Article 15: Accuracy, robustness and cybersecurity
Is this legally binding?
Binding. Binding law. It applies to everyone in scope, whether or not anyone points at it.
High-risk AI systems must achieve appropriate accuracy, robustness and cybersecurity, performing consistently against attacks and faults.
What this connects to
13 relations. Official relations are the ones the source documents state; anything marked GAGE analysis is our reading, not an agency's.
Maps across to2
- External frameworkClause 8: OperationStandardGAGE analysis, not official
Accuracy/robustness/cybersecurity achieved via AIMS operational controls
- External frameworkFunction: MANAGEGuidanceGAGE analysis, not official
Robustness/cybersecurity treatments belong to MANAGE
Mapped across from11
- InstrumentModel AI Governance Framework for Generative AI (2024)GuidanceGAGE analysis, not official
GenAI MGF's security dimension anticipates EU accuracy/robustness/cybersecurity requirements
- InstrumentModel AI Governance Framework for Agentic AIGuidanceGAGE analysis, not official
Agentic technical controls anticipate robustness and cybersecurity requirements
- InstrumentSecuring Agentic AI - Addendum to the Guidelines and Companion Guide on Securing AI SystemsGuidanceGAGE analysis, not official
CSA's agentic security controls directly address Article 15 cybersecurity and robustness concerns
- InstrumentCSA Guidelines and Companion Guide on Securing AI SystemsGuidanceGAGE analysis, not official
AI system security guidance maps to Article 15 cybersecurity requirements
- ObligationApply taint tracing to track untrusted dataGuidanceGAGE analysis, not official
Taint tracing is a cybersecurity control technique supporting Article 15 robustness
- SectionPrinciple 3: Security and SafetyGuidanceGAGE analysis, not official
Security and safety principle anticipates Article 15 robustness/cybersecurity
- SectionPrinciple 7: Robustness and ReliabilityGuidanceGAGE analysis, not official
Robustness principle maps to Article 15 accuracy and robustness
- SectionFocus area 6: SecurityGuidanceGAGE analysis, not official
GenAI security recommendations (prompt injection, poisoning) map to Article 15 cybersecurity
- SectionStage 3: DeploymentGuidanceGAGE analysis, not official
Responsible release incl. red-teaming supports Article 15 robustness
- ObligationSecure the deployment infrastructure and environmentGuidanceGAGE analysis, not official
Secured deployment infrastructure supports Article 15 cybersecurity
- ConceptComponent: ToolsGuidanceGAGE analysis, not official
Tool access control is a core agentic cybersecurity measure under Article 15 concerns
Verified against the official source on 2026-08-17. GAGE is not affiliated with or endorsed by any agency named here, and nothing on this page is legal advice. How this is built and checked.