quot;Technical Documentation – Art. 11&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>The technical documentation must be drawn up <strong>before placing on the market</strong> and <strong>kept up to date</strong>. It serves to demonstrate conformity to authorities.</p>
<h2 id="content-according-to-annex-iv" tabindex="-1">Content According to Annex IV <a class="header-anchor" href="#content-according-to-annex-iv" aria-label="Permalink to &quot;Content According to Annex IV&quot;"></a></h2>
<p>The technical documentation must include at least:</p>
<h3 id="general-description" tabindex="-1">General Description <a class="header-anchor" href="#general-description" aria-label="Permalink to &quot;General Description&quot;"></a></h3>
<ul>
<li>Intended purpose of the AI system</li>
<li>Name and contact details of the provider</li>
<li>Interaction with hardware or other software</li>
<li>Versions of relevant software and firmware</li>
<li>Description of interfaces (API, UI)</li>
</ul>
<h3 id="design-and-development" tabindex="-1">Design and Development <a class="header-anchor" href="#design-and-development" aria-label="Permalink to &quot;Design and Development&quot;"></a></h3>
<ul>
<li>Design specifications (architecture, algorithms, model structure)</li>
<li>Design decisions and assumptions (including risk assessment)</li>
<li>Description of the training, validation and testing process</li>
<li>Training data documentation (origin, scope, characteristics)</li>
<li>Metrics and thresholds used</li>
</ul>
<h3 id="monitoring-and-testing" tabindex="-1">Monitoring and Testing <a class="header-anchor" href="#monitoring-and-testing" aria-label="Permalink to &quot;Monitoring and Testing&quot;"></a></h3>
<ul>
<li>Test plans and results</li>
<li>Validation methodology</li>
<li>Cybersecurity measures (→ CRA synergies)</li>
<li>Explainability/interpretability measures</li>
</ul>
<h3 id="change-management" tabindex="-1">Change Management <a class="header-anchor" href="#change-management" aria-label="Permalink to &quot;Change Management&quot;"></a></h3>
<ul>
<li>Documentation of all material changes after placing on the market</li>
<li>Versioning and change history</li>
</ul>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<p>The technical documentation is drawn up <strong>as an extension of the existing CRA technical documentation</strong>. Shared sections (product description, security architecture, update mechanism) are referenced, not duplicated.</p>
<p>Template: Provided on a product-specific basis.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Transparency for Deployers – Art. 13]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/high-risk-ai/transparency</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/high-risk-ai/transparency</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Requirement
High-risk AI systems must be designed in such a way that their operation is sufficiently]]></description>
            <content:encoded><![CDATA[<h1 id="transparency-for-deployers-–-art-13" tabindex="-1">Transparency for Deployers – Art. 13 <a class="header-anchor" href="#transparency-for-deployers-–-art-13" aria-label="Permalink to &quot;Transparency for Deployers – Art. 13&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>High-risk AI systems must be designed in such a way that their operation is <strong>sufficiently transparent</strong> for deployers. Providers must supply instructions for use.</p>
<h2 id="instructions-for-use-must-include" tabindex="-1">Instructions for Use Must Include <a class="header-anchor" href="#instructions-for-use-must-include" aria-label="Permalink to &quot;Instructions for Use Must Include&quot;"></a></h2>
<ul>
<li>Name and contact details of the provider</li>
<li>Performance characteristics, capabilities and <strong>limitations</strong> of the system</li>
<li>Intended purpose</li>
<li>Measures for <strong>human oversight</strong> and their implementation</li>
<li>Expected <strong>lifetime</strong> and maintenance measures</li>
<li>Technical specifications of the <strong>input data</strong></li>
<li><strong>Explainability</strong> of the output where relevant</li>
<li>Any <strong>known risks</strong> to health, safety, fundamental rights</li>
<li>Information on <strong>accuracy</strong> (Art. 15) including metrics</li>
</ul>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<p>Instructions for use are drawn up as a <strong>section of the existing product documentation</strong>. For B2B customers as a technical data sheet, supplemented with AI Act-specific sections (limitations, known risks, oversight recommendations).</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[BAUER GROUP Positioning]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/bauer-group</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/bauer-group</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# BAUER GROUP Positioning

## Starting Position

BAUER GROUP (BGI) is an IT and engineering service provider focusing on software development, infrastructure, embedded systems and AI-supported workflows for B2B customers. We are:

- **Primarily a Deployer** — we use third-party AI systems (LLMs, ML services) as tools within our processes
- **Occasionally a Provider** — when we integrate AI components into customer products and distribute them under our own name
- **Currently not a GPAI model provider** — however, in-house model development in the future is not ruled out

## Strategic Principles

### 1. Avoidance Before Compliance

The most efficient path to AI Act conformity is to **place no regulated AI systems on the EU market** where the effort is disproportionate. Specifically:

- Products with AI components falling under **Annex III (high-risk)** are assessed individually
- Where compliance effort exceeds the expected 3-year contribution margin, the product is **not offered on the EU internal market**
- Alternative: distribution in third-country markets outside the scope of the AI Act

### 2. Minimal Overhead for Compliance

Where we offer AI products on the EU market:

- Maximum use of **self-assessment** (Annex VI) rather than third-party assessment (Annex VII)
- Integration into existing **CRA compliance processes** (QMS, technical documentation)
- **Template-based documentation** — create once, adapt for each product
- No superfluous governance bureaucracy

### 3. Transparency with Proportionality

- Chatbots and AI-generated content are correctly labelled
- Deepfake generation is not a business area
- AI Literacy training is delivered as part of regular onboarding processes

## Affected Products (as of March 2026)

| Product / Project | AI Component | Expected Risk Level | Go/No-Go |
|]]></description>
            <content:encoded><![CDATA[<h1 id="bauer-group-positioning" tabindex="-1">BAUER GROUP Positioning <a class="header-anchor" href="#bauer-group-positioning" aria-label="Permalink to &quot;BAUER GROUP Positioning&quot;"></a></h1>
<h2 id="starting-position" tabindex="-1">Starting Position <a class="header-anchor" href="#starting-position" aria-label="Permalink to &quot;Starting Position&quot;"></a></h2>
<p>BAUER GROUP (BGI) is an IT and engineering service provider focusing on software development, infrastructure, embedded systems and AI-supported workflows for B2B customers. We are:</p>
<ul>
<li><strong>Primarily a Deployer</strong> — we use third-party AI systems (LLMs, ML services) as tools within our processes</li>
<li><strong>Occasionally a Provider</strong> — when we integrate AI components into customer products and distribute them under our own name</li>
<li><strong>Currently not a GPAI model provider</strong> — however, in-house model development in the future is not ruled out</li>
</ul>
<h2 id="strategic-principles" tabindex="-1">Strategic Principles <a class="header-anchor" href="#strategic-principles" aria-label="Permalink to &quot;Strategic Principles&quot;"></a></h2>
<h3 id="_1-avoidance-before-compliance" tabindex="-1">1. Avoidance Before Compliance <a class="header-anchor" href="#_1-avoidance-before-compliance" aria-label="Permalink to &quot;1. Avoidance Before Compliance&quot;"></a></h3>
<p>The most efficient path to AI Act conformity is to <strong>place no regulated AI systems on the EU market</strong> where the effort is disproportionate. Specifically:</p>
<ul>
<li>Products with AI components falling under <strong>Annex III (high-risk)</strong> are assessed individually</li>
<li>Where compliance effort exceeds the expected 3-year contribution margin, the product is <strong>not offered on the EU internal market</strong></li>
<li>Alternative: distribution in third-country markets outside the scope of the AI Act</li>
</ul>
<h3 id="_2-minimal-overhead-for-compliance" tabindex="-1">2. Minimal Overhead for Compliance <a class="header-anchor" href="#_2-minimal-overhead-for-compliance" aria-label="Permalink to &quot;2. Minimal Overhead for Compliance&quot;"></a></h3>
<p>Where we offer AI products on the EU market:</p>
<ul>
<li>Maximum use of <strong>self-assessment</strong> (Annex VI) rather than third-party assessment (Annex VII)</li>
<li>Integration into existing <strong>CRA compliance processes</strong> (QMS, technical documentation)</li>
<li><strong>Template-based documentation</strong> — create once, adapt for each product</li>
<li>No superfluous governance bureaucracy</li>
</ul>
<h3 id="_3-transparency-with-proportionality" tabindex="-1">3. Transparency with Proportionality <a class="header-anchor" href="#_3-transparency-with-proportionality" aria-label="Permalink to &quot;3. Transparency with Proportionality&quot;"></a></h3>
<ul>
<li>Chatbots and AI-generated content are correctly labelled</li>
<li>Deepfake generation is not a business area</li>
<li>AI Literacy training is delivered as part of regular onboarding processes</li>
</ul>
<h2 id="affected-products-as-of-march-2026" tabindex="-1">Affected Products (as of March 2026) <a class="header-anchor" href="#affected-products-as-of-march-2026" aria-label="Permalink to &quot;Affected Products (as of March 2026)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Product / Project</th>
<th>AI Component</th>
<th>Expected Risk Level</th>
<th>Go/No-Go</th>
</tr>
</thead>
<tbody>
<tr>
<td><em>To be populated per product</em></td>
<td>—</td>
<td>—</td>
<td>—</td>
</tr>
</tbody>
</table>
<div class="info custom-block"><p class="custom-block-title">INFO</p>
<p>The specific product list is an internal document and is maintained in the <a href="/en/templates/ai-inventory">AI System Inventory</a>. This page documents only the strategic positioning.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Economic Operators & Roles]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/economic-operators</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/economic-operators</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Economic Operators & Roles

## Roles Under the AI Act

The AI Act distinguishes various roles in the AI value chain, analogous to the CRA model of economic operators:

### Provider — Art. 3(3)

A natural or legal person that **develops** an AI system or has it developed and places it on the market or puts it into service under its own name or trademark.

**Obligations (summary):**

- Conformity assessment before placing on the market
- Technical documentation + QMS
- CE marking + EU declaration of conformity
- Registration in EU database
- Post-market monitoring
- Corrective actions and reporting obligations

### Deployer — Art. 3(4)

A natural or legal person that uses an AI system **in a professional capacity** (not the end consumer).

**Obligations (summary):**

- Use in accordance with the intended purpose as per provider instructions
- Ensure human oversight
- Ensure input data quality
- Retain logs (minimum 6 months)
- Report risks and incidents to the provider
- Inform workers about AI use (for high-risk)

### Importer — Art. 23

Places AI systems from third-country providers on the EU market. Must ensure that the provider has carried out the conformity assessment.

### Distributor — Art. 24

Makes AI systems available on the EU market without being a provider or importer. Due diligence obligations regarding conformity.

## BAUER GROUP Role Allocation

| Scenario | Role | Obligation Catalogue |
|]]></description>
            <content:encoded><![CDATA[<h1 id="economic-operators-roles" tabindex="-1">Economic Operators &amp; Roles <a class="header-anchor" href="#economic-operators-roles" aria-label="Permalink to &quot;Economic Operators &amp; Roles&quot;"></a></h1>
<h2 id="roles-under-the-ai-act" tabindex="-1">Roles Under the AI Act <a class="header-anchor" href="#roles-under-the-ai-act" aria-label="Permalink to &quot;Roles Under the AI Act&quot;"></a></h2>
<p>The AI Act distinguishes various roles in the AI value chain, analogous to the CRA model of economic operators:</p>
<h3 id="provider-—-art-3-3" tabindex="-1">Provider — Art. 3(3) <a class="header-anchor" href="#provider-—-art-3-3" aria-label="Permalink to &quot;Provider — Art. 3(3)&quot;"></a></h3>
<p>A natural or legal person that <strong>develops</strong> an AI system or has it developed and places it on the market or puts it into service under its own name or trademark.</p>
<p><strong>Obligations (summary):</strong></p>
<ul>
<li>Conformity assessment before placing on the market</li>
<li>Technical documentation + QMS</li>
<li>CE marking + EU declaration of conformity</li>
<li>Registration in EU database</li>
<li>Post-market monitoring</li>
<li>Corrective actions and reporting obligations</li>
</ul>
<h3 id="deployer-—-art-3-4" tabindex="-1">Deployer — Art. 3(4) <a class="header-anchor" href="#deployer-—-art-3-4" aria-label="Permalink to &quot;Deployer — Art. 3(4)&quot;"></a></h3>
<p>A natural or legal person that uses an AI system <strong>in a professional capacity</strong> (not the end consumer).</p>
<p><strong>Obligations (summary):</strong></p>
<ul>
<li>Use in accordance with the intended purpose as per provider instructions</li>
<li>Ensure human oversight</li>
<li>Ensure input data quality</li>
<li>Retain logs (minimum 6 months)</li>
<li>Report risks and incidents to the provider</li>
<li>Inform workers about AI use (for high-risk)</li>
</ul>
<h3 id="importer-—-art-23" tabindex="-1">Importer — Art. 23 <a class="header-anchor" href="#importer-—-art-23" aria-label="Permalink to &quot;Importer — Art. 23&quot;"></a></h3>
<p>Places AI systems from third-country providers on the EU market. Must ensure that the provider has carried out the conformity assessment.</p>
<h3 id="distributor-—-art-24" tabindex="-1">Distributor — Art. 24 <a class="header-anchor" href="#distributor-—-art-24" aria-label="Permalink to &quot;Distributor — Art. 24&quot;"></a></h3>
<p>Makes AI systems available on the EU market without being a provider or importer. Due diligence obligations regarding conformity.</p>
<h2 id="bauer-group-role-allocation" tabindex="-1">BAUER GROUP Role Allocation <a class="header-anchor" href="#bauer-group-role-allocation" aria-label="Permalink to &quot;BAUER GROUP Role Allocation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Scenario</th>
<th>Role</th>
<th>Obligation Catalogue</th>
</tr>
</thead>
<tbody>
<tr>
<td>BAUER GROUP develops own AI system for customers</td>
<td><strong>Provider</strong></td>
<td>Full (Art. 16–21)</td>
</tr>
<tr>
<td>BAUER GROUP integrates third-party AI (e.g. OpenAI, Claude) into own product</td>
<td><strong>Provider</strong> (Art. 25)</td>
<td>Full — whoever distributes AI under their own name assumes provider obligations</td>
</tr>
<tr>
<td>BAUER GROUP uses AI tools internally (e.g. Claude, GitHub Copilot)</td>
<td><strong>Deployer</strong></td>
<td>Reduced (Art. 26)</td>
</tr>
<tr>
<td>BAUER GROUP distributes a partner's AI system</td>
<td><strong>Distributor</strong></td>
<td>Due diligence obligations (Art. 24)</td>
</tr>
</tbody>
</table>
<div class="warning custom-block"><p class="custom-block-title">Important: Art. 25 – Transfer of Responsibility</p>
<p>Whoever places an AI system on the market <strong>under their own name</strong> becomes the provider — even if they did not develop the system themselves. This also applies to <strong>substantial modifications</strong> to an existing system or a change of intended purpose of a high-risk system.</p>
</div>
<h2 id="authorised-representatives-art-22" tabindex="-1">Authorised Representatives (Art. 22) <a class="header-anchor" href="#authorised-representatives-art-22" aria-label="Permalink to &quot;Authorised Representatives (Art. 22)&quot;"></a></h2>
<p>Third-country providers must appoint an <strong>authorised representative in the EU</strong> before placing on the market. For BAUER GROUP (established in Germany) this obligation does not apply to in-house developments.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Go/No-Go Decision Framework]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/go-no-go</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/go-no-go</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Go/No-Go Decision Framework

## Principle

Every AI system of the BAUER GROUP undergoes a **cost-benefit assessment** before EU market launch. The AI Act does not prescribe such an assessment, but as an organisation we autonomously decide which products we distribute and where.

