High-risk exposure

Annex III high-risk AI systems explained

Annex III focuses on sensitive use cases rather than particular model brands. Classification depends on intended purpose, deployment context and the effect on people.

Prepared by EU AI Fit editorial team · Published 24 August 2026 · Source review 31 August 2026

Areas that require close attention

Potential categories include biometrics, critical infrastructure, education, employment, access to essential services, law enforcement, migration and the administration of justice or democratic processes.

Avoid classification by keyword

A tool used near a listed sector is not automatically high-risk, and an innocent product label does not make it minimal-risk. Document the decision influenced, the people affected, the significance of the outcome and the role of human review.

Prepare for a defensible review

Retain the intended-purpose statement, workflow diagram, input and output examples, human-oversight design, provider documents and rationale for inclusion or exclusion. Escalate borderline cases to a qualified adviser.

Recommended next step

Use EU AI Fit's exposure check to identify triggers, then complete a source-linked classification in the workspace.

Run the free exposure check

Related practical guides

Put the guidance into practice

Continue your EU AI Act review