Hugging Face
Both a model source and an inference API. Pulled model weights run wherever the developer runs them; the supply-chain question is which models and who vetted them.
What that means for the register
This week
List the models in use and where they run.
What holding it is evidence for
Requirement text and artefacts from a human-verified corpus licensed to Agent Register.
Agents that execute without approval ISO 42001 A.6.2.6 · ISO 42001 A.9.4 · ISO 42001 A.6.2.8 · EU AI Act Art.14 · EU AI Act Art.26 · EU AI Act Art.12
ISO 42001 A.6.2.6 AI system operation and monitoringAI systems shall be operated and monitored according to organizational and operational requirements throughout their lifetime. Operational guidance shall be available to operators.
ISO 42001 A.9.4 Intended use of the AI systemThe organization shall ensure that the AI system is used according to the intended uses of the AI system and its accompanying documentation.
ISO 42001 A.6.2.8 AI system event loggingEvent logs shall be generated and recorded during AI system operations to enable monitoring, accountability, and incident investigation.
EU AI Act Art.14 Human oversightHigh-risk AI systems shall be designed and developed in such a way that they can be effectively overseen by natural persons during the period in which they are in use. Oversight measures shall enable persons to understand the relevant capacities and limitations and monitor operation, remain aware of...
EU AI Act Art.26 Obligations of deployers of high-risk AI systemsDeployers shall use high-risk AI systems in accordance with the IFU; assign human oversight to appropriately competent natural persons; ensure input data is relevant and sufficiently representative; monitor operation and inform the provider of risks/incidents; retain automatically generated logs for...
EU AI Act Art.12 Record-keeping (logs)High-risk AI systems shall technically allow for the automatic recording of events (logs) over the lifetime of the system, ensuring a level of traceability appropriate to the intended purpose; logging capabilities for biometric remote-identification AI systems include the period of each use, the ref...
Raw model API access from code ISO 42001 A.6.1.3 · ISO 42001 A.6.2.2 · ISO 42001 A.6.2.4 · ISO 42001 A.10.3 · EU AI Act Art.25 · EU AI Act Art.12 · EU AI Act Art.15
ISO 42001 A.6.1.3 Processes for responsible design and development of AI systemsThe organization shall define and document specific processes for the responsible design and development of AI systems.
ISO 42001 A.6.2.2 AI system requirements and specificationRequirements and specifications shall be defined for new or substantially modified AI systems, including responsible AI requirements.
ISO 42001 A.6.2.4 AI system verification and validationAI systems shall be verified and validated, and the results documented. Verification confirms requirements are met; validation confirms intended use is achieved.
ISO 42001 A.10.3 SuppliersEstablish a process ensuring that the organization's use of services, products or materials provided by suppliers aligns with its approach to the responsible development and use of AI systems.
EU AI Act Art.25 Responsibilities along the AI value chainDistributors/importers/deployers/other third parties become providers when they place on the market or put into service under their own name or trademark, substantially modify the system, or modify the intended purpose making it high-risk. The original provider shall cooperate with the new provider,...
EU AI Act Art.12 Record-keeping (logs)High-risk AI systems shall technically allow for the automatic recording of events (logs) over the lifetime of the system, ensuring a level of traceability appropriate to the intended purpose; logging capabilities for biometric remote-identification AI systems include the period of each use, the ref...
EU AI Act Art.15 Accuracy, robustness and cybersecurityHigh-risk AI systems shall be designed and developed in such a way that they achieve an appropriate level of accuracy, robustness, and cybersecurity, and shall perform consistently in those respects throughout their lifecycle. Resilience to errors, faults and inconsistencies; protection against atte...
No human in the loop by default ISO 42001 A.6.2.6 · ISO 42001 A.3.3 · ISO 42001 A.8.3 · EU AI Act Art.14 · EU AI Act Art.26
ISO 42001 A.6.2.6 AI system operation and monitoringAI systems shall be operated and monitored according to organizational and operational requirements throughout their lifetime. Operational guidance shall be available to operators.
ISO 42001 A.3.3 Reporting of concernsA process shall be established to enable reporting of concerns about AI systems' development, deployment, or use.
ISO 42001 A.8.3 External reportingThe organization shall provide mechanisms for external interested parties to report concerns or impacts.
EU AI Act Art.14 Human oversightHigh-risk AI systems shall be designed and developed in such a way that they can be effectively overseen by natural persons during the period in which they are in use. Oversight measures shall enable persons to understand the relevant capacities and limitations and monitor operation, remain aware of...
EU AI Act Art.26 Obligations of deployers of high-risk AI systemsDeployers shall use high-risk AI systems in accordance with the IFU; assign human oversight to appropriately competent natural persons; ensure input data is relevant and sufficiently representative; monitor operation and inform the provider of risks/incidents; retain automatically generated logs for...
Do this for every tool your teams use
Paste the list and get this classification for every entry at once, with the owner column, the findings per department, and the controls the register is evidence for. Ten entries free, no account.
Build my agent register