::: danger Core Rule
**Disproportionate regulatory effort = no EU distribution.** We are not obliged to offer every product in the EU. Where the EU makes innovation more expensive through regulation, we distribute the product in markets without these constraints.
:::

## Decision Matrix

```
┌─────────────────────────────────────────────┐
│ Does the product contain an AI component?   │
│                                             │
│   NO  → AI Act not applicable → GO          │
│   YES ↓                                    │
├─────────────────────────────────────────────┤
│ Does the system fall under Art. 5            │
│ (prohibited)?                               │
│                                             │
│   YES → Do not develop product → STOP       │
│   NO  ↓                                    │
├─────────────────────────────────────────────┤
│ Risk classification (Art. 6, Annex III)      │
│                                             │
│   MINIMAL  → GO (no obligations)            │
│   LIMITED  → GO (transparency obligations   │
│              only)                           │
│   HIGH ↓                                   │
├─────────────────────────────────────────────┤
│ Cost-benefit assessment for high-risk        │
│                                             │
│   Compliance effort ≤ 15% of                │
│   3Y contribution margin → GO               │
│                                             │
│   Compliance effort > 15% of                │
│   3Y contribution margin → NO-GO EU         │
│   → Assess third-market distribution        │
└─────────────────────────────────────────────┘
```

## Compliance Effort for High-Risk (estimated)

| Item | One-off | Annual |
|]]></description>
            <content:encoded><![CDATA[<h1 id="go-no-go-decision-framework" tabindex="-1">Go/No-Go Decision Framework <a class="header-anchor" href="#go-no-go-decision-framework" aria-label="Permalink to &quot;Go/No-Go Decision Framework&quot;"></a></h1>
<h2 id="principle" tabindex="-1">Principle <a class="header-anchor" href="#principle" aria-label="Permalink to &quot;Principle&quot;"></a></h2>
<p>Every AI system of the BAUER GROUP undergoes a <strong>cost-benefit assessment</strong> before EU market launch. The AI Act does not prescribe such an assessment, but as an organisation we autonomously decide which products we distribute and where.</p>
<div class="danger custom-block"><p class="custom-block-title">Core Rule</p>
<p><strong>Disproportionate regulatory effort = no EU distribution.</strong> We are not obliged to offer every product in the EU. Where the EU makes innovation more expensive through regulation, we distribute the product in markets without these constraints.</p>
</div>
<h2 id="decision-matrix" tabindex="-1">Decision Matrix <a class="header-anchor" href="#decision-matrix" aria-label="Permalink to &quot;Decision Matrix&quot;"></a></h2>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>┌─────────────────────────────────────────────┐</span></span>
<span class="line"><span>│ Does the product contain an AI component?   │</span></span>
<span class="line"><span>│                                             │</span></span>
<span class="line"><span>│   NO  → AI Act not applicable → GO          │</span></span>
<span class="line"><span>│   YES ↓                                    │</span></span>
<span class="line"><span>├─────────────────────────────────────────────┤</span></span>
<span class="line"><span>│ Does the system fall under Art. 5            │</span></span>
<span class="line"><span>│ (prohibited)?                               │</span></span>
<span class="line"><span>│                                             │</span></span>
<span class="line"><span>│   YES → Do not develop product → STOP       │</span></span>
<span class="line"><span>│   NO  ↓                                    │</span></span>
<span class="line"><span>├─────────────────────────────────────────────┤</span></span>
<span class="line"><span>│ Risk classification (Art. 6, Annex III)      │</span></span>
<span class="line"><span>│                                             │</span></span>
<span class="line"><span>│   MINIMAL  → GO (no obligations)            │</span></span>
<span class="line"><span>│   LIMITED  → GO (transparency obligations   │</span></span>
<span class="line"><span>│              only)                           │</span></span>
<span class="line"><span>│   HIGH ↓                                   │</span></span>
<span class="line"><span>├─────────────────────────────────────────────┤</span></span>
<span class="line"><span>│ Cost-benefit assessment for high-risk        │</span></span>
<span class="line"><span>│                                             │</span></span>
<span class="line"><span>│   Compliance effort ≤ 15% of                │</span></span>
<span class="line"><span>│   3Y contribution margin → GO               │</span></span>
<span class="line"><span>│                                             │</span></span>
<span class="line"><span>│   Compliance effort > 15% of                │</span></span>
<span class="line"><span>│   3Y contribution margin → NO-GO EU         │</span></span>
<span class="line"><span>│   → Assess third-market distribution        │</span></span>
<span class="line"><span>└─────────────────────────────────────────────┘</span></span></code></pre>
</div><h2 id="compliance-effort-for-high-risk-estimated" tabindex="-1">Compliance Effort for High-Risk (estimated) <a class="header-anchor" href="#compliance-effort-for-high-risk-estimated" aria-label="Permalink to &quot;Compliance Effort for High-Risk (estimated)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Item</th>
<th>One-off</th>
<th>Annual</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk management system (Art. 9)</td>
<td>40–80h</td>
<td>20–40h</td>
</tr>
<tr>
<td>Data governance documentation (Art. 10)</td>
<td>60–120h</td>
<td>10–20h</td>
</tr>
<tr>
<td>Technical documentation (Art. 11, Annex IV)</td>
<td>80–160h</td>
<td>20–40h</td>
</tr>
<tr>
<td>QMS setup and evidence (Art. 17)</td>
<td>40–80h</td>
<td>20–40h</td>
</tr>
<tr>
<td>Conformity assessment (Art. 43)</td>
<td>40–80h</td>
<td>10–20h</td>
</tr>
<tr>
<td>EU database registration (Art. 49)</td>
<td>8–16h</td>
<td>4–8h</td>
</tr>
<tr>
<td>Post-market monitoring</td>
<td>—</td>
<td>20–40h</td>
</tr>
<tr>
<td><strong>Total high-risk</strong></td>
<td><strong>268–536h</strong></td>
<td><strong>104–208h</strong></td>
</tr>
</tbody>
</table>
<p>At an internal hourly rate of EUR 120 this equates to <strong>EUR 32,160–64,320 one-off</strong> plus <strong>EUR 12,480–24,960/year</strong> — excluding external consultancy and notified body costs.</p>
<h2 id="threshold-calculation" tabindex="-1">Threshold Calculation <a class="header-anchor" href="#threshold-calculation" aria-label="Permalink to &quot;Threshold Calculation&quot;"></a></h2>
<p>Example: product with AI component, expected 3-year contribution margin EUR 200,000.</p>
<ul>
<li>15% threshold: EUR 30,000</li>
<li>Estimated compliance effort (minimum): ~EUR 57,000 (3 years)</li>
<li><strong>Result: NO-GO EU</strong> — distribution in third-country markets only</li>
</ul>
<h2 id="alternatives-in-case-of-no-go-eu" tabindex="-1">Alternatives in Case of NO-GO EU <a class="header-anchor" href="#alternatives-in-case-of-no-go-eu" aria-label="Permalink to &quot;Alternatives in Case of NO-GO EU&quot;"></a></h2>
<ol>
<li><strong>Remove AI component</strong> — implement a rule-based alternative</li>
<li><strong>Third-market distribution</strong> — APAC, MENA, Latin America</li>
<li><strong>AI component as optional feature</strong> — EU version without AI, full version for third-country markets</li>
<li><strong>Wait for simplification</strong> — await Digital Omnibus / delegated acts</li>
</ol>
<h2 id="documentation-requirement" tabindex="-1">Documentation Requirement <a class="header-anchor" href="#documentation-requirement" aria-label="Permalink to &quot;Documentation Requirement&quot;"></a></h2>
<p>Every Go/No-Go decision is documented and archived in the <a href="/en/templates/go-no-go">Decision Protocol Template</a>.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Scope]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/scope</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/scope</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Scope

## What Is an AI System?

Art. 3(1) AI Act defines an **AI system** as:

> A machine-based system that is designed to operate with varying levels of autonomy and that may exhibit adaptiveness after deployment, and that, for explicit or implicit objectives, infers from the inputs it receives how to generate outputs such as predictions, content, recommendations or decisions that can influence physical or virtual environments.

### Delineation: What Is NOT an AI System?

The following software does **not** fall within the scope of the AI Act:

- Rule-based systems without a learning component (classical if-then logic)
- Simple statistical methods (regression, mean calculation)
- Conventional database systems and search functions
- Standard automation software (RPA without ML component)
- Purely mathematical optimisation algorithms

::: tip BAUER GROUP Practical Rule
The majority of our software products (ERP modules, infrastructure monitoring, SCADA integrations, web applications) are **not AI systems** within the meaning of the AI Act. Only systems with ML/DL components, LLM integration or autonomous decision-making are subject to the Regulation.
:::

## Territorial Scope

The AI Act applies to:

| Actor | Established in EU | Established outside EU |
|]]></description>
            <content:encoded><![CDATA[<h1 id="scope" tabindex="-1">Scope <a class="header-anchor" href="#scope" aria-label="Permalink to &quot;Scope&quot;"></a></h1>
<h2 id="what-is-an-ai-system" tabindex="-1">What Is an AI System? <a class="header-anchor" href="#what-is-an-ai-system" aria-label="Permalink to &quot;What Is an AI System?&quot;"></a></h2>
<p>Art. 3(1) AI Act defines an <strong>AI system</strong> as:</p>
<blockquote>
<p>A machine-based system that is designed to operate with varying levels of autonomy and that may exhibit adaptiveness after deployment, and that, for explicit or implicit objectives, infers from the inputs it receives how to generate outputs such as predictions, content, recommendations or decisions that can influence physical or virtual environments.</p>
</blockquote>
<h3 id="delineation-what-is-not-an-ai-system" tabindex="-1">Delineation: What Is NOT an AI System? <a class="header-anchor" href="#delineation-what-is-not-an-ai-system" aria-label="Permalink to &quot;Delineation: What Is NOT an AI System?&quot;"></a></h3>
<p>The following software does <strong>not</strong> fall within the scope of the AI Act:</p>
<ul>
<li>Rule-based systems without a learning component (classical if-then logic)</li>
<li>Simple statistical methods (regression, mean calculation)</li>
<li>Conventional database systems and search functions</li>
<li>Standard automation software (RPA without ML component)</li>
<li>Purely mathematical optimisation algorithms</li>
</ul>
<div class="tip custom-block"><p class="custom-block-title">BAUER GROUP Practical Rule</p>
<p>The majority of our software products (ERP modules, infrastructure monitoring, SCADA integrations, web applications) are <strong>not AI systems</strong> within the meaning of the AI Act. Only systems with ML/DL components, LLM integration or autonomous decision-making are subject to the Regulation.</p>
</div>
<h2 id="territorial-scope" tabindex="-1">Territorial Scope <a class="header-anchor" href="#territorial-scope" aria-label="Permalink to &quot;Territorial Scope&quot;"></a></h2>
<p>The AI Act applies to:</p>
<table tabindex="0">
<thead>
<tr>
<th>Actor</th>
<th>Established in EU</th>
<th>Established outside EU</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Provider</strong></td>
<td>✅ Always</td>
<td>✅ Where system is placed on the EU market</td>
</tr>
<tr>
<td><strong>Deployer</strong></td>
<td>✅ Always</td>
<td>✅ Where output is used in the EU</td>
</tr>
<tr>
<td><strong>Importer</strong></td>
<td>✅ Always</td>
<td>—</td>
</tr>
<tr>
<td><strong>Distributor</strong></td>
<td>✅ Always</td>
<td>—</td>
</tr>
</tbody>
</table>
<h2 id="exemptions" tabindex="-1">Exemptions <a class="header-anchor" href="#exemptions" aria-label="Permalink to &quot;Exemptions&quot;"></a></h2>
<p>The AI Act does <strong>not</strong> apply to:</p>
<ul>
<li>AI systems exclusively for <strong>military or defence purposes</strong></li>
<li>AI systems for <strong>research and development</strong> (before placing on the market)</li>
<li>Natural persons using AI for <strong>purely personal, non-professional</strong> activities</li>
<li>AI systems from <strong>third countries</strong> whose output is not used in the EU</li>
<li><strong>Open-source AI</strong> under certain conditions (Art. 2(12)) — except for high-risk or prohibited practices</li>
</ul>
<h2 id="bauer-group-product-screening" tabindex="-1">BAUER GROUP Product Screening <a class="header-anchor" href="#bauer-group-product-screening" aria-label="Permalink to &quot;BAUER GROUP Product Screening&quot;"></a></h2>
<p>For each BAUER GROUP product the following must be assessed:</p>
<ol>
<li><strong>Does the product contain an AI component?</strong> → If no: AI Act not applicable, end.</li>
<li><strong>Is the product offered on the EU market?</strong> → If no: AI Act not applicable (except where output is used in the EU).</li>
<li><strong>What risk level?</strong> → See <a href="/en/risk-classification/">Risk Classification</a>.</li>
<li><strong>Go/No-Go?</strong> → See <a href="/en/overview/go-no-go">Decision Framework</a>.</li>
</ol>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Timeline & Deadlines]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/overview/timeline</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/overview/timeline</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Timeline & Deadlines

