Article 17: quality management system
The documented quality system through which a high-risk AI provider structurally assures compliance.
Article 17 requires a documented quality management system covering a compliance strategy, design and development procedures, data management, risk management, post-market monitoring, incident reporting and an accountability structure.
Praxikon tracks Article 17: quality management system under the EU AI Act, checked against the official source on 8 August 2026, citing the source for every statement.
- Status
- Upcoming
- Application date
- 2 December 2027
- Version
- 1.0.0
- Last reviewed
- 8 August 2026
Review status: placed against the official source (8 August 2026). Next check due by 4 February 2027. The check date is the knowledge date of this version; no later recheck has been recorded.
From source to evidence
Why this obligation applies, what it asks of you, and what you show for it.
Applies
Upcoming · 2 December 2027
For whom
Provider of an AI system
What you do
Set up an AI quality management system
What you record
QMS documentation
Official source
Who this is relevant to
When this applies
Provider of an AI system
A party that develops or has an AI system developed and places it on the market under its own name.
- 1The provider places high-risk AI systems on the market or puts them into service.
What the official source establishes
For the Annex III route this requirement applies from 2 December 2027; for high-risk AI in regulated products (Annex I) from 2 August 2028.
Our interpretation
The official source remains authoritative. This general interpretation is not legal advice.
The QMS is the umbrella over all other provider duties: those with the separate files but no system connecting them fail exactly this article in an audit.
What you can do now
Build the QMS not as a separate document but as an index on top of the existing files (risk, data, documentation, monitoring) with owners per procedure.
- 01
Set up an AI quality management system
Describe strategies, procedures and responsibilities for compliance, from design and data to post-market monitoring.
What to retain
QMS documentation
The documented quality system with procedures, role assignment and references to the underlying files.
Control and reassessment
Internal audit cycle
Periodically audit whether practice follows the described system and record deviations and improvements.
Public tools
Full text of Article 17
The full legal text in the public AI Act Explorer.
Conditions and exceptions
- Providers already under sectoral quality regimes may integrate the AI elements into that existing system; SMEs may implement elements in simplified form.
Official sources and locators
EU Artificial Intelligence Act 2024/1689
European Parliament and Council | original-oj-2024-07-12
Source locator: Article 17(1)-(3)
Digital Omnibus on AI 2026/1744
European Parliament and Council | official-journal-2026-07-24
Source locator: Amended Article 113 application dates
Referring to this object
Citation block
Copy this reference into your advice, article or file. The identifier, the version and the hash keep the statement findable later, even once the dataset has moved on.
Reference
Praxikon, "Article 17: quality management system", praxikon:eu:ai-act:obligation:article-17-quality-management@1.0.0, dataset praxikon:sys:registry:dataset:ai-act-implementation-graph 2.2.0 (schema 1.5.0), effective_at 2026-07-27T00:00:00.000Z, known_at 2026-08-08T00:00:00.000Z, sha256 7d04f5f23729c5c48f26262f0e266c680dce5753d12543479b1ea672bbe1c6e9, https://www.praxikon.com/en/verplichtingen/article-17-quality-management (https://www.praxikon.com/api/v1/obligations?id=praxikon%3Aeu%3Aai-act%3Aobligation%3Aarticle-17-quality-management&effective_at=2026-07-27&known_at=2026-08-08&lang=en, accessed 2026-09-07)
Short form
praxikon:eu:ai-act:obligation:article-17-quality-management@1.0.0 (sha256 7d04f5f2)
BibTeX
@misc{praxikon-eu-ai-act-obligation-article-17-quality-management-1-0-0,
author = {{Praxikon}},
title = {Article 17: quality management system},
year = {2026},
version = {1.0.0},
number = {praxikon:eu:ai-act:obligation:article-17-quality-management},
howpublished = {AI Act Change \& Evidence Graph, dataset 2.2.0, schema 1.5.0},
note = {effective_at 2026-07-27T00:00:00.000Z; known_at 2026-08-08T00:00:00.000Z; sha256 7d04f5f23729c5c48f26262f0e266c680dce5753d12543479b1ea672bbe1c6e9},
url = {https://www.praxikon.com/en/verplichtingen/article-17-quality-management},
urldate = {2026-09-07},
language = {en}
}CSL JSON
[
{
"id": "praxikon:eu:ai-act:obligation:article-17-quality-management@1.0.0",
"type": "dataset",
"title": "Article 17: quality management system",
"container-title": "AI Act Change & Evidence Graph",
"publisher": "Praxikon",
"version": "1.0.0",
"number": "praxikon:eu:ai-act:obligation:article-17-quality-management",
"URL": "https://www.praxikon.com/en/verplichtingen/article-17-quality-management",
"language": "en",
"issued": {
"date-parts": [
[
2026,
8,
8
]
]
},
"accessed": {
"date-parts": [
[
2026,
9,
7
]
]
},
"note": "dataset praxikon:sys:registry:dataset:ai-act-implementation-graph 2.2.0; schema 1.5.0; effective_at 2026-07-27T00:00:00.000Z; known_at 2026-08-08T00:00:00.000Z; sha256 7d04f5f23729c5c48f26262f0e266c680dce5753d12543479b1ea672bbe1c6e9; retrieved_from https://www.praxikon.com/api/v1/obligations?id=praxikon%3Aeu%3Aai-act%3Aobligation%3Aarticle-17-quality-management&effective_at=2026-07-27&known_at=2026-08-08&lang=en; licence https://www.praxikon.com/nl/legal/terms"
}
]How to verify a reference later is set out in the methodology. Terms
What changed in this
Moments when this obligation took effect, moved or received official guidance.
2026-07-12 | guidance
First European AI Act standard approved
EN 18286:2026 on the quality management system is the first completed standard under the standardisation request.
Version history
v1.0.0
27 July 2026
Article 17: quality management system
The documented quality system through which a high-risk AI provider structurally assures compliance.
Corrections to this obligation
No substantive correction to this object has been recorded.
Open the correction logExecution
From obligation to arranged and demonstrable
Knowing where you stand is step one. Embed AI translates this obligation into a concrete approach for your organisation: scope, ownership, register and evidence.
See the Embed AI approachFor AI agents and integrations
This page and the machine output derive from the same versioned object. Use the API for deterministic filters by role, topic and time.
