If your company develops AI systems

Regulation (EU) 2024/1689 calls a provider whoever develops an AI system, or has one developed, and places it on the market or puts it into service under its own name or trademark. If that is your case for any of your systems, Alethexis gives you a place to document their obligations, system by system.

The role is set per system

In the same inventory you can be the deployer of the tools you use and the provider of the system you sell. Alethexis keeps the role on each system, and those that have your organisation as provider appear in Own product.

With M2: the obligations that are not high-risk

  • Transparency under Article 50(1) and (2), applicable from 2 August 2026.
  • The versions of the system and the changes between them, with the substantial modification assessment recorded as an act of the provider.
  • The sheet for deployers and the change register, as PDFs with a SHA-256 fingerprint.
  • A provider view on the Trust Center public profile, aggregated and optional.

With M3: the provider of a high-risk system

For Annex III high-risk systems, the provider obligations apply from 2 December 2027. With M3, “Own product” opens three pages for each of those systems:

  • High-risk documentation: risk management per version (Article 9), datasets (Article 10), the Annex IV technical documentation, the instructions for use (Article 13) and the quality management system manual (Article 17), with the text of the Regulation above each section.
  • Conformity: the Article 6(3) assessment and the Annex VI internal control as recorded acts, the status of each version, a draft EU declaration of conformity and the Annex VIII information as an export.
  • Post-market: serious incidents with the Article 73 deadline calculated and email reminders, corrective actions under Article 20 and the post-market monitoring plan under Article 72.

What Alethexis does, and what the provider does

Alethexis keeps what you record, orders it following the structure of the Regulation and generates documents, drafts and exports with a SHA-256 fingerprint. It does not review them or sign them off.

The EU declaration of conformity is signed by the provider. Registration and serious incident reports are submitted by the provider.

This page describes the product and cites Regulation (EU) 2024/1689 as amended by Regulation (EU) 2026/1744. It does not constitute legal advice.