## Phased Applicability

The AI Act becomes applicable in stages. The following deadlines are operationally relevant for the BAUER GROUP:

| Date | Obligation | Status | BAUER GROUP Relevance |
|]]></description>
            <content:encoded><![CDATA[<h1 id="timeline-deadlines" tabindex="-1">Timeline &amp; Deadlines <a class="header-anchor" href="#timeline-deadlines" aria-label="Permalink to &quot;Timeline &amp; Deadlines&quot;"></a></h1>
<h2 id="phased-applicability" tabindex="-1">Phased Applicability <a class="header-anchor" href="#phased-applicability" aria-label="Permalink to &quot;Phased Applicability&quot;"></a></h2>
<p>The AI Act becomes applicable in stages. The following deadlines are operationally relevant for the BAUER GROUP:</p>
<table tabindex="0">
<thead>
<tr>
<th>Date</th>
<th>Obligation</th>
<th>Status</th>
<th>BAUER GROUP Relevance</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>01.08.2024</strong></td>
<td>Entry into force</td>
<td>✅ Completed</td>
<td>Preparation phase</td>
</tr>
<tr>
<td><strong>02.02.2025</strong></td>
<td>Prohibited AI practices (Art. 5) + AI Literacy (Art. 4)</td>
<td>✅ Applicable</td>
<td>Review of all products against the prohibition catalogue</td>
</tr>
<tr>
<td><strong>02.08.2025</strong></td>
<td>GPAI obligations (Art. 51–56), governance infrastructure, sanctions regime</td>
<td>✅ Applicable</td>
<td>Relevant only as GPAI deployer</td>
</tr>
<tr>
<td><strong>02.08.2026</strong></td>
<td>High-risk AI systems (Art. 6–49), transparency obligations (Art. 50), all remaining obligations</td>
<td>⏳ Deadline</td>
<td><strong>Main deadline</strong> – all high-risk systems must be compliant</td>
</tr>
<tr>
<td><strong>02.08.2027</strong></td>
<td>High-risk AI as safety components in regulated products (Annex I Section A)</td>
<td>⏳ Deadline</td>
<td>Embedded AI in machinery, medical devices etc.</td>
</tr>
</tbody>
</table>
<div class="danger custom-block"><p class="custom-block-title">Digital Omnibus – Possible Postponement</p>
<p>The European Commission proposed a &quot;Digital Omnibus&quot; package in late 2025 that could postpone the high-risk obligations for Annex III systems until <strong>December 2027</strong>. BAUER GROUP plans conservatively with <strong>August 2026</strong> as the binding deadline.</p>
</div>
<h2 id="operative-timeline-bauer-group" tabindex="-1">Operative Timeline BAUER GROUP <a class="header-anchor" href="#operative-timeline-bauer-group" aria-label="Permalink to &quot;Operative Timeline BAUER GROUP&quot;"></a></h2>
<h3 id="already-completed-q1-2025" tabindex="-1">Already Completed (Q1 2025) <a class="header-anchor" href="#already-completed-q1-2025" aria-label="Permalink to &quot;Already Completed (Q1 2025)&quot;"></a></h3>
<ul>
<li>AI Literacy: foundational training for all employees with AI exposure</li>
<li>Review of the product portfolio against the prohibition catalogue (Art. 5)</li>
<li>Creation of AI system inventory (draft)</li>
</ul>
<h3 id="ongoing-2025–2026" tabindex="-1">Ongoing (2025–2026) <a class="header-anchor" href="#ongoing-2025–2026" aria-label="Permalink to &quot;Ongoing (2025–2026)&quot;"></a></h3>
<ul>
<li>Risk classification of all identified AI systems</li>
<li>Go/No-Go assessment for high-risk candidates</li>
<li>Development of transparency notices for limited-risk systems</li>
<li>Documentation of this compliance site</li>
</ul>
<h3 id="deadline-02-08-2026" tabindex="-1">Deadline 02.08.2026 <a class="header-anchor" href="#deadline-02-08-2026" aria-label="Permalink to &quot;Deadline 02.08.2026&quot;"></a></h3>
<ul>
<li>Conformity assessment for all high-risk systems (where a Go decision has been taken)</li>
<li>EU database registration</li>
<li>CE marking</li>
<li>QMS evidence</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Catalogue of Prohibitions – Detailed Analysis]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/prohibited-practices/catalogue</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/prohibited-practices/catalogue</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Review per Ground for Prohibition
 1. Subliminal Manipulation
Prohibition: AI systems that materiall]]></description>
            <content:encoded><![CDATA[<h1 id="catalogue-of-prohibitions-–-detailed-analysis" tabindex="-1">Catalogue of Prohibitions – Detailed Analysis <a class="header-anchor" href="#catalogue-of-prohibitions-–-detailed-analysis" aria-label="Permalink to &quot;Catalogue of Prohibitions – Detailed Analysis&quot;"></a></h1>
<h2 id="review-per-ground-for-prohibition" tabindex="-1">Review per Ground for Prohibition <a class="header-anchor" href="#review-per-ground-for-prohibition" aria-label="Permalink to &quot;Review per Ground for Prohibition&quot;"></a></h2>
<h3 id="_1-subliminal-manipulation" tabindex="-1">1. Subliminal Manipulation <a class="header-anchor" href="#_1-subliminal-manipulation" aria-label="Permalink to &quot;1. Subliminal Manipulation&quot;"></a></h3>
<p><strong>Prohibition:</strong> AI systems that materially influence the behaviour of a person through subliminal techniques (not consciously perceivable) or deliberately manipulative techniques, such that that person or another person suffers harm.</p>
<p><strong>BAUER GROUP Review:</strong> No BAUER GROUP products employ subliminal influence. AI recommendation systems (if any) are transparent and do not pursue manipulative objectives.</p>
<p><strong>Status:</strong> ✅ Not affected</p>
<h3 id="_2-exploitation-of-vulnerabilities" tabindex="-1">2. Exploitation of Vulnerabilities <a class="header-anchor" href="#_2-exploitation-of-vulnerabilities" aria-label="Permalink to &quot;2. Exploitation of Vulnerabilities&quot;"></a></h3>
<p><strong>Prohibition:</strong> AI systems that deliberately exploit vulnerabilities arising from age, disability, or a particular social/economic situation.</p>
<p><strong>BAUER GROUP Review:</strong> B2B focus. No products targeting vulnerable groups.</p>
<p><strong>Status:</strong> ✅ Not affected</p>
<h3 id="_3-social-scoring" tabindex="-1">3. Social Scoring <a class="header-anchor" href="#_3-social-scoring" aria-label="Permalink to &quot;3. Social Scoring&quot;"></a></h3>
<p><strong>Prohibition:</strong> Evaluation or classification of natural persons on the basis of their social behaviour over a period of time, leading to unjustified or disproportionate treatment.</p>
<p><strong>BAUER GROUP Review:</strong> No scoring systems for natural persons.</p>
<p><strong>Status:</strong> ✅ Not affected</p>
<h3 id="_4–8-further-prohibitions" tabindex="-1">4–8. Further Prohibitions <a class="header-anchor" href="#_4–8-further-prohibitions" aria-label="Permalink to &quot;4–8. Further Prohibitions&quot;"></a></h3>
<p><strong>Status of all further grounds for prohibition:</strong> ✅ Not affected — no products in the areas of crime prediction, facial recognition, emotion recognition in the workplace, biometric categorisation, or real-time remote biometric identification.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Prohibited AI Practices – Art. 5]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/prohibited-practices/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/prohibited-practices/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Overview
Since 2 February 2025, certain AI practices have been prohibited in the EU. Infringements a]]></description>
            <content:encoded><![CDATA[<h1 id="prohibited-ai-practices-–-art-5" tabindex="-1">Prohibited AI Practices – Art. 5 <a class="header-anchor" href="#prohibited-ai-practices-–-art-5" aria-label="Permalink to &quot;Prohibited AI Practices – Art. 5&quot;"></a></h1>
<h2 id="overview" tabindex="-1">Overview <a class="header-anchor" href="#overview" aria-label="Permalink to &quot;Overview&quot;"></a></h2>
<p>Since <strong>2 February 2025</strong>, certain AI practices have been prohibited in the EU. Infringements are subject to fines of up to <strong>EUR 35 million or 7 % of total worldwide annual turnover</strong>, whichever is higher.</p>
<h2 id="catalogue-of-prohibitions" tabindex="-1">Catalogue of Prohibitions <a class="header-anchor" href="#catalogue-of-prohibitions" aria-label="Permalink to &quot;Catalogue of Prohibitions&quot;"></a></h2>
<p>Art. 5 prohibits AI systems that:</p>
<ol>
<li><strong>Employ subliminal manipulation</strong> to materially influence the behaviour of persons and cause them harm</li>
<li><strong>Exploit vulnerabilities</strong> — on the basis of age, disability, or social/economic situation</li>
<li><strong>Carry out social scoring</strong> — evaluation of natural persons on the basis of their social behaviour, leading to unjustified disadvantage</li>
<li><strong>Make crime predictions</strong> solely on the basis of profiling (without concrete grounds for suspicion)</li>
<li><strong>Build facial recognition databases</strong> through untargeted scraping from the internet or CCTV footage</li>
<li><strong>Deploy emotion recognition</strong> in the workplace or in educational institutions (exceptions: medical/safety-related purposes)</li>
<li><strong>Perform biometric categorisation</strong> based on sensitive characteristics (race, political opinion, trade union membership, sexual orientation, religion)</li>
<li><strong>Use real-time remote biometric identification</strong> in publicly accessible spaces for law enforcement purposes (narrow exceptions: missing persons, counter-terrorism, serious criminal offences)</li>
</ol>
<h2 id="bauer-group-relevance" tabindex="-1">BAUER GROUP Relevance <a class="header-anchor" href="#bauer-group-relevance" aria-label="Permalink to &quot;BAUER GROUP Relevance&quot;"></a></h2>
<div class="tip custom-block"><p class="custom-block-title">Assessment Result</p>
<p>None of the current or planned BAUER GROUP products falls within the catalogue of prohibitions under Art. 5. The BAUER GROUP does not develop social scoring systems, emotion recognition software for the workplace, biometric categorisation systems, or real-time surveillance technology.</p>
</div>
<p>This assessment is reviewed <strong>annually</strong> and upon every new product development involving an AI component.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Screening Schema for BAUER GROUP Products]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/prohibited-practices/screening</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/prohibited-practices/screening</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Screening Schema for BAUER GROUP Products

## Procedure

For every new product development or material modification of an existing product with an AI component, the following screening shall be carried out:

### Step 1: Art. 5 Quick Screening

For each of the eight grounds for prohibition: Could the product, under its intended use OR under reasonably foreseeable misuse, fall within this ground for prohibition?

| # | Ground for Prohibition | Yes/No | Justification |
|]]></description>
            <content:encoded><![CDATA[<h1 id="screening-schema-for-bauer-group-products" tabindex="-1">Screening Schema for BAUER GROUP Products <a class="header-anchor" href="#screening-schema-for-bauer-group-products" aria-label="Permalink to &quot;Screening Schema for BAUER GROUP Products&quot;"></a></h1>
<h2 id="procedure" tabindex="-1">Procedure <a class="header-anchor" href="#procedure" aria-label="Permalink to &quot;Procedure&quot;"></a></h2>
<p>For every new product development or material modification of an existing product with an AI component, the following screening shall be carried out:</p>
<h3 id="step-1-art-5-quick-screening" tabindex="-1">Step 1: Art. 5 Quick Screening <a class="header-anchor" href="#step-1-art-5-quick-screening" aria-label="Permalink to &quot;Step 1: Art. 5 Quick Screening&quot;"></a></h3>
<p>For each of the eight grounds for prohibition: Could the product, under its intended use OR under reasonably foreseeable misuse, fall within this ground for prohibition?</p>
<table tabindex="0">
<thead>
<tr>
<th>#</th>
<th>Ground for Prohibition</th>
<th>Yes/No</th>
<th>Justification</th>
</tr>
</thead>
<tbody>
<tr>
<td>1</td>
<td>Subliminal manipulation</td>
<td></td>
<td></td>
</tr>
<tr>
<td>2</td>
<td>Exploitation of vulnerabilities</td>
<td></td>
<td></td>
</tr>
<tr>
<td>3</td>
<td>Social scoring</td>
<td></td>
<td></td>
</tr>
<tr>
<td>4</td>
<td>Crime prediction (profiling only)</td>
<td></td>
<td></td>
</tr>
<tr>
<td>5</td>
<td>Untargeted facial recognition scraping</td>
<td></td>
<td></td>
</tr>
<tr>
<td>6</td>
<td>Emotion recognition (workplace/education)</td>
<td></td>
<td></td>
</tr>
<tr>
<td>7</td>
<td>Biometric categorisation (sensitive data)</td>
<td></td>
<td></td>
</tr>
<tr>
<td>8</td>
<td>Real-time remote biometric identification (public space)</td>
<td></td>
<td></td>
</tr>
</tbody>
</table>
<h3 id="step-2-result" tabindex="-1">Step 2: Result <a class="header-anchor" href="#step-2-result" aria-label="Permalink to &quot;Step 2: Result&quot;"></a></h3>
<ul>
<li><strong>All &quot;No&quot;:</strong> Product not affected by prohibitions → proceed with risk classification</li>
<li><strong>At least one &quot;Yes&quot;:</strong> Halt product development or modify the AI component so that the ground for prohibition no longer applies</li>
</ul>
<h3 id="step-3-documentation" tabindex="-1">Step 3: Documentation <a class="header-anchor" href="#step-3-documentation" aria-label="Permalink to &quot;Step 3: Documentation&quot;"></a></h3>
<p>Archive the screening result with date, responsible person, and product identifier.</p>
<div class="warning custom-block"><p class="custom-block-title">Reasonably Foreseeable Misuse</p>
<p>The screening must also take into account <strong>reasonably foreseeable misuse</strong>. An AI system that is innocuous under its intended use but can easily be repurposed for prohibited purposes requires technical safeguards.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Annex I – EU Harmonisation Legislation]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/risk-classification/annex-i</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/risk-classification/annex-i</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Annex I – EU Harmonisation Legislation

## Overview

Annex I lists the EU harmonisation legislative acts under which AI systems may qualify as **safety components** of the regulated product (Art. 6(1)).

