RK-004HoogAanbiederPreventief
Toegankelijkheid van logbestanden voor bevoegde autoriteiten
Aanbieders moeten waarborgen dat gebeurtenislogboeken op verzoek toegankelijk zijn voor nationale bevoegde autoriteiten en markttoezichtautoriteiten, met procedures voor veilige en tijdige openbaarmaking van relevante logregistraties.
Artikelen:Article 12(2)Article 21
Bewijs voorbeelden
- Authority access procedure
- Log export capability demonstration
- Secure disclosure protocol
Normen
ISO 42001:2023 §9.1
Gerelateerde controles
- RK-001Automatic Event Logging CapabilityArticle 12(1) requires that high-risk AI systems are designed and developed with automatic logging capabilities, enabling the reconstruction of events…
- RK-002Log Integrity and Tamper ProtectionProviders must ensure that logs are protected against tampering, unauthorised deletion, or modification, using cryptographic integrity controls,…
- RK-003Log Retention for Minimum 10 YearsArticle 18(1) requires that providers retain technical documentation and logs for at least 10 years after the high-risk AI system is placed on the market…
- RK-005Event Traceability and ReconstructionLogs must enable the tracing and reconstruction of decision events to understand the inputs processed, the outputs generated, and the conditions under…
- RK-006Performance and Operational Metrics LoggingProviders must log performance and operational metrics relevant to verifying that the AI system operates within the parameters established in the…
- RK-007Anomaly and Error Detection LoggingThe logging system must capture anomalous behaviour, errors, and unexpected outputs from the AI system in operation, enabling timely detection of…
Gerelateerde AI-verordening-begrippen
Upgrade wanneer het juridisch verdedigbaar moet zijn.
De gratis vragenlijst geeft voorlopige signalen. De Volledige Beoordeling zet echte systeeminformatie om in een controleerbaar besluitdossier: extractie, componentscheiding, bewijs, nationale wetgeving en een auditklaar dossier.
Start gratis risicovoorbeeld