← current version of this provision
AI Act Article 72 — held text
This page is a held version, frozen at the capture below. It is a source
for review. It is not advice, and it does not determine whether this provision applies to you.
Article 72 Post-market monitoring by providers and post-market monitoring plan for high-risk AI systems 1. Providers shall establish and document a post-market monitoring system in a manner that is proportionate to the nature of the AI technologies and the risks of the high-risk AI system. 2. The post-market monitoring system shall actively and systematically collect, document and analyse relevant data which may be provided by deployers or which may be collected through other sources on the performance of high-risk AI systems throughout their lifetime, and which allow the provider to evaluate the continuous compliance of AI systems with the requirements set out in Chapter III, Section 2. Where relevant, post-market monitoring shall include an analysis of the interaction with other AI systems. This obligation shall not cover sensitive operational data of deployers which are law-enforcement authorities. 3. The post-market monitoring system shall be based on a post-market monitoring plan. The post-market monitoring plan shall be part of the technical documentation referred to in Annex IV. The Commission shall adopt an implementing act laying down detailed provisions establishing a template for the post-market monitoring plan and the list of elements to be included in the plan by 2 February 2026. That implementing act shall be adopted in accordance with the examination procedure referred to in Article 98(2). 4. For high-risk AI systems covered by the Union harmonisation legislation listed in Section A of Annex I, where a post-market monitoring system and plan are already established under that legislation, in order to ensure consistency, avoid duplications and minimise additional burdens, providers shall have a choice of integrating, as appropriate, the necessary elements described in paragraphs 1, 2 and 3 using the template referred in paragraph 3 into systems and plans already existing under that legislation, provided that it achieves an equivalent level of protection. The first subparagraph of this paragraph shall also apply to high-risk AI systems referred to in point 5 of Annex III placed on the market or put into service by financial institutions that are subject to requirements under Union financial services law regarding their internal governance, arrangements or processes. SECTION 2 Sharing of information on serious incidents
CELEX: 32024R1689 · provision: 72
Locator: Article 72; PDF page 101; derived-text line 2994
Held artifact: docs_evidence/eu-legislation/eurlex-full-text/20260823T093000Z/32024R1689.pdf
Artifact SHA-256: bba630444b3278e881066774002a1d7824308934f49ccfa203e65be43692f55e
Captured: 20260823T093000Z
Extracted with: pdftotext version 4.00
Official source:
EUR-Lex
This version:
/celex/32024R1689/ART_72/20260823-bba63044/
Corpus Merkle root: 581628a5b36518981241d2b51f048aa46384f30a74bf648ef542c652028cdeff
Membership proof: 10 hashes — see
corpus-proof.json
Modal verbs, counted verbatim (not a legal characterisation): 'shall not': 1 · 'shall': 10 · 'must': 0 · 'may not': 0 · 'may': 2 · 'should': 0
To verify independently: fetch the official source above, extract it with the
named tool, and confirm the artifact SHA-256 matches. Then check this provision's leaf against
the published Merkle root using the proof in corpus-proof.json.