## Section A – Relevant Legislative Acts (Selection)

| Legislative Act | Typical Products | BAUER GROUP Relevance |
|]]></description>
            <content:encoded><![CDATA[<h1 id="annex-i-–-eu-harmonisation-legislation" tabindex="-1">Annex I – EU Harmonisation Legislation <a class="header-anchor" href="#annex-i-–-eu-harmonisation-legislation" aria-label="Permalink to &quot;Annex I – EU Harmonisation Legislation&quot;"></a></h1>
<h2 id="overview" tabindex="-1">Overview <a class="header-anchor" href="#overview" aria-label="Permalink to &quot;Overview&quot;"></a></h2>
<p>Annex I lists the EU harmonisation legislative acts under which AI systems may qualify as <strong>safety components</strong> of the regulated product (Art. 6(1)).</p>
<h2 id="section-a-–-relevant-legislative-acts-selection" tabindex="-1">Section A – Relevant Legislative Acts (Selection) <a class="header-anchor" href="#section-a-–-relevant-legislative-acts-selection" aria-label="Permalink to &quot;Section A – Relevant Legislative Acts (Selection)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Legislative Act</th>
<th>Typical Products</th>
<th>BAUER GROUP Relevance</th>
</tr>
</thead>
<tbody>
<tr>
<td>Machinery Regulation (EU) 2023/1230</td>
<td>Industrial machinery, robots</td>
<td>⚠️ Embedded AI in robotics</td>
</tr>
<tr>
<td>Medical Devices Regulation (EU) 2017/745</td>
<td>Medical devices with AI</td>
<td>❌ Not in portfolio</td>
</tr>
<tr>
<td>Lifts Directive 2014/33/EU</td>
<td>Lifts with AI control</td>
<td>❌ Not in portfolio</td>
</tr>
<tr>
<td>Radio Equipment Directive 2014/53/EU</td>
<td>IoT devices with AI</td>
<td>⚠️ Check IoT products</td>
</tr>
<tr>
<td>Low Voltage Directive 2014/35/EU</td>
<td>Electrical equipment</td>
<td>❌ Not relevant</td>
</tr>
<tr>
<td>Toys Directive 2009/48/EC</td>
<td>AI toys</td>
<td>❌ Not in portfolio</td>
</tr>
<tr>
<td>Cableway Regulation (EU) 2016/424</td>
<td>Cableways</td>
<td>❌ Not relevant</td>
</tr>
</tbody>
</table>
<h2 id="section-b-–-additional-legislative-acts" tabindex="-1">Section B – Additional Legislative Acts <a class="header-anchor" href="#section-b-–-additional-legislative-acts" aria-label="Permalink to &quot;Section B – Additional Legislative Acts&quot;"></a></h2>
<p>Section B covers additional legislative acts (civil aviation, vehicle safety, etc.) for which the high-risk classification takes effect only from <strong>2 August 2027</strong>.</p>
<h2 id="bauer-group-assessment" tabindex="-1">BAUER GROUP Assessment <a class="header-anchor" href="#bauer-group-assessment" aria-label="Permalink to &quot;BAUER GROUP Assessment&quot;"></a></h2>
<p>For the BAUER GROUP, the primarily relevant items from Annex I are:</p>
<ol>
<li><strong>Machinery Regulation</strong> — only if BAUER GROUP markets autonomous robotics systems with AI control under its own name</li>
<li><strong>Radio Equipment Directive</strong> — only if IoT devices (ESP32 etc.) contain a safety-relevant AI decision-making component</li>
</ol>
<div class="tip custom-block"><p class="custom-block-title">Practical Rule</p>
<p>Our IoT/embedded products typically use deterministic firmware. AI components (e.g. edge ML for anomaly detection) are not safety-relevant within the meaning of Annex I. A case-by-case assessment is required for new products.</p>
</div>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Annex III – High-Risk Categories]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/risk-classification/annex-iii</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/risk-classification/annex-iii</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[The Eight High-Risk Areas
Annex III defines eight areas in which AI systems are classified as high-r]]></description>
            <content:encoded><![CDATA[<h1 id="annex-iii-–-high-risk-categories" tabindex="-1">Annex III – High-Risk Categories <a class="header-anchor" href="#annex-iii-–-high-risk-categories" aria-label="Permalink to &quot;Annex III – High-Risk Categories&quot;"></a></h1>
<h2 id="the-eight-high-risk-areas" tabindex="-1">The Eight High-Risk Areas <a class="header-anchor" href="#the-eight-high-risk-areas" aria-label="Permalink to &quot;The Eight High-Risk Areas&quot;"></a></h2>
<p>Annex III defines eight areas in which AI systems are classified as high-risk:</p>
<h3 id="_1-biometrics-where-permitted-under-national-law" tabindex="-1">1. Biometrics (where permitted under national law) <a class="header-anchor" href="#_1-biometrics-where-permitted-under-national-law" aria-label="Permalink to &quot;1. Biometrics (where permitted under national law)&quot;"></a></h3>
<ul>
<li>Remote identification systems</li>
<li>Biometric categorisation based on sensitive attributes</li>
<li>Emotion recognition</li>
</ul>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h3 id="_2-critical-infrastructure" tabindex="-1">2. Critical Infrastructure <a class="header-anchor" href="#_2-critical-infrastructure" aria-label="Permalink to &quot;2. Critical Infrastructure&quot;"></a></h3>
<p>AI as a safety component in the management and operation of critical digital infrastructure, road traffic, water, gas, heating or electricity supply.</p>
<p><strong>BAUER GROUP Relevance:</strong> ⚠️ Review — SCADA/infrastructure monitoring for utilities</p>
<h3 id="_3-education-and-vocational-training" tabindex="-1">3. Education and Vocational Training <a class="header-anchor" href="#_3-education-and-vocational-training" aria-label="Permalink to &quot;3. Education and Vocational Training&quot;"></a></h3>
<p>AI for determining access to educational institutions, assessing learning outcomes, monitoring examinations.</p>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h3 id="_4-employment-workers-management-access-to-self-employment" tabindex="-1">4. Employment, Workers Management, Access to Self-Employment <a class="header-anchor" href="#_4-employment-workers-management-access-to-self-employment" aria-label="Permalink to &quot;4. Employment, Workers Management, Access to Self-Employment&quot;"></a></h3>
<ul>
<li>AI for recruitment and personnel selection (No. 4a)</li>
<li>Decisions on promotion, termination, task allocation</li>
<li>Performance evaluation and behavioural monitoring</li>
</ul>
<p><strong>BAUER GROUP Relevance:</strong> ⚠️ If AI-assisted HR tools are developed or deployed</p>
<h3 id="_5-access-to-essential-private-and-public-services" tabindex="-1">5. Access to Essential Private and Public Services <a class="header-anchor" href="#_5-access-to-essential-private-and-public-services" aria-label="Permalink to &quot;5. Access to Essential Private and Public Services&quot;"></a></h3>
<ul>
<li>Creditworthiness assessment</li>
<li>Risk assessment for life/health insurance</li>
<li>Evaluation of emergency calls and triage systems</li>
</ul>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h3 id="_6-law-enforcement" tabindex="-1">6. Law Enforcement <a class="header-anchor" href="#_6-law-enforcement" aria-label="Permalink to &quot;6. Law Enforcement&quot;"></a></h3>
<p>Polygraph equivalents, evidence assessment, risk assessment, profiling.</p>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h3 id="_7-migration-asylum-border-control" tabindex="-1">7. Migration, Asylum, Border Control <a class="header-anchor" href="#_7-migration-asylum-border-control" aria-label="Permalink to &quot;7. Migration, Asylum, Border Control&quot;"></a></h3>
<p>Risk assessment, asylum processing, document verification.</p>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h3 id="_8-administration-of-justice-and-democratic-processes" tabindex="-1">8. Administration of Justice and Democratic Processes <a class="header-anchor" href="#_8-administration-of-justice-and-democratic-processes" aria-label="Permalink to &quot;8. Administration of Justice and Democratic Processes&quot;"></a></h3>
<p>AI in judicial and electoral processes.</p>
<p><strong>BAUER GROUP Relevance:</strong> ❌ Not a business area</p>
<h2 id="bauer-group-summary" tabindex="-1">BAUER GROUP Summary <a class="header-anchor" href="#bauer-group-summary" aria-label="Permalink to &quot;BAUER GROUP Summary&quot;"></a></h2>
<p>Of the eight Annex III categories, <strong>at most two</strong> are potentially relevant for the BAUER GROUP:</p>
<ol>
<li><strong>No. 2 (Critical Infrastructure)</strong> — only if AI systems are deployed as safety components in the control of critical infrastructure</li>
<li><strong>No. 4 (Employment)</strong> — only if AI-assisted HR systems are developed or marketed under the company's own name</li>
</ol>
<p>All other categories are <strong>not relevant</strong> to the BAUER GROUP business model.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Classification Decision]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/risk-classification/decision</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/risk-classification/decision</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Classification Decision

## Decision Tree

For each identified AI system of the BAUER GROUP:

```
1. Is it an AI system pursuant to Art. 3(1)?
   │
   ├─ NO → AI Act not applicable → END
   │
   └─ YES ↓

2. Does it fall under Art. 5 (prohibited practices)?
   │
   ├─ YES → PROHIBITED → Cease development
   │
   └─ NO ↓

3. Is it a safety component of an Annex I product
   AND does it require a third-party conformity assessment?
   │
   ├─ YES → HIGH-RISK (Art. 6(1)) → Go/No-Go
   │
   └─ NO ↓

4. Does it fall under an Annex III category?
   │
   ├─ NO → Check Art. 50 (transparency obligations)
   │         │
   │         ├─ YES → LIMITED RISK
   │         └─ NO → MINIMAL RISK → END
   │
   └─ YES ↓

5. Does it perform profiling of natural persons?
   │
   ├─ YES → HIGH-RISK (always) → Go/No-Go
   │
   └─ NO ↓

6. Does the exception under Art. 6(3) apply?
   (narrow scope of tasks, no significant
    influence on human decision-making)
   │
   ├─ YES → NON-HIGH-RISK
   │        → Document the assessment (Art. 6(4))
   │        → Registration (Art. 49(2))
   │
   └─ NO → HIGH-RISK → Go/No-Go
```

## Practical Examples – BAUER GROUP

| System | AI Component | Annex III? | Profiling? | Result |
|]]></description>
            <content:encoded><![CDATA[<h1 id="classification-decision" tabindex="-1">Classification Decision <a class="header-anchor" href="#classification-decision" aria-label="Permalink to &quot;Classification Decision&quot;"></a></h1>
<h2 id="decision-tree" tabindex="-1">Decision Tree <a class="header-anchor" href="#decision-tree" aria-label="Permalink to &quot;Decision Tree&quot;"></a></h2>
<p>For each identified AI system of the BAUER GROUP:</p>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>1. Is it an AI system pursuant to Art. 3(1)?</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ NO → AI Act not applicable → END</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ YES ↓</span></span>
<span class="line"><span></span></span>
<span class="line"><span>2. Does it fall under Art. 5 (prohibited practices)?</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ YES → PROHIBITED → Cease development</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ NO ↓</span></span>
<span class="line"><span></span></span>
<span class="line"><span>3. Is it a safety component of an Annex I product</span></span>
<span class="line"><span>   AND does it require a third-party conformity assessment?</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ YES → HIGH-RISK (Art. 6(1)) → Go/No-Go</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ NO ↓</span></span>
<span class="line"><span></span></span>
<span class="line"><span>4. Does it fall under an Annex III category?</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ NO → Check Art. 50 (transparency obligations)</span></span>
<span class="line"><span>   │         │</span></span>
<span class="line"><span>   │         ├─ YES → LIMITED RISK</span></span>
<span class="line"><span>   │         └─ NO → MINIMAL RISK → END</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ YES ↓</span></span>
<span class="line"><span></span></span>
<span class="line"><span>5. Does it perform profiling of natural persons?</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ YES → HIGH-RISK (always) → Go/No-Go</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ NO ↓</span></span>
<span class="line"><span></span></span>
<span class="line"><span>6. Does the exception under Art. 6(3) apply?</span></span>
<span class="line"><span>   (narrow scope of tasks, no significant</span></span>
<span class="line"><span>    influence on human decision-making)</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   ├─ YES → NON-HIGH-RISK</span></span>
<span class="line"><span>   │        → Document the assessment (Art. 6(4))</span></span>
<span class="line"><span>   │        → Registration (Art. 49(2))</span></span>
<span class="line"><span>   │</span></span>
<span class="line"><span>   └─ NO → HIGH-RISK → Go/No-Go</span></span></code></pre>
</div><h2 id="practical-examples-–-bauer-group" tabindex="-1">Practical Examples – BAUER GROUP <a class="header-anchor" href="#practical-examples-–-bauer-group" aria-label="Permalink to &quot;Practical Examples – BAUER GROUP&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>System</th>
<th>AI Component</th>
<th>Annex III?</th>
<th>Profiling?</th>
<th>Result</th>
</tr>
</thead>
<tbody>
<tr>
<td>Handwriting OCR (meter reading)</td>
<td>YOLO + TrOCR</td>
<td>No</td>
<td>No</td>
<td><strong>Minimal</strong> – no obligations</td>
</tr>
<tr>
<td>Chatbot on customer website</td>
<td>LLM integration</td>
<td>No</td>
<td>No</td>
<td><strong>Limited</strong> – labelling required</td>
</tr>
<tr>
<td>AI-assisted personnel pre-screening</td>
<td>ML ranking</td>
<td>Yes (No. 4a)</td>
<td>Yes</td>
<td><strong>High-risk</strong> → Go/No-Go</td>
</tr>
<tr>
<td>Predictive maintenance (IoT)</td>
<td>Anomaly detection</td>
<td>Check (No. 2)</td>
<td>No</td>
<td><strong>Review required</strong></td>
</tr>
<tr>
<td>E-mail spam filter</td>
<td>Classification</td>
<td>No</td>
<td>No</td>
<td><strong>Minimal</strong> – no obligations</td>
</tr>
</tbody>
</table>
<h2 id="documentation" tabindex="-1">Documentation <a class="header-anchor" href="#documentation" aria-label="Permalink to &quot;Documentation&quot;"></a></h2>
<p>Every classification decision is recorded in the <a href="/en/templates/risk-classification">Risk Classification Form</a>.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Risk Classification – Overview]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/risk-classification/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/risk-classification/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Risk Classification – Overview

