Frameworks EU legal act, binding European Union (EUR-Lex)
EU AI Act (Regulation 2024/1689)
The Union’s AI law: risk classes and the obligations attached to them for providers and deployers.
What this framework governs
Regulation (EU) 2024/1689 on artificial intelligence is in force and directly applicable in every Member State, without transposition into national law. Its obligations take effect in stages.
It classifies AI systems by risk and attaches obligations to that classification for providers, deployers, importers and distributors: from the prohibition of certain practices through transparency duties to the requirements for high-risk AI systems.
In the threat catalogue it appears wherever a threat touches a matter the regulation governs explicitly, such as data governance, technical documentation, human oversight or robustness.
Obligations compass: 62 obligations by role, risk class and deadline
Mappings in the threat catalogue
EU AI Act (Regulation 2024/1689). Publisher: European Union (EUR-Lex). The Versatile AI Risk Assessment threat catalogue reaches 51 of its 52 threats through this framework, backed by one document at 15 locations. Mappings are documented for 51 of the 52 threats in the catalogue. The overview shows their distribution by topic group.
One threat without a mapped reference
The catalogue contains no reference from this framework for these threats. This does not establish whether the original document addresses them. See the threat pages for recorded mappings to other frameworks.
- Profanity Harmful Content
Analysis: combine several frameworks and see the gaps that remain
Threats referencing this framework (51)
Grouped by topic. Every entry leads to the full threat page.
Agentic and Autonomous AI
5 threatsApplication and Integration Security
7 threatsAttacks on the Running Model and Service
7 threatsHarmful Content
8 threatsMalicious Use for Attacks, Fraud and Disinformation
4 threatsModel and Training Data Manipulation
4 threatsPrivacy and Data Leakage
4 threatsPrompt Attacks and Guardrail Evasion
5 threatsReliability and Responsible Use
4 threatsSupply Chain and Provenance
3 threatsNo threat matches this input. Reset the filters to see all of them again.
Sources used (1)
These exact versions are pinned in the catalogue. Every page states the publisher, the version used, the locations and the referencing threats.
This page does not reproduce the text of the standards. It states the identifier, title and location; the wording itself is in the original document. The mappings are taxonomic and not evidence of compliance.
The references here are a taxonomic mapping, not evidence of compliance. Which obligation applies to you, and from when, depends on your role, the risk class and the relevant deadline.
Further frameworks
The frameworks address different aspects: legal requirements, organisational risk management and technical security. Explore the further perspectives included in the catalogue.
From the framework to the assessment
The full catalogue states the mitigations, the possible impact and every verified location for each threat. The live demo runs locally in your browser, with no sign-up.
Cite this page
For reports, policies or internal documents; the link leads directly to this framework page.
“EU AI Act (Regulation 2024/1689)” (European Union (EUR-Lex)). Mappings in the AI threat catalogue, Versatile AI Risk Assessment, as of July 2026. https://www.versatile-ai-risk-assessment.com/en/wissensbasis/frameworks/eu-ai-act/