ENTRY № 30 · STATUTORY READING · EU AI ACT, ART. 27
PUBLISHED 2026-05-11 · ~11-MIN READ · WARRANT COMPLIANCE

Article 27, line by line.

Article 27 binds three categories of deployer to perform a fundamental rights impact assessment before the first use of a high-risk AI system, then to file the result with the market surveillance authority on a template the AI Office develops. Five paragraphs of the EU AI Act; one column of the Official Journal. Public-body deployers. Private entities providing public services. Private deployers of Annex III(5)(b) creditworthiness and Annex III(5)(c) life-and-health insurance risk-pricing systems. The trigger is set by Article 27(1) itself, not by Article 26 — Article 26(9) routes the deployer to the GDPR Article 35 data protection impact assessment, a different instrument. Article 27 is the human-rights sibling to that DPIA, and Article 27(4) is the provision that keeps the two from duplicating each other. Application deferred from 2 August 2026 to 2 December 2027 by the Digital Omnibus; Regulation (EU) 2026/1744, OJ 24 July 2026.

Warrant is regulator-grade evidence infrastructure for AI agents in regulated industries: drop an agent's execution trace, get a record mapped to a specific EU AI Act obligation, independently verifiable without contacting Warrant.

WHO
Deployers· public + Annex III 5(b)/(c)
Before first use. Article 27(1) sets the trigger.
APPLICATION
2027-12-02
Deferred from 2026-08-02 by the Digital Omnibus; Regulation (EU) 2026/1744, OJ 24 July 2026.
CONTENTS
6· Art. 27(1)(a)–(f)
Each verbatim in the reading below.
01 · § 27(1) · THE TRIGGER

Who has to do it, and when.

Prior to deploying a high-risk AI system referred to in Article 6(2), with the exception of high-risk AI systems intended to be used in the area listed in point 2 of Annex III, deployers that are bodies governed by public law, or are private entities providing public services, and deployers of high-risk AI systems referred to in points 5 (b) and (c) of Annex III, shall perform an assessment of the impact on fundamental rights that the use of such system may produce. Regulation (EU) 2024/1689 · Article 27(1), chapeau · 13 June 2024

The chapeau does four things in one sentence. It pins the obligation to deployers, not providers. It scopes to high-risk AI systems referred to in Article 6(2), which is the Annex III route. It carves out Annex III point 2, critical infrastructure. It identifies three trigger limbs that pull the obligation onto a specific deployer.

Limb one. Bodies governed by public law. Public hospitals operating under public-law statutes. Public broadcasters. Government departments and their agencies. The category travels with the Member State's administrative-law definition of public-law bodies, and the EU AI Act adopts it without redefining it.

Limb two. Private entities providing public services. Recital 96 explains the category: Private entities providing such public services are linked to tasks in the public interest such as in the areas of education, healthcare, social services, housing, administration of justice. The test is the service, not the corporate form.

Limb three. Deployers of high-risk AI systems referred to in points 5(b) and (c) of Annex III. Two specific Annex III categories where the FRIA bites every deployer regardless of public or private status. Annex III(5)(b) covers AI systems intended to be used to evaluate the creditworthiness of natural persons or establish their credit score. Annex III(5)(c) covers AI systems intended to be used for risk assessment and pricing in relation to natural persons in the case of life and health insurance. A private bank running an Annex III(5)(b) credit-scoring agent on retail applicants is squarely inside Article 27 even though it is neither a public-law body nor a public-service provider.

The exclusion is Annex III point 2, AI systems used as safety components in the management and operation of critical digital infrastructure, road traffic, and the supply of water, gas, heating and electricity. The legislative judgement is that critical-infrastructure high-risk systems carry their fundamental-rights weight through other obligations, not through the FRIA.

"The article does not ask whether harm has happened. It asks the deployer to write down, before first use, what harm could happen and to whom."Warrant Compliance · 2026-05-11

The temporal anchor is prior to deploying. The verb is operative. The deployer cannot run the FRIA after the system is in service, then back-fill the file. Article 27(2) tightens this further. The obligation applies to the first use of the high-risk AI system. First use is the moment the deployer puts the system into service for its intended purpose against real subjects, not a pilot against synthetic data.