## Four Risk Tiers of the AI Act

The AI Act follows a risk-based approach. Obligations scale with the level of risk:

| Tier | Description | Obligations | BAUER GROUP Relevance |
|]]></description>
            <content:encoded><![CDATA[<h1 id="risk-classification-–-overview" tabindex="-1">Risk Classification – Overview <a class="header-anchor" href="#risk-classification-–-overview" aria-label="Permalink to &quot;Risk Classification – Overview&quot;"></a></h1>
<h2 id="four-risk-tiers-of-the-ai-act" tabindex="-1">Four Risk Tiers of the AI Act <a class="header-anchor" href="#four-risk-tiers-of-the-ai-act" aria-label="Permalink to &quot;Four Risk Tiers of the AI Act&quot;"></a></h2>
<p>The AI Act follows a risk-based approach. Obligations scale with the level of risk:</p>
<table tabindex="0">
<thead>
<tr>
<th>Tier</th>
<th>Description</th>
<th>Obligations</th>
<th>BAUER GROUP Relevance</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Unacceptable Risk</strong></td>
<td>AI practices that threaten fundamental rights, safety or democratic values</td>
<td><strong>Prohibited</strong> (Art. 5)</td>
<td>Screen all products against the prohibition catalogue</td>
</tr>
<tr>
<td><strong>High Risk</strong></td>
<td>AI systems in critical areas (Annex I/III)</td>
<td>Full compliance package (Art. 8–49)</td>
<td>Go/no-go decision per product</td>
</tr>
<tr>
<td><strong>Limited Risk</strong></td>
<td>AI systems that interact with natural persons</td>
<td>Transparency obligations (Art. 50)</td>
<td>Label chatbots and AI-generated content</td>
</tr>
<tr>
<td><strong>Minimal Risk</strong></td>
<td>All other AI systems</td>
<td>No specific obligations</td>
<td>Spam filters, AI-assisted games, etc.</td>
</tr>
</tbody>
</table>
<h2 id="high-risk-classification-art-6" tabindex="-1">High-Risk Classification (Art. 6) <a class="header-anchor" href="#high-risk-classification-art-6" aria-label="Permalink to &quot;High-Risk Classification (Art. 6)&quot;"></a></h2>
<p>An AI system is <strong>high-risk</strong> if:</p>
<p><strong>Path 1 – Art. 6(1) (Product Safety):</strong>
The system is a safety component of a product falling under EU harmonisation legislation (Annex I Section A) AND requires a third-party conformity assessment.</p>
<p><strong>Path 2 – Art. 6(2) (Annex III):</strong>
The system falls under one of the eight high-risk categories of Annex III.</p>
<h3 id="exception-art-6-3" tabindex="-1">Exception (Art. 6(3)) <a class="header-anchor" href="#exception-art-6-3" aria-label="Permalink to &quot;Exception (Art. 6(3))&quot;"></a></h3>
<p>An Annex III system is <strong>not</strong> high-risk if it:</p>
<ul>
<li>Does not perform <strong>profiling</strong> of natural persons, AND</li>
<li>Has a <strong>narrow procedural</strong> scope of tasks (preparatory, not decision-making), AND</li>
<li>Does not <strong>significantly influence</strong> or replace human decision-making</li>
</ul>
<div class="warning custom-block"><p class="custom-block-title">WARNING</p>
<p>If the AI system performs <strong>profiling</strong> of natural persons, it is <strong>always</strong> high-risk — the exception does not apply.</p>
</div>
<h2 id="classification-obligation" tabindex="-1">Classification Obligation <a class="header-anchor" href="#classification-obligation" aria-label="Permalink to &quot;Classification Obligation&quot;"></a></h2>
<p>Providers that classify an Annex III system as <strong>non-high-risk</strong> must <strong>document this assessment before placing it on the market</strong> (Art. 6(4)) and register it in the EU database (Art. 49(2)).</p>
<p>See: <a href="/en/templates/non-high-risk">Non-High-Risk Assessment Template</a></p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Non-High-Risk Documentation]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/risk-classification/non-high-risk</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/risk-classification/non-high-risk</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Art. 6(4) – Documentation Obligation
A provider that classifies an Annex III system as non-high-risk]]></description>
            <content:encoded><![CDATA[<h1 id="non-high-risk-documentation" tabindex="-1">Non-High-Risk Documentation <a class="header-anchor" href="#non-high-risk-documentation" aria-label="Permalink to &quot;Non-High-Risk Documentation&quot;"></a></h1>
<h2 id="art-6-4-–-documentation-obligation" tabindex="-1">Art. 6(4) – Documentation Obligation <a class="header-anchor" href="#art-6-4-–-documentation-obligation" aria-label="Permalink to &quot;Art. 6(4) – Documentation Obligation&quot;"></a></h2>
<p>A provider that classifies an Annex III system as <strong>non-high-risk</strong> must <strong>document this assessment before placing it on the market</strong> and make it available to the competent authority upon request.</p>
<h2 id="requirements-for-a-non-high-risk-classification" tabindex="-1">Requirements for a Non-High-Risk Classification <a class="header-anchor" href="#requirements-for-a-non-high-risk-classification" aria-label="Permalink to &quot;Requirements for a Non-High-Risk Classification&quot;"></a></h2>
<p>All three conditions must be met <strong>cumulatively</strong> (Art. 6(3)):</p>
<ol>
<li>The AI system does <strong>not perform profiling</strong> of natural persons</li>
<li>The AI system does <strong>not make autonomous decisions</strong> that significantly affect fundamental rights</li>
<li>The AI system has a <strong>narrow, preparatory</strong> scope of tasks (preparation for human decision-making, not a substitute)</li>
</ol>
<div class="danger custom-block"><p class="custom-block-title">Profiling = always high-risk</p>
<p>If an Annex III system performs profiling (automated processing of personal data to evaluate personal aspects such as work performance, economic situation, health, interests, behaviour), the exception <strong>does not apply</strong>.</p>
</div>
<h2 id="documentation-content" tabindex="-1">Documentation Content <a class="header-anchor" href="#documentation-content" aria-label="Permalink to &quot;Documentation Content&quot;"></a></h2>
<p>The non-high-risk assessment must contain at least:</p>
<ul>
<li>Unique identification of the AI system</li>
<li>Assignment to the Annex III category</li>
<li>Description of the intended purpose</li>
<li>Justification as to why none of the three conditions is violated</li>
<li>Date and responsible person</li>
<li>Version control for amendments</li>
</ul>
<p>See: <a href="/en/templates/non-high-risk">Non-High-Risk Assessment Template</a></p>
<h2 id="registration-obligation" tabindex="-1">Registration Obligation <a class="header-anchor" href="#registration-obligation" aria-label="Permalink to &quot;Registration Obligation&quot;"></a></h2>
<p>Even where a system is classified as non-high-risk, there is a <strong>registration obligation</strong> in the EU database (Art. 49(2)).</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: AI System Inventory]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/ai-inventory</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/ai-inventory</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Template: AI System Inventory

## Instructions

This inventory is to be completed for every AI system within the BAUER GROUP. It serves as the basis for risk classification and the Go/No-Go decision.

