Direct answer
How do we set up human oversight of AI?
You describe: You want to know what the AI Act expects of human control over AI decisions: human in, on or over the loop, and who needs to be competent for it. Likely role: deployer (you use the system).
This applies now
- Article 4: AI literacyApplicable
Coming up
- Article 14: human oversightfrom 2 December 2027
- Annex III: high-risk AIfrom 2 December 2027
Human oversight is a core requirement for high-risk AI (Article 14, applicable from 2 December 2027) and already a logical part of the Article 4 measures: oversight only works with people who understand the system, know its limits and dare to intervene. Record per system who oversees, with what mandate and what training.
Your first actions
- Design and assign effective human oversight. Determine oversight measures per system, appoint competent persons and give them the mandate to intervene or stop.
- Classify the use case and document the outcome. Assess Article 5, Article 6 and Annex III in that order and document purpose, context and any Article 6(3) exception.
- Take role- and context-specific AI literacy measures. Determine for each role, system and context which combination of instruction, guidance, practice or training is appropriate.
Record this
- Oversight file per system
- Article 6 and Annex III classification record
- AI literacy measures record
General interpretation, not legal advice. Checked against Regulation (EU) 2024/1689 and the Digital Omnibus (EU) 2026/1744; the official source remains authoritative.
Full map for your situationFollow-up questions
Execution
From obligation to arranged and demonstrable
Knowing where you stand is step one. Embed AI translates this obligation into a concrete approach for your organisation: scope, ownership, register and evidence.
See the Embed AI approach