02 · § 27(1)(a)–(f) · CONTENTS

The six contents elements, verbatim.

Article 27(1) continues. For that purpose, deployers shall perform an assessment consisting of the following six elements. Each is reproduced verbatim, then read for what it requires of the deployer's evidence file.

27(1)(a)
a description of the deployer's processes in which the high-risk AI system will be used in line with its intended purpose; READING · the deployer has to describe the operational process the system slots into. Not the system. The deployer's process. This anchors the FRIA to a use-case description an inspector can read against the provider's Article 13 instructions for use.
27(1)(b)
a description of the period of time within which, and the frequency with which, each high-risk AI system is intended to be used; READING · duration and cadence. A six-week seasonal model is not the same as a system run on every retail application year-round. Cadence carries weight in the risk analysis at sub-paragraph (d).
27(1)(c)
the categories of natural persons and groups likely to be affected by its use in the specific context; READING · this is the affected-population identification, the part that makes a FRIA distinct from a generic risk register. The deployer must name the categories and groups. Vague references to "users" or "customers" do not discharge the obligation.
27(1)(d)
the specific risks of harm likely to have an impact on the categories of natural persons or groups of persons identified pursuant to point (c) of this paragraph, taking into account the information given by the provider pursuant to Article 13; READING · the harm-risk inventory has to be specific, not generic, and has to read the Article 13 IFU material the provider supplied. The provider's risk content feeds the deployer's FRIA. It does not replace it.
27(1)(e)
a description of the implementation of human oversight measures, according to the instructions for use; READING · the cross-reference is to Article 14 and to the IFU. The deployer describes how, in its operational process, the oversight points the provider designed in are actually staffed, reviewed and overruled.
27(1)(f)
the measures to be taken in the case of the materialisation of those risks, including the arrangements for internal governance and complaint mechanisms. READING · the response plan. Internal governance is the routing inside the deployer's organisation. Complaint mechanisms are the channels open to affected persons. Both must exist on paper before first use.

Six elements, taken together, are the spec. The deployer signs against them. The market surveillance authority reads against them under Article 27(3). The notable structural point is that Article 27(1) does not ask the deployer to score risk, draw a residual-risk line or produce a probability matrix. It asks for description and identification. The judgement layer is the regulator's, not the deployer's.

The list is closed, not illustrative. Six bullets, not seven. The AI Office template under Article 27(5) is structured against these six, and the notification under Article 27(3) is filed on that template.

03 · § 27(2) · FIRST USE, UPDATES

First use, similar cases, and the update obligation.

The obligation laid down in paragraph 1 applies to the first use of the high-risk AI system. The deployer may, in similar cases, rely on previously conducted fundamental rights impact assessments or existing impact assessments carried out by provider. If, during the use of the high-risk AI system, the deployer considers that any of the elements listed in paragraph 1 has changed or is no longer up to date, the deployer shall take the necessary steps to update the information. Regulation (EU) 2024/1689 · Article 27(2) · 13 June 2024

Three sentences, three rules. First, the FRIA is a first-use obligation. The deployer who puts the high-risk system into service for the first time is on the hook. A deployer who buys an established system from a previous operator is, on most readings, still a new deployer and still on the first-use hook for that deployment.

Second, the similar cases reliance rule. A deployer running the same high-risk AI system across multiple comparable use cases is not required to perform a fresh FRIA for each. It may rely on a previously conducted FRIA, or on an impact assessment the provider has already carried out, where the cases are similar. The deployer carries the burden of arguing similarity if challenged. Same provider, same intended purpose, same affected-population profile is the conservative test.

Third, the update obligation. The trigger for an update is content change, not calendar. The deployer must update where any of the elements in Article 27(1)(a) to (f) has changed or is no longer up to date. The natural triggers are a change in the process under (a), a change in cadence under (b), a change in the population under (c), the emergence of a new harm vector under (d), a change to the oversight staffing under (e), or a change to the governance or complaint channel under (f). The FRIA is a living document with a content-driven refresh cadence, not an annual ritual.

04 · § 27(3) · NOTIFY THE MSA

Notification to the market surveillance authority.

