KI-gestützte Skill-Match-Empfehlung (HumanX OIS) · uc_humanx_skillmatch
← Back to use case · Back to dashboard
Near high-risk — mandatory human oversight, external legal review recommended · not applicable: 0
| ID | Control | Expected evidence | Status | Evidence |
|---|---|---|---|---|
euaia_prohibited_check |
Check for prohibited practices EU AI Act Art. 5 · EU AI Act |
Evidence that there is no use falling under the prohibited practices; in case of suspicion, external legal review. | Open | 0 |
euaia_risk_management |
Risk management system EU AI Act Art. 9 · EU AI Act |
Documented, iterative risk management across the entire lifecycle of the AI system. | Open | 0 |
euaia_data_governance |
Data governance EU AI Act Art. 10 · EU AI Act |
Evidence of appropriate data governance (relevance, representativeness, error handling of the input data). | Open | 0 |
euaia_technical_documentation |
Technical documentation (Annex IV-like) EU AI Act Art. 11 / Annex IV · EU AI Act |
Annex IV-like technical documentation in place, versioned and up to date. | Open | 0 |
euaia_record_keeping |
Record-keeping / logging EU AI Act Art. 12 · EU AI Act |
Automatic, traceable event logging (append-only) in place. | Open | 0 |
euaia_transparency |
Transparency & labeling EU AI Act Art. 13 / 50 · EU AI Act |
AI use is made transparent to affected persons; AI-generated outputs are labeled. | Open | 0 |
euaia_human_oversight |
Human oversight EU AI Act Art. 14 · EU AI Act |
Human oversight plan with a named accountable human and the ability to intervene/override. | Open | 0 |
euaia_accuracy_robustness |
Accuracy, robustness, cybersecurity EU AI Act Art. 15 · EU AI Act |
Evidence of appropriate accuracy and robustness as well as suitable security measures. | Open | 0 |
gdpr_lawfulness |
Lawfulness of processing DSGVO Art. 6 · GDPR |
Documented legal basis for the processing of personal data. | Open | 0 |
gdpr_data_minimization |
Data minimization DSGVO Art. 5(1c) · GDPR |
Evidence that only necessary data categories are processed. | Open | 0 |
gdpr_dpia |
Data protection impact assessment (DPIA) DSGVO Art. 35 · GDPR |
DPIA carried out and documented where required. | Open | 0 |
gdpr_data_subject_rights |
Data subject rights DSGVO Art. 12–22 · GDPR |
Processes for access, rectification, objection and appeal by affected persons in place. | Open | 0 |
ai_literacy_staff |
AI literacy of those involved EU AI Act Art. 4 · AI literacy |
Evidence of sufficient AI literacy of the persons involved in the deployment. | Open | 0 |
security_access_control |
Access control ISO 27001 A.9 (Referenz) · Security |
Role-based access control and audit logs for sensitive objects in place. | Open | 0 |
audit_evidence_trail |
Audit/evidence chain SysTec Evidence Standard (ADR-003) · Audit |
Complete, hash-chained evidence trail of the governance-relevant actions. | Open | 0 |