A CE marking is not a promise of AI quality
The CE marking says that conformity is declared for a specific system against the applicable requirements. It does not say that the system is the best, error-free or endorsed by an authority.

Few symbols in the European product environment are interpreted as broadly as CE. Product slides turn it into a quality seal, a safety certificate or official approval. For AI systems, that shortcut is particularly risky. Legal market access, technical performance and responsible operation are three different questions.
The EU AI Act's conformity logic connects classification, requirements, evidence, assessment, declaration, marking, registration and monitoring. The visible mark is the endpoint of a process, not a substitute for it. Understanding CE therefore means being able to read the invisible evidence chain behind it.
Classification comes before the mark
Every conformity discussion starts with the system, role and intended purpose. Not every AI application is a high-risk AI system. Not every organisation is automatically the provider. A technical or commercial change may alter the legal allocation of responsibility.
A defensible classification records the system boundary, intended purpose, users, affected people, decision influence, product and process integration, and the role of every actor. It also records assumptions and unresolved questions. A model name is insufficient: the same foundation model may power an informal writing aid or a system with material influence over decisions.
Classification is versioned. Expanding the purpose, placing the system on the market under another name or substantially modifying it may require a new analysis. The classification record therefore includes review triggers rather than acting as a permanent label.
Provider is a responsibility role
Provider does not simply mean the developer of a foundation model. The relevant question is who develops or has an AI system developed and places it on the market or puts it into service under its own name or trademark. Integrators and product companies can move into this role in an AI value chain.
Article 25 addresses situations including supply under one's own name or trademark, substantial modification and a change of intended purpose that makes a system high-risk. In those cases, pointing upstream is not enough. Agreements must provide the information, technical access and cooperation needed to perform the new duties while respecting intellectual property and trade secrets.
A RACI chart alone is weak. Accountable roles need decision rights, access to evidence, testing resources and the practical authority to stop release or operation.
Conformity assessment is a procedure, not one certificate
Article 43 provides different conformity-assessment routes. The applicable route depends on the system category and relevant legal conditions. A notified body is therefore neither universally required nor universally absent. Both „CE is merely self-declaration" and „CE always means independent certification" are unreliable claims.
Internal assessment is not self-exemption. Applicable requirements must be translated into controls, tested, reviewed and documented. Where a third party participates, its work does not remove the provider's responsibility. It assesses within a defined mandate and against a particular system and documentation baseline.
The first operational output is a Conformity Route Record: legal basis, system category, standards or specifications used, participating bodies, required artefacts, sequence and release criteria.
Self-assessment still requires evidence
A strong assessment is organised through a traceability matrix. Every applicable requirement receives an identifier and links to a system claim, technical or organisational control, test method, observed result, owner and deviation decision.
The chain is Requirement → Claim → Control → Test → Result → Decision. A missing link creates compliance theatre. A test without a requirement does not explain relevance. A policy without an operational signal does not prove implementation. A model benchmark without intended-purpose context says little about the complete AI system.
Negative evidence stays in the record. It must lead to a limitation, correction, accepted residual-risk decision or stop. How a team handles counter-evidence is a better maturity signal than the number of green cells in a checklist.
Technical documentation must describe the real system
A conformity file can look complete yet describe an idealised architecture. Documentation must match the configuration actually placed on the market or put into service: model and prompt versions, data sources, retrieval corpus, tools, thresholds, interfaces, oversight, logging, security measures and dependencies.
Every assessment therefore has a frozen Evidence Snapshot. Hashes, artefact identifiers and validity periods connect claims to a reproducible state. Dynamic components require controlled change ranges and retest triggers; a screenshot cannot make them stable.
The dossier is best understood as a navigable graph, not a folder of PDFs. From a deployed version, an assessor must be able to reach purpose, requirement, control, test, outcome, release decision and later change.
The EU declaration of conformity assigns responsibility
Article 47 requires an EU declaration of conformity for the relevant system and requires it to be kept up to date. Through the declaration, the provider assumes responsibility for meeting applicable requirements. It identifies the system, provider, relevant legislation and other required information; it is not marketing copy.
The declaration summarises earlier evidence work. It cannot cure missing tests, inconsistent versions or unresolved deviations. Before signature, a formal Readiness Review asks: Are system and scope unambiguous? Is every duty addressed? Do technical documentation, test status and released version match? Are deviations decision-ready? Is the signatory authorised and sufficiently informed?
CE is a precise but limited claim
Article 48 ties the CE marking to conformity of the high-risk AI system. Digital marking may be used for digital systems, subject to the applicable visibility and identification rules. The symbol communicates a legal conformity claim for a specific product or system.
It does not automatically establish:
• authority endorsement or authority execution of every test;
• participation of an independent body in every case;
• error-free operation, universal fitness or absence of risk;
• exceptional ethics, innovation or financial stability of the provider;
• coverage of every future modification or real-world use by the original assessment.
● Members only
Read the full article and download all files with a membership.
Unlock full article + downloads → Subscribe0 comments
● Loading comments…