Once the assessment referred to in paragraph 1 of this Article has been performed, the deployer shall notify the market surveillance authority of its results, submitting the filled-out template referred to in paragraph 5 of this Article as part of the notification. In the case referred to in Article 46(1), deployers may be exempt from that obligation to notify. Regulation (EU) 2024/1689 · Article 27(3) · 13 June 2024

The notification is the operative deliverable. The FRIA is performed inside the deployer's organisation. The result is reported outside. The recipient is the market surveillance authority designated under Article 70, the same authority that supervises the high-risk system under Article 74 and that can request the logs under Article 26(6).

What is filed is the AI Office template, filled out, not the deployer's internal working file. The template under Article 27(5) is the legible artefact. Internal working files, redlines and stakeholder consultation notes are not part of the notification, though they remain producible on demand under the cooperation duty in Article 26(12).

The Article 46(1) exemption is narrow. On a duly justified request, a market surveillance authority may authorise the placing on the market or putting into service of specific high-risk AI systems within its Member State's territory for exceptional reasons of public security or the protection of life and health of persons, environmental protection or the protection of key industrial and infrastructural assets. It is a derogation on timing, not a waiver: the authorisation runs for a limited period while the necessary conformity assessment procedures are being carried out, and those procedures must still be completed without undue delay. Where Article 46(1) is invoked, the FRIA notification can be waived. The FRIA itself is not waived, only the filing.

05 · § 27(4) · DPIA CARVE-OUT

Article 27(4) and the GDPR Article 35 cross-walk.

If any of the obligations laid down in this Article is already met through the data protection impact assessment conducted pursuant to Article 35 of Regulation (EU) 2016/679 or Article 27 of Directive (EU) 2016/680, the deployer may, when conducting the fundamental rights impact assessment referred to in paragraph 1 of this Article, include cross-references to the relevant sections of that data protection impact assessment or include relevant parts thereof in the fundamental rights impact assessment. Regulation (EU) 2024/1689 · Article 27(4), as replaced by Regulation (EU) 2026/1744 Article 1(13)(a) · in force 27 July 2026

Read the paragraph as it now stands, not as first enacted. Until 27 July 2026 Article 27(4) said the FRIA shall complement the DPIA. The Digital Omnibus replaced the paragraph outright. The word complement is gone, and with it the reading that the FRIA is a mandatory add-on layered over the DPIA.

What replaced it is a permission, not a duty. The deployer may include cross-references to the relevant sections of the DPIA, or include relevant parts of it in the FRIA. The drafting turns a duplication problem into a drafting convenience: where the DPIA already carries the analysis, the FRIA can point at it or lift it. What has not changed is that the FRIA remains a separate obligation. A deployer still cannot file the DPIA in place of the FRIA, because the Article 27(1)(a) to (f) elements still have to be present in the FRIA — by cross-reference or by inclusion, but present.

The cross-reference to Article 27 of Directive (EU) 2016/680 carries the same logic into the law-enforcement processing regime. A police-authority deployer that already has a Law Enforcement Directive impact assessment for a given processing operation may cross-refer to it rather than restate it.

The practical reading of the carve-out runs element by element. The deployer's FRIA file references the DPIA where the DPIA has already done the work. For Article 27(1)(c) categories of affected persons, the DPIA's data-subject inventory often covers most of the ground. For Article 27(1)(d) specific risks of harm, the DPIA's necessity-and-proportionality assessment will overlap on personal-data-related harms but will not cover non-data-related fundamental-rights harms. For Article 27(1)(e) oversight measures and Article 27(1)(f) governance and complaints, the DPIA usually has skeletal coverage. The FRIA fills these in.

The two assessments are parallel under different regimes. GDPR Article 35 attaches to the controller and is scoped to personal data. EU AI Act Article 27 attaches to the deployer and is scoped to fundamental rights more broadly. A single deployer is often both controller and deployer of the same high-risk AI system, which is why Article 27(4) exists to keep the two from forcing duplicate analysis.

06 · § 27(5) · AI OFFICE TEMPLATE

The AI Office template under Article 27(5).

