Deployer evidence

EU AI Act deployer documentation pack

A deployer pack should reflect the system, role and applicable duties. It is an evidence index with controlled records—not a static bundle that proves compliance by existing.

Prepared by EU AI Fit editorial team · Published 24 August 2026 · Source review 31 August 2026

Role, purpose and approved use

Retain the provider and product details, intended-purpose statement, deployment context, role rationale, classification, approved configuration, prohibited uses and accountable owner.

Instructions, competence and oversight

Keep current supplier instructions, operating procedures, human-oversight authority, competence and AI-literacy evidence, user briefings and escalation routes.

Operation, monitoring and incidents

Index logs under the deployer's control, input-data responsibilities where applicable, monitoring indicators, provider notifications, incidents, corrective actions and material-change reassessments.

  • Supplier and model version
  • Approved operating limits
  • Oversight and intervention record
  • Monitoring and incident chronology
  • Evidence review dates

Linked assessments and communications

Connect any DPIA, FRIA, worker or representative information, affected-person notices, public authority registration and transparency disclosures required for the use.

Recommended next step

Create the evidence index from applicable obligations, link records already held and turn every missing or stale item into owned work.

Run the free exposure check

Related practical guides

Put the guidance into practice

Continue your EU AI Act review