## Inventory Template

```markdown
## AI System Entry

| Field | Value |
|]]></description>
            <content:encoded><![CDATA[<h1 id="template-ai-system-inventory" tabindex="-1">Template: AI System Inventory <a class="header-anchor" href="#template-ai-system-inventory" aria-label="Permalink to &quot;Template: AI System Inventory&quot;"></a></h1>
<h2 id="instructions" tabindex="-1">Instructions <a class="header-anchor" href="#instructions" aria-label="Permalink to &quot;Instructions&quot;"></a></h2>
<p>This inventory is to be completed for every AI system within the BAUER GROUP. It serves as the basis for risk classification and the Go/No-Go decision.</p>
<h2 id="inventory-template" tabindex="-1">Inventory Template <a class="header-anchor" href="#inventory-template" aria-label="Permalink to &quot;Inventory Template&quot;"></a></h2>
<div class="language-markdown vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang">markdown</span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span style="--shiki-light:#005CC5;--shiki-light-font-weight:bold;--shiki-dark:#79B8FF;--shiki-dark-font-weight:bold">## AI System Entry</span></span>
<span class="line"></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| Field | Value |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">|---|---|</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**System ID**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | AI-BGI-XXXX |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Name**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Product name] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Version**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [</span><span style="--shiki-light:#032F62;--shiki-light-text-decoration:underline;--shiki-dark:#DBEDFF;--shiki-dark-text-decoration:underline">Version</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Description**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Brief description of the AI functionality] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**AI technology**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [ML / DL / LLM / RL / Other] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Third-party AI model**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Yes/No — if yes, which one: e.g. Claude API, GPT-4] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**BAUER GROUP role**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Provider / Deployer / Distributor] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Target market**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [EU / Third market / Both] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Risk level**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Prohibited / High / Limited / Minimal / Not classified] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Art. 5 review**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Passed / Failed / Pending] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Annex III category**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [No. X / None / Review required] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Go/No-Go EU**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Go / No-Go / Open] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Compliance deadline**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [</span><span style="--shiki-light:#032F62;--shiki-light-text-decoration:underline;--shiki-dark:#DBEDFF;--shiki-dark-text-decoration:underline">Date</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Responsible person**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [</span><span style="--shiki-light:#032F62;--shiki-light-text-decoration:underline;--shiki-dark:#DBEDFF;--shiki-dark-text-decoration:underline">Name</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Last review**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [</span><span style="--shiki-light:#032F62;--shiki-light-text-decoration:underline;--shiki-dark:#DBEDFF;--shiki-dark-text-decoration:underline">Date</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Next review**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [</span><span style="--shiki-light:#032F62;--shiki-light-text-decoration:underline;--shiki-dark:#DBEDFF;--shiki-dark-text-decoration:underline">Date</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">] |</span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">| </span><span style="--shiki-light:#24292E;--shiki-light-font-weight:bold;--shiki-dark:#E1E4E8;--shiki-dark-font-weight:bold">**Remarks**</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8"> | [Free text] |</span></span></code></pre>
</div><h2 id="notes" tabindex="-1">Notes <a class="header-anchor" href="#notes" aria-label="Permalink to &quot;Notes&quot;"></a></h2>
<ul>
<li>Each system receives a unique ID (format: <code>AI-BGI-XXXX</code>)</li>
<li>The inventory is updated at least <strong>annually</strong></li>
<li>For new AI products: create an entry <strong>before development begins</strong></li>
<li>This inventory is an <strong>internal document</strong> and is not published</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: EU Declaration of Conformity (Art. 47)]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/declaration-of-conformity</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/declaration-of-conformity</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Template: EU Declaration of Conformity (Art. 47)

::: tip SINGLE SOURCE OF TRUTH
This declaration is generated from the machine-readable file `.compliance/ai-act-statement.json`. Always make changes in the JSON file — the human-readable version is derived from it. See: [Machine-Readable Format](/en/conformity/machine-readable)
:::

]]></description>
            <content:encoded><![CDATA[<h1 id="template-eu-declaration-of-conformity-art-47" tabindex="-1">Template: EU Declaration of Conformity (Art. 47) <a class="header-anchor" href="#template-eu-declaration-of-conformity-art-47" aria-label="Permalink to &quot;Template: EU Declaration of Conformity (Art. 47)&quot;"></a></h1>
<div class="tip custom-block"><p class="custom-block-title">SINGLE SOURCE OF TRUTH</p>
<p>This declaration is generated from the machine-readable file <code>.compliance/ai-act-statement.json</code>. Always make changes in the JSON file — the human-readable version is derived from it. See: <a href="/en/conformity/machine-readable">Machine-Readable Format</a></p>
</div>
<hr>
<h2 id="eu-declaration-of-conformity" tabindex="-1">EU DECLARATION OF CONFORMITY <a class="header-anchor" href="#eu-declaration-of-conformity" aria-label="Permalink to &quot;EU DECLARATION OF CONFORMITY&quot;"></a></h2>
<h3 id="no-declaration-id" tabindex="-1">No. [declaration_id] <a class="header-anchor" href="#no-declaration-id" aria-label="Permalink to &quot;No. [declaration_id]&quot;"></a></h3>
<h3 id="regulation-eu-2024-1689-—-artificial-intelligence-act" tabindex="-1">Regulation (EU) 2024/1689 — Artificial Intelligence Act <a class="header-anchor" href="#regulation-eu-2024-1689-—-artificial-intelligence-act" aria-label="Permalink to &quot;Regulation (EU) 2024/1689 — Artificial Intelligence Act&quot;"></a></h3>
<hr>
<p><strong>1. AI System:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Designation</td>
<td>[ai_system.name]</td>
</tr>
<tr>
<td>Trade name / brand</td>
<td>[ai_system.trade_name or &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>Type</td>
<td>[ai_system.type]</td>
</tr>
<tr>
<td>Version</td>
<td>[ai_system.version]</td>
</tr>
<tr>
<td>Model / variant</td>
<td>[ai_system.model or &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>Batch / serial number</td>
<td>[ai_system.serial_number or &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>System ID</td>
<td>[ai_system.identifier]</td>
</tr>
<tr>
<td>Intended purpose</td>
<td>[ai_system.intended_purpose]</td>
</tr>
</tbody>
</table>
<p><strong>2. Name and address of the provider and, where applicable, their authorised representative:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Company</td>
<td>[provider.name]</td>
</tr>
<tr>
<td>Address</td>
<td>[provider.address]</td>
</tr>
<tr>
<td>E-mail</td>
<td>[provider.contact_email]</td>
</tr>
<tr>
<td>Website</td>
<td>[provider.website]</td>
</tr>
<tr>
<td><strong>Authorised representative</strong> (if applicable)</td>
<td>[provider.authorised_representative || &quot;Not applicable&quot;]</td>
</tr>
</tbody>
</table>
<p><strong>3. This declaration of conformity is issued under the sole responsibility of the provider.</strong></p>
<p><strong>4. Risk classification:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk level</td>
<td>[risk_classification.risk_level]</td>
</tr>
<tr>
<td>Annex III category</td>
<td>[risk_classification.annex_iii_category || &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>Annex I product</td>
<td>[risk_classification.annex_i_product || &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>Rationale</td>
<td>[risk_classification.classification_rationale]</td>
</tr>
</tbody>
</table>
<p><strong>5. The AI system described above is in conformity with the requirements of Regulation (EU) 2024/1689:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Requirement</th>
<th>Article</th>
<th style="text-align:center">Fulfilled</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk management system</td>
<td>Art. 9</td>
<td style="text-align:center">[compliance.art_9_risk_management]</td>
</tr>
<tr>
<td>Data and data governance</td>
<td>Art. 10</td>
<td style="text-align:center">[compliance.art_10_data_governance]</td>
</tr>
<tr>
<td>Technical documentation</td>
<td>Art. 11</td>
<td style="text-align:center">[compliance.art_11_technical_documentation]</td>
</tr>
<tr>
<td>Record-keeping</td>
<td>Art. 12</td>
<td style="text-align:center">[compliance.art_12_record_keeping]</td>
</tr>
<tr>
<td>Transparency and provision of information to deployers</td>
<td>Art. 13</td>
<td style="text-align:center">[compliance.art_13_transparency]</td>
</tr>
<tr>
<td>Human oversight</td>
<td>Art. 14</td>
<td style="text-align:center">[compliance.art_14_human_oversight]</td>
</tr>
<tr>
<td>Accuracy, robustness and cybersecurity</td>
<td>Art. 15</td>
<td style="text-align:center">[compliance.art_15_accuracy_robustness]</td>
</tr>
<tr>
<td>Quality management system</td>
<td>Art. 17</td>
<td style="text-align:center">[compliance.art_17_qms]</td>
</tr>
</tbody>
</table>
<p><strong>6. Reference to applied harmonised standards / technical specifications:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Standard / Specification</th>
<th>Description</th>
</tr>
</thead>
<tbody>
<tr>
<td>[harmonised_standards[].identifier]</td>
<td>[harmonised_standards[].description]</td>
</tr>
</tbody>
</table>
<p><strong>7. Member States in which the AI system has been placed on the market or put into service:</strong></p>
<p>[List of Member States or &quot;EU-wide&quot;]</p>
<p><strong>8. Conformity assessment procedure:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Procedure</td>
<td>[conformity_assessment.procedure]</td>
</tr>
<tr>
<td>Notified body</td>
<td>[conformity_assessment.notified_body or &quot;Not applicable (Annex VI)&quot;]</td>
</tr>
<tr>
<td>Certificate number</td>
<td>[conformity_assessment.certificate_id or &quot;Not applicable&quot;]</td>
</tr>
<tr>
<td>Date of assessment</td>
<td>[conformity_assessment.assessment_date]</td>
</tr>
</tbody>
</table>
<p><strong>9. Transparency and registration:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI interaction disclosed</td>
<td>[transparency.ai_interaction_disclosed]</td>
</tr>
<tr>
<td>Deployer instructions for use</td>
<td>[transparency.deployer_instructions_provided]</td>
</tr>
<tr>
<td>EU database registration</td>
<td>[transparency.eu_database_registered]</td>
</tr>
<tr>
<td>Registration ID</td>
<td>[transparency.eu_database_id || &quot;Pending&quot;]</td>
</tr>
</tbody>
</table>
<p><strong>10. Support period:</strong></p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Support start</td>
<td>[support_period.start_date]</td>
</tr>
<tr>
<td>Support end</td>
<td>[support_period.end_date]</td>
</tr>
<tr>
<td>Post-market monitoring</td>
<td>[support_period.post_market_monitoring]</td>
</tr>
</tbody>
</table>
<hr>
<p><strong>Signed for and on behalf of:</strong></p>
<p>[provider.name]</p>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>Place</td>
<td>[Place]</td>
</tr>
<tr>
<td>Date</td>
<td>[conformity_assessment.declaration_date]</td>
</tr>
<tr>
<td>Name</td>
<td>[First and last name]</td>
</tr>
<tr>
<td>Position</td>
<td>[Position/Title]</td>
</tr>
<tr>
<td>Signature</td>
<td>_________________________</td>
</tr>
</tbody>
</table>
<hr>
<div class="warning custom-block"><p class="custom-block-title">LEGAL BINDING EFFECT</p>
<p>This declaration of conformity is a legally binding document. By signing, the provider confirms the conformity of the AI system with the requirements of the AI Act. Non-compliance may result in penalties under Art. 99 (up to EUR 15 million / 3% of global annual turnover). False or misleading information to authorities is separately sanctioned (up to EUR 7.5 million / 1%).</p>
</div>
<p><em>This declaration shall be retained for 10 years after the AI system is placed on the market (Art. 47(2)).</em></p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Templates]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Templates

Practical templates for AI Act compliance at BAUER GROUP. All templates are designed as starting points and should be adapted to the specific use case.

| Template | Purpose | AI Act Reference |
|]]></description>
            <content:encoded><![CDATA[<h1 id="templates" tabindex="-1">Templates <a class="header-anchor" href="#templates" aria-label="Permalink to &quot;Templates&quot;"></a></h1>
<p>Practical templates for AI Act compliance at BAUER GROUP. All templates are designed as starting points and should be adapted to the specific use case.</p>
<table tabindex="0">
<thead>
<tr>
<th>Template</th>
<th>Purpose</th>
<th>AI Act Reference</th>
</tr>
</thead>
<tbody>
<tr>
<td><a href="/en/templates/ai-inventory">AI System Inventory</a></td>
<td>Recording all AI systems in the organisation</td>
<td>Art. 4, Art. 49</td>
</tr>
<tr>
<td><a href="/en/templates/risk-classification">Risk Classification Form</a></td>
<td>Classification into the four risk levels</td>
<td>Art. 6</td>
</tr>
<tr>
<td><a href="/en/templates/non-high-risk">Non-High-Risk Assessment</a></td>
<td>Documentation of non-high-risk classification</td>
<td>Art. 6(3)/(4)</td>
</tr>
<tr>
<td><a href="/en/templates/declaration-of-conformity">EU Declaration of Conformity</a></td>
<td>Legally binding declaration of conformity</td>
<td>Art. 47, Annex V</td>
</tr>
<tr>
<td><a href="/en/templates/transparency-notice">Transparency Notice</a></td>
<td>User notice for AI interaction</td>
<td>Art. 50</td>
</tr>
<tr>
<td><a href="/en/templates/ai-literacy">AI Literacy Training Record</a></td>
<td>Documentation of training participation</td>
<td>Art. 4</td>
</tr>
<tr>
<td><a href="/en/templates/go-no-go">Go/No-Go Decision Protocol</a></td>
<td>Market entry decision</td>
<td>Internal</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: Non-High-Risk Assessment]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/non-high-risk</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/non-high-risk</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Template: Non-High-Risk Assessment

This form documents the assessment of an Annex III system as **not high-risk** pursuant to Art. 6(3)–(4).

## System Identification

| Field | Value |
|]]></description>
            <content:encoded><![CDATA[<h1 id="template-non-high-risk-assessment" tabindex="-1">Template: Non-High-Risk Assessment <a class="header-anchor" href="#template-non-high-risk-assessment" aria-label="Permalink to &quot;Template: Non-High-Risk Assessment&quot;"></a></h1>
<p>This form documents the assessment of an Annex III system as <strong>not high-risk</strong> pursuant to Art. 6(3)–(4).</p>
<h2 id="system-identification" tabindex="-1">System Identification <a class="header-anchor" href="#system-identification" aria-label="Permalink to &quot;System Identification&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>System ID</td>
<td>AI-BGI-XXXX</td>
</tr>
<tr>
<td>Name</td>
<td></td>
</tr>
<tr>
<td>Annex III category</td>
<td>No. ___</td>
</tr>
<tr>
<td>Date</td>
<td></td>
</tr>
<tr>
<td>Conducted by</td>
<td></td>
</tr>
</tbody>
</table>
<h2 id="review-of-exception-criteria-art-6-3" tabindex="-1">Review of Exception Criteria (Art. 6(3)) <a class="header-anchor" href="#review-of-exception-criteria-art-6-3" aria-label="Permalink to &quot;Review of Exception Criteria (Art. 6(3))&quot;"></a></h2>
