{
  "node_id": "eu-ai-act-accuracy-robustness-cybersecurity",
  "title": "EU AI Act - Accuracy, Robustness, and Cybersecurity Requirements for High-Risk AI Systems (Article 15)",
  "domain": "AI Governance & Law",
  "version": "1.0.0",
  "last_updated": "2026-04-28",
  "bluf": "EU AI Act (Regulation 2024/1689) Article 15 establishes mandatory accuracy, robustness, and cybersecurity requirements for high-risk AI systems; Article 15(1) - high-risk AI systems shall be designed and developed in such a way that they achieve an appropriate level of accuracy, robustness, and cybersecurity, and perform consistently in those respects throughout their lifecycle; Article 15(2) - the levels of accuracy and the relevant accuracy metrics of high-risk AI systems shall be declared in the accompanying instructions for use; Article 15(3) - high-risk AI systems shall be resilient as regards errors, faults, or inconsistencies that may occur within the system or the environment in which the system operates, in particular when interacting with natural persons or other systems; high-risk AI systems shall be resilient against attempts by unauthorised third parties to alter their use, outputs, or performance by exploiting the system vulnerabilities; Article 15(4) - the technical robustness of high-risk AI systems may be achieved through technical redundancy solutions, which may include backup or fail-safe plans; Article 15(5) - high-risk AI systems that continue to learn after being placed on the market or put into service shall be developed in such a way that the automatic updates to those systems do not have a negative effect on their overall performance and do not create risks to health and safety or fundamental rights; Article 15(1) accuracy level must be 'appropriate' to the intended purpose - the appropriateness standard is contextual: a biometric identification system used in law enforcement requires a different and higher accuracy standard than a general consumer recommendation system; Article 15 technical requirements must be reflected in the Article 13 instructions for use (performance metrics and thresholds), the Article 9 risk management system (accuracy risks), and the Article 11 Annex IV technical documentation (performance testing methodology and results).",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0",
    "l402_paywall_url": "https://bidda.com/api/v1/vault/nodes/eu-ai-act-accuracy-robustness-cybersecurity.json"
  },
  "crosswalks": {
    "_available_keys": [
      "gdpr",
      "iso_27001",
      "nist_csf"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "eu-ai-act-2024",
    "eu-ai-act-article-3-definitions",
    "eu-ai-act-article-113-entry-into-force-application",
    "eu-ai-act-provider-obligations-high-risk",
    "eu-ai-act-technical-documentation-requirements",
    "eu-ai-act-transparency-instructions-for-use",
    "eu-ai-act-risk-management-system",
    "eu-ai-act-data-governance-high-risk"
  ],
  "primary_citations_count": 5
}