The AI Office shall develop a template for a questionnaire, including through an automated tool, to facilitate deployers in complying with their obligations under this Article in a simplified manner. This template shall, where relevant, give deployers the possibility to include cross-references to the relevant sections of the data protection impact assessment or include relevant parts thereof in the fundamental rights impact assessment pursuant to paragraph 4. Regulation (EU) 2024/1689 · Article 27(5), as replaced by Regulation (EU) 2026/1744 Article 1(13)(b) · in force 27 July 2026

The closing paragraph delegates the form to the AI Office. The substance is fixed in Article 27(1)(a) to (f). The instrument is the template the AI Office develops. The phrase including through an automated tool contemplates a structured questionnaire or web form, not free-text Word documents lodged by email.

The Digital Omnibus added the second sentence. It carries the amended Article 27(4) permission into the form itself: the template must, where relevant, let the deployer cross-refer to DPIA sections or lift parts of the DPIA into the FRIA. The form and the paragraph it serves now move together.

On the template's status we are stating a gap rather than a date. Article 27(5) imposes no deadline on the AI Office — read the paragraph again above; there is no date in it — and as at 28 July 2026 we have not verified a published final template against a Commission source. So we are not going to name a publication date or a consultation stage. The deployer-side posture does not depend on knowing: assemble the six elements of Article 27(1)(a) to (f) internally, in that structure, and the eventual filing is a transcription job.

Two structural notes. The template is a facilitation device, not a substantive expansion of the obligation. If the AI Office template asks a question that goes beyond Article 27(1)(a) to (f), the deployer's answer is grounded in the article, not in the template's wording. And the automated-tool route does not displace the deployer's obligation to actually conduct the assessment. Filling the form is the notification. Performing the assessment is the obligation.

07 · CROSS-REFERENCE WEB

How Article 27 sits inside the wider regulation.

Article 27 does not stand alone. The article is one node in a cross-reference web that the deployer's evidence file has to honour. The five touchpoints are Article 26(9), GDPR Article 35, Article 14, Annex III, and Article 70.

26(9)
Where applicable, deployers of high-risk AI systems shall use the information provided under Article 13 of this Regulation to comply with their obligation to carry out a data protection impact assessment under Article 35 of Regulation (EU) 2016/679 or Article 27 of Directive (EU) 2016/680. READING · Article 26(9) is the DPIA-side hand-off. Article 27 is the FRIA-side hand-off. The two together define the deployer's pre-use evidence stack.
GDPR 35
The data protection impact assessment under Regulation (EU) 2016/679. READING · Article 27(4), as replaced by Regulation (EU) 2026/1744, lets the FRIA cross-refer to the DPIA or incorporate parts of it. The DPIA does not substitute for the FRIA.
Art. 14
Human oversight design obligation on the provider, with deployer-side staffing under Article 26(2). READING · Article 27(1)(e) cross-refers to the IFU and to the implementation of the oversight measures. The FRIA describes what the deployer actually does with the oversight points the provider engineered in.
Annex III
High-risk use-case list. Points 5(b) and (c) carry the FRIA into the private sector. Point 2 is excluded. READING · the deployer's FRIA scope is read off Annex III, and a deployer running multiple Annex III categories carries the FRIA separately for each, subject to the similar-cases rule in Article 27(2).
Art. 70
Member State competent authorities and market surveillance authorities. READING · Article 27(3) notification runs to the market surveillance authority designated under Article 70. The Member State authority is the recipient of the FRIA filing.
08 · WHAT THE PACKAGE CARRIES

What Article 27 requires, and what the evidence package does not hold.

The gap first. The signed warrant-v1 evidence package carries no fundamental rights impact assessment. Its schema, api/spec/warrant-v1-evidence.schema.json, sets additionalProperties: false at the root, and the nine properties the root permits are classification, actions, authorizations, obligations, coverage_by_regime, deferred_regimes, risk_tier, refusal_reason and trace_metadata. There is no deployer root and no fria root. Because the root is closed, a field name absent from that list is prohibited, not merely unimplemented. No field on the package evidences any element of Article 27(1).