<h3 id="criterion-1-no-profiling" tabindex="-1">Criterion 1: No Profiling <a class="header-anchor" href="#criterion-1-no-profiling" aria-label="Permalink to &quot;Criterion 1: No Profiling&quot;"></a></h3>
<p>Does the system carry out profiling of natural persons (automated processing of personal data to evaluate personal aspects)?</p>
<ul>
<li>[ ] <strong>No</strong> — Criterion met</li>
<li>[ ] Yes — Exception does NOT apply → System is HIGH-RISK</li>
</ul>
<p>Justification: ___</p>
<h3 id="criterion-2-no-autonomous-decision-making" tabindex="-1">Criterion 2: No Autonomous Decision-Making <a class="header-anchor" href="#criterion-2-no-autonomous-decision-making" aria-label="Permalink to &quot;Criterion 2: No Autonomous Decision-Making&quot;"></a></h3>
<p>Does the system make autonomous decisions that significantly affect fundamental rights?</p>
<ul>
<li>[ ] <strong>No</strong> — Criterion met</li>
<li>[ ] Yes — Exception does NOT apply → System is HIGH-RISK</li>
</ul>
<p>Justification: ___</p>
<h3 id="criterion-3-narrow-preparatory-scope" tabindex="-1">Criterion 3: Narrow, Preparatory Scope <a class="header-anchor" href="#criterion-3-narrow-preparatory-scope" aria-label="Permalink to &quot;Criterion 3: Narrow, Preparatory Scope&quot;"></a></h3>
<p>Does the system have a narrow, preparatory scope (preparation for a human decision, not a substitute)?</p>
<ul>
<li>[ ] <strong>Yes</strong> — Criterion met</li>
<li>[ ] No — Exception does NOT apply → System is HIGH-RISK</li>
</ul>
<p>Justification: ___</p>
<h2 id="result" tabindex="-1">Result <a class="header-anchor" href="#result" aria-label="Permalink to &quot;Result&quot;"></a></h2>
<ul>
<li>[ ] All three criteria met → <strong>NOT HIGH-RISK</strong> → Registration pursuant to Art. 49(2) required</li>
<li>[ ] At least one criterion not met → <strong>HIGH-RISK</strong> → Go/No-Go assessment</li>
</ul>
<h2 id="signature" tabindex="-1">Signature <a class="header-anchor" href="#signature" aria-label="Permalink to &quot;Signature&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th></th>
<th></th>
</tr>
</thead>
<tbody>
<tr>
<td>Conducted by</td>
<td>Date:</td>
</tr>
<tr>
<td>Approved by</td>
<td>Date:</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: Risk Classification Form]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/risk-classification</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/risk-classification</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Template: Risk Classification Form

## AI System Identification

| Field | Value |
|]]></description>
            <content:encoded><![CDATA[<h1 id="template-risk-classification-form" tabindex="-1">Template: Risk Classification Form <a class="header-anchor" href="#template-risk-classification-form" aria-label="Permalink to &quot;Template: Risk Classification Form&quot;"></a></h1>
<h2 id="ai-system-identification" tabindex="-1">AI System Identification <a class="header-anchor" href="#ai-system-identification" aria-label="Permalink to &quot;AI System Identification&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>System ID</td>
<td>AI-BGI-XXXX</td>
</tr>
<tr>
<td>Name</td>
<td></td>
</tr>
<tr>
<td>Version</td>
<td></td>
</tr>
<tr>
<td>Date of classification</td>
<td></td>
</tr>
<tr>
<td>Conducted by</td>
<td></td>
</tr>
</tbody>
</table>
<h2 id="step-1-ai-system-definition" tabindex="-1">Step 1: AI System Definition <a class="header-anchor" href="#step-1-ai-system-definition" aria-label="Permalink to &quot;Step 1: AI System Definition&quot;"></a></h2>
<p>Is the system an AI system pursuant to Art. 3(1)?</p>
<ul>
<li>[ ] Yes → Continue with Step 2</li>
<li>[ ] No → AI Act not applicable → <strong>END</strong></li>
</ul>
<p>Justification: ___</p>
<h2 id="step-2-prohibited-practices-review-art-5" tabindex="-1">Step 2: Prohibited Practices Review (Art. 5) <a class="header-anchor" href="#step-2-prohibited-practices-review-art-5" aria-label="Permalink to &quot;Step 2: Prohibited Practices Review (Art. 5)&quot;"></a></h2>
<p>Does the system fall under one of the eight prohibited practices?</p>
<ul>
<li>[ ] No → Continue with Step 3</li>
<li>[ ] Yes → <strong>PROHIBITED</strong> — Cease development</li>
</ul>
<h2 id="step-3-high-risk-review-art-6" tabindex="-1">Step 3: High-Risk Review (Art. 6) <a class="header-anchor" href="#step-3-high-risk-review-art-6" aria-label="Permalink to &quot;Step 3: High-Risk Review (Art. 6)&quot;"></a></h2>
<h3 id="_3a-annex-i-product-safety" tabindex="-1">3a: Annex I (Product Safety) <a class="header-anchor" href="#_3a-annex-i-product-safety" aria-label="Permalink to &quot;3a: Annex I (Product Safety)&quot;"></a></h3>
<p>Is the system a safety component of an Annex I product?</p>
<ul>
<li>[ ] No → Continue with 3b</li>
<li>[ ] Yes → <strong>HIGH-RISK</strong> → Continue with Step 4</li>
</ul>
<h3 id="_3b-annex-iii-categories" tabindex="-1">3b: Annex III (Categories) <a class="header-anchor" href="#_3b-annex-iii-categories" aria-label="Permalink to &quot;3b: Annex III (Categories)&quot;"></a></h3>
<p>Does the system fall under an Annex III category?</p>
<ul>
<li>[ ] No → Continue with 3c</li>
<li>[ ] Yes, category no.: ___ → Continue with 3d</li>
</ul>
<h3 id="_3c-transparency-obligations-art-50" tabindex="-1">3c: Transparency Obligations (Art. 50) <a class="header-anchor" href="#_3c-transparency-obligations-art-50" aria-label="Permalink to &quot;3c: Transparency Obligations (Art. 50)&quot;"></a></h3>
<p>Does the system interact directly with natural persons or generate synthetic content?</p>
<ul>
<li>[ ] No → <strong>MINIMAL RISK</strong> → <strong>END</strong></li>
<li>[ ] Yes → <strong>LIMITED RISK</strong> → <strong>END</strong></li>
</ul>
<h3 id="_3d-profiling-review" tabindex="-1">3d: Profiling Review <a class="header-anchor" href="#_3d-profiling-review" aria-label="Permalink to &quot;3d: Profiling Review&quot;"></a></h3>
<p>Does the system carry out profiling of natural persons?</p>
<ul>
<li>[ ] Yes → <strong>HIGH-RISK (always)</strong> → Continue with Step 4</li>
<li>[ ] No → Continue with 3e</li>
</ul>
<h3 id="_3e-exception-under-art-6-3" tabindex="-1">3e: Exception under Art. 6(3) <a class="header-anchor" href="#_3e-exception-under-art-6-3" aria-label="Permalink to &quot;3e: Exception under Art. 6(3)&quot;"></a></h3>
<p>Does the system meet ALL three exception criteria?</p>
<ul>
<li>[ ] Yes → <strong>NOT HIGH-RISK</strong> → Documentation + Registration → <strong>END</strong></li>
<li>[ ] No → <strong>HIGH-RISK</strong> → Continue with Step 4</li>
</ul>
<h2 id="step-4-go-no-go-high-risk-only" tabindex="-1">Step 4: Go/No-Go (high-risk only) <a class="header-anchor" href="#step-4-go-no-go-high-risk-only" aria-label="Permalink to &quot;Step 4: Go/No-Go (high-risk only)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Criterion</th>
<th>Assessment</th>
</tr>
</thead>
<tbody>
<tr>
<td>Estimated 3Y EU contribution margin</td>
<td>EUR ___</td>
</tr>
<tr>
<td>Estimated compliance effort</td>
<td>EUR ___</td>
</tr>
<tr>
<td>Annex VI (self-assessment) or Annex VII (third party)?</td>
<td></td>
</tr>
<tr>
<td>Compliance effort ≤ 15% of 3Y-CM?</td>
<td>[ ] Yes / [ ] No</td>
</tr>
</tbody>
</table>
<p><strong>Decision:</strong> [ ] GO EU / [ ] NO-GO EU / [ ] Deferred</p>
<h2 id="signature" tabindex="-1">Signature <a class="header-anchor" href="#signature" aria-label="Permalink to &quot;Signature&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th></th>
<th></th>
</tr>
</thead>
<tbody>
<tr>
<td>Conducted by</td>
<td></td>
</tr>
<tr>
<td>Date</td>
<td></td>
</tr>
<tr>
<td>Approved by</td>
<td></td>
</tr>
<tr>
<td>Date</td>
<td></td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: Transparency Notice]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/transparency-notice</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/transparency-notice</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Notice for AI-Supported Interactions (Art. 50(1))
The following notice shall be used in all BAUER GR]]></description>
            <content:encoded><![CDATA[<h1 id="template-transparency-notice" tabindex="-1">Template: Transparency Notice <a class="header-anchor" href="#template-transparency-notice" aria-label="Permalink to &quot;Template: Transparency Notice&quot;"></a></h1>
<h2 id="notice-for-ai-supported-interactions-art-50-1" tabindex="-1">Notice for AI-Supported Interactions (Art. 50(1)) <a class="header-anchor" href="#notice-for-ai-supported-interactions-art-50-1" aria-label="Permalink to &quot;Notice for AI-Supported Interactions (Art. 50(1))&quot;"></a></h2>
<p>The following notice shall be used in all BAUER GROUP products that enable direct AI interaction with natural persons:</p>
<h3 id="variant-1-chatbot-conversational-ai" tabindex="-1">Variant 1: Chatbot / Conversational AI <a class="header-anchor" href="#variant-1-chatbot-conversational-ai" aria-label="Permalink to &quot;Variant 1: Chatbot / Conversational AI&quot;"></a></h3>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>🤖 AI Assistant</span></span>
<span class="line"><span>You are communicating with an AI-powered assistant from BAUER GROUP.</span></span>
<span class="line"><span>Responses are generated automatically and may contain errors.</span></span>
<span class="line"><span>For important decisions, please consult a human contact person.</span></span></code></pre>
</div><h3 id="variant-2-compact-for-limited-space" tabindex="-1">Variant 2: Compact (for limited space) <a class="header-anchor" href="#variant-2-compact-for-limited-space" aria-label="Permalink to &quot;Variant 2: Compact (for limited space)&quot;"></a></h3>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>This assistant is powered by Artificial Intelligence.</span></span></code></pre>
</div><h3 id="variant-3-ai-generated-content-art-50-2" tabindex="-1">Variant 3: AI-Generated Content (Art. 50(2)) <a class="header-anchor" href="#variant-3-ai-generated-content-art-50-2" aria-label="Permalink to &quot;Variant 3: AI-Generated Content (Art. 50(2))&quot;"></a></h3>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>This content was created with the assistance of Artificial Intelligence.</span></span></code></pre>
</div><h2 id="technical-implementation" tabindex="-1">Technical Implementation <a class="header-anchor" href="#technical-implementation" aria-label="Permalink to &quot;Technical Implementation&quot;"></a></h2>
<ul>
<li><strong>Chatbots:</strong> Notice in the chat header or as the first message</li>
<li><strong>Web applications:</strong> Info badge or tooltip next to AI-powered features</li>
<li><strong>API documentation:</strong> Notice in the API description</li>
<li><strong>E-mail/Documents:</strong> Footer notice for AI-generated content</li>
</ul>
<h2 id="machine-readable-labelling" tabindex="-1">Machine-Readable Labelling <a class="header-anchor" href="#machine-readable-labelling" aria-label="Permalink to &quot;Machine-Readable Labelling&quot;"></a></h2>
<p>For synthetic content (Art. 50(2)), additionally:</p>
<div class="language-html vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang">html</span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">&#x3C;</span><span style="--shiki-light:#22863A;--shiki-dark:#85E89D">meta</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> name</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"ai-generated"</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> content</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"true"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">></span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">&#x3C;</span><span style="--shiki-light:#22863A;--shiki-dark:#85E89D">meta</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> name</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"ai-provider"</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> content</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"BAUER GROUP"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">></span></span>
<span class="line"><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">&#x3C;</span><span style="--shiki-light:#22863A;--shiki-dark:#85E89D">meta</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> name</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"ai-model"</span><span style="--shiki-light:#6F42C1;--shiki-dark:#B392F0"> content</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">=</span><span style="--shiki-light:#032F62;--shiki-dark:#9ECBFF">"[Model designation]"</span><span style="--shiki-light:#24292E;--shiki-dark:#E1E4E8">></span></span></code></pre>
</div>]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Disclosing AI Interaction]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/transparency/ai-interaction</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/transparency/ai-interaction</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[Requirement
When a BAUER GROUP product enables a direct interaction between an AI system and a natur]]></description>
            <content:encoded><![CDATA[<h1 id="disclosing-ai-interaction" tabindex="-1">Disclosing AI Interaction <a class="header-anchor" href="#disclosing-ai-interaction" aria-label="Permalink to &quot;Disclosing AI Interaction&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>When a BAUER GROUP product enables a <strong>direct interaction</strong> between an AI system and a natural person (e.g. chatbot, voice assistant), the person must be informed.</p>
<h2 id="implementation" tabindex="-1">Implementation <a class="header-anchor" href="#implementation" aria-label="Permalink to &quot;Implementation&quot;"></a></h2>
<h3 id="chatbots-and-conversational-ai" tabindex="-1">Chatbots and Conversational AI <a class="header-anchor" href="#chatbots-and-conversational-ai" aria-label="Permalink to &quot;Chatbots and Conversational AI&quot;"></a></h3>
<p>A clear notice must be placed before or at the start of the interaction:</p>
<div class="language- vp-adaptive-theme"><button title="Copy Code" class="copy"></button><span class="lang"></span><pre class="shiki shiki-themes github-light github-dark vp-code" tabindex="0" v-pre=""><code><span class="line"><span>🤖 You are communicating with an AI assistant.</span></span>
<span class="line"><span>The responses are automatically generated</span></span>
<span class="line"><span>and may contain errors.</span></span></code></pre>
</div><h3 id="api-based-ai-services-b2b" tabindex="-1">API-based AI Services (B2B) <a class="header-anchor" href="#api-based-ai-services-b2b" aria-label="Permalink to &quot;API-based AI Services (B2B)&quot;"></a></h3>
<p>For B2B products that provide AI functionality via APIs, the notice is embedded in the <strong>technical documentation and terms of use</strong>.</p>
<h3 id="exception-obviousness" tabindex="-1">Exception: Obviousness <a class="header-anchor" href="#exception-obviousness" aria-label="Permalink to &quot;Exception: Obviousness&quot;"></a></h3>
<p>If it is obvious from the context that an AI interaction is taking place (e.g. the service is called &quot;BAUER GROUP AI Assistant&quot;), the explicit notice may be omitted. Recommendation: label it nonetheless.</p>
<h2 id="template" tabindex="-1">Template <a class="header-anchor" href="#template" aria-label="Permalink to &quot;Template&quot;"></a></h2>
<p>See: <a href="/en/templates/transparency-notice">Transparency Notice Template</a></p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Deepfakes & Synthetic Content]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/transparency/deepfakes</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/transparency/deepfakes</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Deepfakes & Synthetic Content

## Requirement

Providers of AI systems that generate synthetic audio, image, video or text content must ensure that the outputs are marked as AI-generated in a **machine-readable format** (Art. 50(2)).

Deployers who publish deepfakes must **clearly and visually disclose** this (Art. 50(4)).

## BAUER GROUP Relevance

The BAUER GROUP does not produce or distribute **any deepfakes**. However, the following scenarios must be considered:

| Scenario | Obligation |
|]]></description>
            <content:encoded><![CDATA[<h1 id="deepfakes-synthetic-content" tabindex="-1">Deepfakes &amp; Synthetic Content <a class="header-anchor" href="#deepfakes-synthetic-content" aria-label="Permalink to &quot;Deepfakes &amp; Synthetic Content&quot;"></a></h1>
<h2 id="requirement" tabindex="-1">Requirement <a class="header-anchor" href="#requirement" aria-label="Permalink to &quot;Requirement&quot;"></a></h2>
<p>Providers of AI systems that generate synthetic audio, image, video or text content must ensure that the outputs are marked as AI-generated in a <strong>machine-readable format</strong> (Art. 50(2)).</p>
<p>Deployers who publish deepfakes must <strong>clearly and visually disclose</strong> this (Art. 50(4)).</p>
