Select applicable use cases Select every AI use case your organisation deploys or is evaluating. The overall classification reflects your highest-risk selection, and the results show every set of obligations that applies.
Prohibited practices (Article 5)
Real-time remote biometric identification in publicly accessible spaces for law enforcement Social scoring: evaluating or classifying people on their social behaviour or personal characteristics, leading to unjustified or unrelated detrimental treatment Subliminal, manipulative or deceptive techniques that materially distort behaviour and cause significant harm Exploiting vulnerabilities due to age, disability or social or economic situation, causing significant harm Predicting an individual's risk of committing a criminal offence based solely on profiling or personality traits Inferring the emotions of people in the workplace or in education institutions (other than for medical or safety reasons) Untargeted scraping of facial images to build facial recognition databases, or biometric categorisation to infer race, political opinions, trade union membership, religious or philosophical beliefs, sex life or sexual orientation Generating realistic intimate or sexually explicit material of identifiable people without their consent, or child sexual abuse material
High-risk categories (Annex I and Annex III)
Remote biometric identification (other than real-time law enforcement use) Biometric categorisation based on sensitive or protected characteristics (other than the prohibited categories) Emotion recognition (outside workplace and education settings) Safety components in managing critical digital infrastructure, road traffic, or the supply of water, gas, heating or electricity Education and vocational training: admissions, evaluating learning outcomes, assessing the appropriate level of education, or monitoring students during tests Recruitment and selection: targeted job adverts, filtering applications or evaluating candidates Workplace decisions: promotion, termination, task allocation, or monitoring and evaluating staff performance and behaviour Deciding eligibility for public assistance benefits and services, including healthcare, by or on behalf of public authorities Creditworthiness assessment or credit scoring of individuals Risk assessment and pricing for life or health insurance Evaluating emergency calls, dispatching emergency services, or emergency healthcare patient triage Use by or on behalf of law enforcement authorities, such as risk assessment, evidence evaluation or profiling in investigations Migration, asylum and border control by public authorities, assisting courts or dispute resolution, or influencing elections or voting behaviour AI as a medical device, or as a safety component of one, including clinical decision support that qualifies as a medical device
Transparency (Article 50)
Customer-facing chatbot or virtual assistant Generating or editing synthetic text, images, audio or video, including deepfakes
Minimal risk
Fraud detection and transaction monitoring Spam filtering or content recommendation Inventory management or demand forecasting Internal analytics and reporting tools
General-purpose AI models
Using a third-party general-purpose AI model or tool, such as ChatGPT or Copilot Fine-tuning or otherwise modifying a third-party general-purpose AI model Developing a general-purpose AI model, or placing one on the market under your own name (GPAI provider)
This tool is indicative only and does not constitute legal advice. See full Legal & Licence Terms