The obligation corpus is the second half of the gap. At corpus digest 6871ee8b it carries 20 regimes and 223 cited sub-clauses, and not one of them is an Article 27 sub-clause: the EU AI Act ids in the corpus cover Articles 12, 13, 14, 15, 50 and Annex IV. So no obligation row on any package cites Article 27, and there is no field mapping to print. Anyone who needs Article 27 evidence today should read this section as a statement of what to build, not of what ships.

What the Article 27 elements attach to instead is the deployer's own governance record. The Regulation puts the assessment on the deployer, has it filed with the market surveillance authority under Article 27(3), and leaves the file inside the deployer's organisation. A Warrant-attested trace can sit alongside that file — the per-action authorization rows speak to how a given decision was authorised, which is evidence about the oversight the FRIA describes under Article 27(1)(e) — but the FRIA itself is a separate artefact Warrant does not produce, hold or sign. The table below is the element-by-element reading, with the package position stated on each row.

27(1)
Trigger limb identification: public-law body, private provider of a public service, or deployer of an Annex III(5)(b) or (5)(c) system. DEPLOYER RECORD · the deployer establishes its limb before first use. No package field records the limb. classification.jurisdictions and classification.domain narrow which regimes a trace is assessed against; neither identifies the deployer or its Article 27 trigger.
27(1)(a)
Description of the deployer's processes in which the system will be used. DEPLOYER RECORD · a use-case description read against the provider's Article 13 instructions for use. No package field holds it.
27(1)(b)
Period of time and frequency of intended use. DEPLOYER RECORD · a deployment-level statement. The package is per-trace, so it carries no period or frequency of use.
27(1)(c)
Categories of natural persons and groups likely to be affected. DEPLOYER RECORD · no package field classifies affected persons. actions[].subject is a single free-text string per action, unclassified, and it describes the subject of one action rather than a population.
27(1)(d)
Specific risks of harm likely to affect those categories. DEPLOYER RECORD · no harm taxonomy exists on the package. The nearest signed content is obligations.<action_id>[].compliance, which marks a mapped obligation satisfied, gap, uncertain or unvalidated — a per-clause compliance verdict, not a harm assessment.
27(1)(e)
Implementation of the human oversight measures in the instructions for use. PARTIAL, PER ACTION · authorizations[].human_oversight_appropriate is the assessment's judgement, per action, on whether human oversight was appropriate for that action. It is not a record that a human was present, and it is not an oversight plan. Staffing, intervention points and escalation paths stay in the deployer's record.
27(1)(f)
Measures on materialisation of risks: governance arrangements, complaint mechanisms, redress. DEPLOYER RECORD · no package field names a governance arrangement, a complaint channel or an intake owner.
27(2)
First use, similar-case reliance, update on content change. DEPLOYER RECORD · the FRIA's own dates and its update history live with the FRIA. trace_metadata.timestamp on a package is the time that package was sealed, not a first-use date and not an assessment date.
27(3)
Notification of the results to the market surveillance authority on the AI Office template. DEPLOYER RECORD · the filing is the deployer's, to the Article 70 authority. Nothing on the package records a filing, an authority or an acknowledgement.
27(4)
DPIA integration: cross-reference or incorporate parts of the Article 35 assessment. DEPLOYER RECORD · the cross-reference is drafted inside the FRIA. No package field points at a DPIA.
27(5)
The AI Office questionnaire template the notification is filed on. DEPLOYER RECORD · as at 6 August 2026 we have not verified a published final template against a Commission source, so we name no version. No package field carries one.

The honest summary of the table: eleven Article 27 elements, one of which the package speaks to in part, and ten it does not reach at all. A structured, package-level FRIA record is a schema Warrant has not published and does not emit. When it exists it will be a new schema version with its own root, and this section will name the fields it actually carries.

W
Sample EU evidence package · Warrant registerINDEPENDENTLY VERIFIABLE · CARRIES NO FRIA RECORD
→ /v/7de85ceaeac42a47
09 · FAQ

Questions a compliance officer asks first.

Who triggers the Article 27 fundamental rights impact assessment?

Article 27(1) names three deployer categories. Bodies governed by public law. Private entities providing public services. Deployers of Annex III(5)(b) creditworthiness or credit-scoring systems and Annex III(5)(c) life-and-health insurance risk-assessment and pricing systems. The trigger fires before first use of a high-risk AI system referred to in Article 6(2). Annex III point 2 critical infrastructure is excluded from the FRIA scope.