<h2 id="bauer-group-relevance" tabindex="-1">BAUER GROUP Relevance <a class="header-anchor" href="#bauer-group-relevance" aria-label="Permalink to &quot;BAUER GROUP Relevance&quot;"></a></h2>
<p>The BAUER GROUP does not produce or distribute <strong>any deepfakes</strong>. However, the following scenarios must be considered:</p>
<table tabindex="0">
<thead>
<tr>
<th>Scenario</th>
<th>Obligation</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI-generated marketing texts</td>
<td>Labelling upon publication recommended</td>
</tr>
<tr>
<td>AI-generated images for presentations</td>
<td>Internal: no obligation. Externally published: machine-readable labelling</td>
</tr>
<tr>
<td>AI-generated code</td>
<td>No labelling obligation (not &quot;content&quot; within the meaning of Art. 50)</td>
</tr>
<tr>
<td>AI-assisted translations</td>
<td>Recommendation: note &quot;machine translated&quot;</td>
</tr>
</tbody>
</table>
<h2 id="technical-implementation" tabindex="-1">Technical Implementation <a class="header-anchor" href="#technical-implementation" aria-label="Permalink to &quot;Technical Implementation&quot;"></a></h2>
<p>The following standards are suitable for machine-readable labelling of synthetic content:</p>
<ul>
<li><strong>C2PA standard</strong> (Coalition for Content Provenance and Authenticity) for images/video</li>
<li><strong>IPTC metadata</strong> for images</li>
<li><strong>Custom HTTP headers</strong> or meta tags for web content</li>
</ul>
<p>The specific technical implementation will be defined as needed when BAUER GROUP products generate synthetic content for external publication.</p>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Transparency Obligations – Art. 50]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/transparency/</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/transparency/</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Transparency Obligations – Art. 50

## Overview

Art. 50 obliges providers and deployers of certain AI systems to implement transparency measures. These obligations apply **from 2 August 2026** and concern AI systems with limited risk.

## Obligations

### 1. Disclose AI Interaction (Art. 50(1))

Providers of AI systems that **directly interact** with natural persons (chatbots, voice assistants) must ensure that those persons are informed that they are interacting with an AI.

**Exception:** Where this is obvious from the circumstances.

### 2. Label Synthetic Content (Art. 50(2))

Providers of AI systems that generate synthetic audio, image, video or text content must label the outputs in a **machine-readable format** as AI-generated.

### 3. Deepfake Disclosure (Art. 50(4))

Deployers who publish deepfakes must disclose that the content is AI-generated or AI-manipulated.

### 4. Emotion Recognition / Biometric Categorisation (Art. 50(3))

Deployers must inform affected persons and comply with GDPR obligations.

## BAUER GROUP Implementation

| Obligation | Relevance | Implementation |
|]]></description>
            <content:encoded><![CDATA[<h1 id="transparency-obligations-–-art-50" tabindex="-1">Transparency Obligations – Art. 50 <a class="header-anchor" href="#transparency-obligations-–-art-50" aria-label="Permalink to &quot;Transparency Obligations – Art. 50&quot;"></a></h1>
<h2 id="overview" tabindex="-1">Overview <a class="header-anchor" href="#overview" aria-label="Permalink to &quot;Overview&quot;"></a></h2>
<p>Art. 50 obliges providers and deployers of certain AI systems to implement transparency measures. These obligations apply <strong>from 2 August 2026</strong> and concern AI systems with limited risk.</p>
<h2 id="obligations" tabindex="-1">Obligations <a class="header-anchor" href="#obligations" aria-label="Permalink to &quot;Obligations&quot;"></a></h2>
<h3 id="_1-disclose-ai-interaction-art-50-1" tabindex="-1">1. Disclose AI Interaction (Art. 50(1)) <a class="header-anchor" href="#_1-disclose-ai-interaction-art-50-1" aria-label="Permalink to &quot;1. Disclose AI Interaction (Art. 50(1))&quot;"></a></h3>
<p>Providers of AI systems that <strong>directly interact</strong> with natural persons (chatbots, voice assistants) must ensure that those persons are informed that they are interacting with an AI.</p>
<p><strong>Exception:</strong> Where this is obvious from the circumstances.</p>
<h3 id="_2-label-synthetic-content-art-50-2" tabindex="-1">2. Label Synthetic Content (Art. 50(2)) <a class="header-anchor" href="#_2-label-synthetic-content-art-50-2" aria-label="Permalink to &quot;2. Label Synthetic Content (Art. 50(2))&quot;"></a></h3>
<p>Providers of AI systems that generate synthetic audio, image, video or text content must label the outputs in a <strong>machine-readable format</strong> as AI-generated.</p>
<h3 id="_3-deepfake-disclosure-art-50-4" tabindex="-1">3. Deepfake Disclosure (Art. 50(4)) <a class="header-anchor" href="#_3-deepfake-disclosure-art-50-4" aria-label="Permalink to &quot;3. Deepfake Disclosure (Art. 50(4))&quot;"></a></h3>
<p>Deployers who publish deepfakes must disclose that the content is AI-generated or AI-manipulated.</p>
<h3 id="_4-emotion-recognition-biometric-categorisation-art-50-3" tabindex="-1">4. Emotion Recognition / Biometric Categorisation (Art. 50(3)) <a class="header-anchor" href="#_4-emotion-recognition-biometric-categorisation-art-50-3" aria-label="Permalink to &quot;4. Emotion Recognition / Biometric Categorisation (Art. 50(3))&quot;"></a></h3>
<p>Deployers must inform affected persons and comply with GDPR obligations.</p>
<h2 id="bauer-group-implementation" tabindex="-1">BAUER GROUP Implementation <a class="header-anchor" href="#bauer-group-implementation" aria-label="Permalink to &quot;BAUER GROUP Implementation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Obligation</th>
<th>Relevance</th>
<th>Implementation</th>
</tr>
</thead>
<tbody>
<tr>
<td>Disclose AI interaction</td>
<td>✅ Chatbots on customer websites</td>
<td>Notice: &quot;You are communicating with an AI assistant&quot;</td>
</tr>
<tr>
<td>Synthetic content</td>
<td>⚠️ AI-generated texts/images</td>
<td>Machine-readable labelling upon publication</td>
</tr>
<tr>
<td>Deepfakes</td>
<td>❌ Not a business area</td>
<td>—</td>
</tr>
<tr>
<td>Emotion recognition</td>
<td>❌ Not in use</td>
<td>—</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Labelling Obligations]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/transparency/labelling</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/transparency/labelling</guid>
            <pubDate>Mon, 23 Mar 2026 18:32:07 GMT</pubDate>
            <description><![CDATA[# Labelling Obligations

## Summary of All Labelling Obligations

| What | Who | How | When |
|]]></description>
            <content:encoded><![CDATA[<h1 id="labelling-obligations" tabindex="-1">Labelling Obligations <a class="header-anchor" href="#labelling-obligations" aria-label="Permalink to &quot;Labelling Obligations&quot;"></a></h1>
<h2 id="summary-of-all-labelling-obligations" tabindex="-1">Summary of All Labelling Obligations <a class="header-anchor" href="#summary-of-all-labelling-obligations" aria-label="Permalink to &quot;Summary of All Labelling Obligations&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>What</th>
<th>Who</th>
<th>How</th>
<th>When</th>
</tr>
</thead>
<tbody>
<tr>
<td>AI interaction</td>
<td>Provider + Deployer</td>
<td>Visible notice</td>
<td>Before/at the start of interaction</td>
</tr>
<tr>
<td>Synthetic content</td>
<td>Provider</td>
<td>Machine-readable (C2PA, IPTC etc.)</td>
<td>Upon generation</td>
</tr>
<tr>
<td>Deepfakes</td>
<td>Deployer</td>
<td>Clearly and visually</td>
<td>Upon publication</td>
</tr>
<tr>
<td>Emotion recognition</td>
<td>Deployer</td>
<td>Information to affected persons</td>
<td>Before deployment</td>
</tr>
<tr>
<td>Biometric categorisation</td>
<td>Deployer</td>
<td>Information to affected persons</td>
<td>Before deployment</td>
</tr>
</tbody>
</table>
<h2 id="not-subject-to-labelling-obligations" tabindex="-1">Not Subject to Labelling Obligations <a class="header-anchor" href="#not-subject-to-labelling-obligations" aria-label="Permalink to &quot;Not Subject to Labelling Obligations&quot;"></a></h2>
<ul>
<li>AI systems with <strong>minimal risk</strong> (spam filters, recommendation algorithms, etc.)</li>
<li>Internal AI tools that do not publish content externally</li>
<li>AI-assisted code (not &quot;synthetic content&quot; in the regulatory sense)</li>
</ul>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: AI Literacy Training Record]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/ai-literacy</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/ai-literacy</guid>
            <pubDate>Mon, 23 Mar 2026 17:35:45 GMT</pubDate>
            <description><![CDATA[# Template: AI Literacy Training Record

## Training Attendance Confirmation

| Field | Value |
|]]></description>
            <content:encoded><![CDATA[<h1 id="template-ai-literacy-training-record" tabindex="-1">Template: AI Literacy Training Record <a class="header-anchor" href="#template-ai-literacy-training-record" aria-label="Permalink to &quot;Template: AI Literacy Training Record&quot;"></a></h1>
<h2 id="training-attendance-confirmation" tabindex="-1">Training Attendance Confirmation <a class="header-anchor" href="#training-attendance-confirmation" aria-label="Permalink to &quot;Training Attendance Confirmation&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>Employee</strong></td>
<td>[Name]</td>
</tr>
<tr>
<td><strong>Department</strong></td>
<td>[Department]</td>
</tr>
<tr>
<td><strong>Training type</strong></td>
<td>[ ] Basic (Onboarding) / [ ] Developer / [ ] Product Owner</td>
</tr>
<tr>
<td><strong>Date</strong></td>
<td>[Date]</td>
</tr>
<tr>
<td><strong>Delivered by</strong></td>
<td>[Trainer/Training module]</td>
</tr>
<tr>
<td><strong>Duration</strong></td>
<td>[Hours]</td>
</tr>
</tbody>
</table>
<h2 id="training-content" tabindex="-1">Training Content <a class="header-anchor" href="#training-content" aria-label="Permalink to &quot;Training Content&quot;"></a></h2>
<h3 id="basic-training-all-employees" tabindex="-1">Basic Training (all employees) <a class="header-anchor" href="#basic-training-all-employees" aria-label="Permalink to &quot;Basic Training (all employees)&quot;"></a></h3>
<ul>
<li>[ ] What is Artificial Intelligence? (Key concepts)</li>
<li>[ ] What AI can do — what AI cannot do (Limitations and risks)</li>
<li>[ ] EU AI Act — Brief overview</li>
<li>[ ] Responsible use of AI (Automation bias, hallucinations, data protection)</li>
<li>[ ] BAUER GROUP guidelines on the use of AI</li>
</ul>
<h3 id="developer-training-additional" tabindex="-1">Developer Training (additional) <a class="header-anchor" href="#developer-training-additional" aria-label="Permalink to &quot;Developer Training (additional)&quot;"></a></h3>
<ul>
<li>[ ] AI Act risk classification</li>
<li>[ ] Technical requirements Art. 8–15</li>
<li>[ ] AI-specific security risks (Adversarial ML, Prompt Injection)</li>
<li>[ ] Integration into CI/CD processes</li>
</ul>
<h3 id="product-owners-additional" tabindex="-1">Product Owners (additional) <a class="header-anchor" href="#product-owners-additional" aria-label="Permalink to &quot;Product Owners (additional)&quot;"></a></h3>
<ul>
<li>[ ] Complete AI Act obligations catalogue</li>
<li>[ ] Go/No-Go decision process</li>
<li>[ ] Conformity assessment and documentation</li>
<li>[ ] Sanctions regime and liability</li>
</ul>
<h2 id="confirmation" tabindex="-1">Confirmation <a class="header-anchor" href="#confirmation" aria-label="Permalink to &quot;Confirmation&quot;"></a></h2>
<p>I confirm attendance at the above-mentioned training and acknowledge the content.</p>
<table tabindex="0">
<thead>
<tr>
<th></th>
<th></th>
</tr>
</thead>
<tbody>
<tr>
<td>Participant</td>
<td>Date, Signature</td>
</tr>
<tr>
<td>Trainer</td>
<td>Date, Signature</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
        <item>
            <title><![CDATA[Template: Go/No-Go Decision Record]]></title>
            <link>https://ai-act.docs.bauer-group.com/en/templates/go-no-go</link>
            <guid isPermaLink="false">https://ai-act.docs.bauer-group.com/en/templates/go-no-go</guid>
            <pubDate>Mon, 23 Mar 2026 17:35:45 GMT</pubDate>
            <description><![CDATA[# Template: Go/No-Go Decision Record

## AI System Identification

| Field | Value |
|]]></description>
            <content:encoded><![CDATA[<h1 id="template-go-no-go-decision-record" tabindex="-1">Template: Go/No-Go Decision Record <a class="header-anchor" href="#template-go-no-go-decision-record" aria-label="Permalink to &quot;Template: Go/No-Go Decision Record&quot;"></a></h1>
<h2 id="ai-system-identification" tabindex="-1">AI System Identification <a class="header-anchor" href="#ai-system-identification" aria-label="Permalink to &quot;AI System Identification&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Field</th>
<th>Value</th>
</tr>
</thead>
<tbody>
<tr>
<td>System ID</td>
<td>AI-BGI-XXXX</td>
</tr>
<tr>
<td>Name</td>
<td></td>
</tr>
<tr>
<td>Risk level</td>
<td>[ ] High-risk / [ ] Limited / [ ] Minimal</td>
</tr>
<tr>
<td>Conformity assessment</td>
<td>[ ] Annex VI (Self) / [ ] Annex VII (Third party)</td>
</tr>
<tr>
<td>Date</td>
<td></td>
</tr>
</tbody>
</table>
<h2 id="economic-assessment" tabindex="-1">Economic Assessment <a class="header-anchor" href="#economic-assessment" aria-label="Permalink to &quot;Economic Assessment&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Item</th>
<th>Amount (EUR)</th>
</tr>
</thead>
<tbody>
<tr>
<td>Expected 3-year EU revenue</td>
<td></td>
</tr>
<tr>
<td>Expected 3-year EU contribution margin</td>
<td></td>
</tr>
<tr>
<td>15% threshold</td>
<td></td>
</tr>
</tbody>
</table>
<h2 id="compliance-effort-estimated" tabindex="-1">Compliance Effort (estimated) <a class="header-anchor" href="#compliance-effort-estimated" aria-label="Permalink to &quot;Compliance Effort (estimated)&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Item</th>
<th>One-off (EUR)</th>
<th>Annual (EUR)</th>
<th>3-year total</th>
</tr>
</thead>
<tbody>
<tr>
<td>Risk management system</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>Data governance</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>Technical documentation</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>QMS extension</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>Conformity assessment</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>Registration</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>Post-market monitoring</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td>External costs (consultancy, Notified Body)</td>
<td></td>
<td></td>
<td></td>
</tr>
<tr>
<td><strong>Total</strong></td>
<td></td>
<td></td>
<td></td>
</tr>
</tbody>
</table>
<h2 id="cra-synergies" tabindex="-1">CRA Synergies <a class="header-anchor" href="#cra-synergies" aria-label="Permalink to &quot;CRA Synergies&quot;"></a></h2>
<ul>
<li>[ ] Product is already CRA-compliant → effort reduction ~55%</li>
<li>[ ] Product has no CRA compliance → full effort</li>
</ul>
<h2 id="assessment" tabindex="-1">Assessment <a class="header-anchor" href="#assessment" aria-label="Permalink to &quot;Assessment&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th>Criterion</th>
<th>Result</th>
</tr>
</thead>
<tbody>
<tr>
<td>Compliance effort ≤ 15% of 3Y-CM?</td>
<td>[ ] Yes / [ ] No</td>
</tr>
<tr>
<td>Annex VII required?</td>
<td>[ ] Yes (→ Auto No-Go) / [ ] No</td>
</tr>
<tr>
<td>Strategic reasons for EU distribution?</td>
<td>[ ] Yes / [ ] No</td>
</tr>
</tbody>
</table>
<h2 id="decision" tabindex="-1">Decision <a class="header-anchor" href="#decision" aria-label="Permalink to &quot;Decision&quot;"></a></h2>
<ul>
<li>[ ] <strong>GO EU</strong> — Start compliance implementation</li>
<li>[ ] <strong>NO-GO EU</strong> — No EU distribution</li>
<li>[ ] <strong>NO-GO EU + Third market</strong> — Distribution in third markets only</li>
<li>[ ] <strong>NO-GO EU + AI removal</strong> — EU version without AI component</li>
<li>[ ] <strong>Deferred</strong> — Await Digital Omnibus / simplification</li>
</ul>
<h2 id="justification" tabindex="-1">Justification <a class="header-anchor" href="#justification" aria-label="Permalink to &quot;Justification&quot;"></a></h2>
<p>[Free text]</p>
<h2 id="approval" tabindex="-1">Approval <a class="header-anchor" href="#approval" aria-label="Permalink to &quot;Approval&quot;"></a></h2>
<table tabindex="0">
<thead>
<tr>
<th></th>
<th></th>
</tr>
</thead>
<tbody>
<tr>
<td>Prepared by</td>
<td>Date:</td>
</tr>
<tr>
<td>Approved by (management)</td>
<td>Date:</td>
</tr>
</tbody>
</table>
]]></content:encoded>
            <author>BAUER GROUP</author>
        </item>
    </channel>
</rss>