Article 55 of 11349%
Article 55: Obligations of providers of general-purpose AI models with systemic risk
Praxikon tracks Article 55 (Obligations of providers of general-purpose AI models with systemic risk) under the EU AI Act, citing the source for every statement.
EU Official:
Title V: General-Purpose AI Models
Article 55 requires providers of GPAI models with systemic risk to perform model evaluations, assess and mitigate systemic risks, report serious incidents, and ensure an adequate level of cybersecurity.
Official text
||
Source: EUR-Lex, Regulation (EU) 2024/1689. Text reproduced verbatim.
Download AI Act (PDF) →Official guidance on this article
5- Guidelines on the scope of obligations for providers of general-purpose AI models under the AI ActExplains when a model is designated as a system-level risk model and what additional obligations then apply.PublishedGuidelinesEuropean Commission18 Jul 2025
- The General-Purpose AI Code of PracticeDescribes in the Safety and Security chapter the state-of-the-art practices by which providers of models with systemic risk establish their risk management, evaluations and incident reportingPublishedCode of practiceEuropean Commission / AI Office10 Jul 2025
- Report for Serious Incidents under the AI Act (General-Purpose AI Models with Systemic Risk)Provides providers of models with systemic risk with the concrete format by which they make the incident report prescribed in this Article to the AI Office, including the required fields and timelinesPublishedTemplateEuropean Commission / AI Office4 Nov 2025
- Questions and answers on the Code of Practice for General-Purpose AIClarifies that the safety and security chapter is only relevant to providers of models with systemic riskPublishedQ&AEuropean Commission, DG CONNECT20 Jul 2026
- General-Purpose AI Models in the AI Act - Questions & AnswersExplains what additional obligations apply to models with systemic risk, such as model evaluations, incident reporting and cybersecurityPublishedQ&AEuropean Commission, DG CONNECT9 Sept 2025
Related enforcement
No enforcement actions for this article yet. Follow developments via the Enforcement Tracker.
Related blog posts
Related articles
Frequently asked questions
What extra obligations apply to GPAI models with systemic risk under Article 55?+
Article 55 requires providers of GPAI models with systemic risk to perform model evaluations, assess and mitigate systemic risks, report serious incidents, and ensure an adequate level of cybersecurity.
Must providers of GPAI with systemic risk report incidents?+
Yes, Article 55 requires providers to report serious incidents and possible corrective measures without delay to the AI Office and competent authorities.
What documentation does Article 55 of the AI Act require?+
Article 55 of the AI Act requires that relevant documentation is maintained as part of the compliance process. This may include technical documentation, instructions for use, logs or declarations of conformity, depending on the classification of the AI system.
What are the additional obligations for GPAI models with systemic risk?+
On top of the basic obligations under Article 53, providers of GPAI models with systemic risk must: conduct model evaluations, perform adversarial testing (red teaming), report serious incidents to the AI Office, and ensure adequate cybersecurity measures.
When is a GPAI model considered a systemic risk model?+
A GPAI model is presumed to have systemic risk if cumulative training compute exceeds 10^25 FLOP (Article 51). The European Commission can also classify a model as systemic risk based on other criteria from Annex XIII (such as 10,000+ business users).
Which models are currently classified as GPAI with systemic risk?+
The European Commission maintains a register of GPAI models with systemic risk. Large models like GPT-4, Gemini Ultra and Claude with training above 10^25 FLOP likely fall under this category. Providers must notify the AI Office when their model reaches this threshold.