What is the AI Office template under Article 27(5)?

Article 27(5), as it now stands after Regulation (EU) 2026/1744, provides in full: "The AI Office shall develop a template for a questionnaire, including through an automated tool, to facilitate deployers in complying with their obligations under this Article in a simplified manner. This template shall, where relevant, give deployers the possibility to include cross-references to the relevant sections of the data protection impact assessment or include relevant parts thereof in the fundamental rights impact assessment pursuant to paragraph 4." The second sentence was added with effect from 27 July 2026. Article 27(3) then requires the deployer to notify the market surveillance authority of the assessment's results, "submitting the filled-out template referred to in paragraph 5 of this Article as part of the notification". Note what the Regulation does not do: paragraph 5 sets no deadline for the AI Office. As at 6 August 2026 we have not verified a published final template against a Commission source, and we would rather say that than print a date we cannot stand behind.

Can a GDPR Article 35 DPIA satisfy the Article 27 FRIA?

No. Article 27(4) handles the overlap, and it was replaced by Regulation (EU) 2026/1744 with effect from 27 July 2026. It now reads: if any of the obligations laid down in this Article is already met through the data protection impact assessment conducted pursuant to Article 35 of Regulation (EU) 2016/679 or Article 27 of Directive (EU) 2016/680, the deployer may, when conducting the fundamental rights impact assessment referred to in paragraph 1 of this Article, include cross-references to the relevant sections of that data protection impact assessment or include relevant parts thereof in the fundamental rights impact assessment. The pre-Omnibus wording, under which the FRIA shall complement the DPIA, is superseded. The FRIA remains a separate obligation: the Article 27(1)(a) to (f) elements must be present in it, by cross-reference or by inclusion, so a DPIA filed on its own does not discharge Article 27.

Does the deployer have to notify a public authority of the FRIA?

Yes. Article 27(3) requires the deployer, once the assessment has been performed, to notify the market surveillance authority of its results, by submitting the filled-out template referred to in Article 27(5). The exemption in Article 27(3) cross-refers to Article 46(1), the derogation from conformity assessment procedure on duly justified grounds of public security, life, health or environmental protection.

How often does the FRIA have to be updated?

Article 27(2) sets the update cadence on a content-change trigger, not a fixed calendar. If, during the use of the high-risk AI system, the deployer considers that any of the elements listed in Article 27(1) has changed or is no longer up to date, the deployer shall take the necessary steps to update the information. Changes that move any sub-paragraph (a) to (f) materially require an update to that element.

How does Article 27 interact with GDPR Article 35?

The two are parallel impact assessments under different regimes. GDPR Article 35 attaches to the controller and protects personal data. EU AI Act Article 27 attaches to the deployer and protects fundamental rights more broadly. Article 27(4), as replaced by Regulation (EU) 2026/1744, integrates them so that a deployer running one high-risk AI system across both regimes does not duplicate factual analysis. Where the DPIA already covers the FRIA element, the deployer may cross-refer to it or lift the relevant parts into the FRIA. Where it does not, the FRIA fills the gap.

What counts as before first use under Article 27?

Article 27(2) states that the obligation laid down in Article 27(1) applies to the first use of the high-risk AI system. First use is the moment the deployer puts the system into service for its intended purpose against real subjects, not a pilot against synthetic data. The FRIA must be performed and notified to the market surveillance authority before that moment, not retrospectively at the end of a pilot.

10 · READ THE SOURCE

Read the source directly.

Authored by Warrant Compliance, the regulatory-analysis function at Warrant. [email protected]. Editorial commentary on regulatory text. Not legal advice. The verbatim quotations of the Article 27(1) chapeau, Article 27(1)(a) to (f), and Article 27(2) and (3) reflect the official English-language text of Regulation (EU) 2024/1689 as published in the Official Journal of the European Union on 12 July 2024. Article 27(4) and (5) are quoted as replaced by Regulation (EU) 2026/1744, published in the Official Journal on 24 July 2026 and in force from 27 July 2026. Verified against the consolidating instruments on 6 August 2026.