High-risk checklist

EU AI Act High-Risk Checklist

Use this checklist when an AI feature may affect safety, rights, eligibility, access, employment, education, public services, law enforcement, migration, courts, or democratic processes.

Disclaimer: This checklist is a practical starting point for internal review. It is not legal advice and does not determine your final regulatory classification.

Step 1: classify the use case

QuestionWhat to record
What is the intended purpose?Write the product task, user group, decision context, and expected output.
Is the system a safety component?Check whether it is part of a regulated product or safety-related workflow.
Does it match an Annex III area?Screen employment, education, essential services, biometrics, public services, law enforcement, migration, courts, and democratic processes.
Does it make or influence consequential decisions?Note whether people can lose access, ranking, opportunity, services, money, or rights.
Can a human meaningfully review the output?Describe the reviewer role, override path, escalation rule, and timing.

Step 2: prepare the evidence file

Step 3: decide the launch lane

ResultRecommended product action
No high-risk signalKeep a dated classification memo and still check transparency obligations.
Possible Annex III signalPause self-serve launch, gather evidence, and ask for specialist review.
Clear high-impact decision supportBuild human oversight, documentation, monitoring, and customer controls before release.
Prohibited-practice signalStop the use case and redesign before testing with real users.

Use the documentation template

Official sources

Last reviewed: July 3, 2026.