Credit scoring is explicitly classified as high-risk by the AI Act. Obligations before August 2, 2026.
No transition phase after August 2026. Sanctions apply immediately to non-compliant systems.
Inspections and recommendations start
Last call for voluntary compliance
AI Act applies in full. Fines begin.
Systematic checks and sanctions
Record all decisions, training data, model versions, and modifications.
Explain why score is 71, not 65. Contributing variables are mandatory.
Systematic audit of decisions before deployment. Escalation for ambiguous scores.
Impact assessments, risk evaluations, mitigation plans.
Mandatory registration in NFRA registry before August 2026.
Requirement: Must be tracked and consent documented
Every access to customer bank flows must be recorded with timestamp and explicit consent. Audit trail required.
Requirement: Every extraction must be auditable and timestamped
RocketFin's drag-and-drop OCR automatically generates a timestamped log for each document processed — compliance built-in without extra development.
Requirement: Every score must have an explainability report
Contributing variables, model weights, thresholds applied: everything must be explained. Ready for human review and regulatory audit.
5 contributing variables per score. No black-box effect. AI Act compliant by design.
Full recording of each decision, data, model versions. Regulator-ready.
Automatic escalation of ambiguous scores. Pre-deployment validation. Compliant.
Yes, if you use any algorithm or ML to score B2B credit. Regardless of technology (rules, decision trees, deep learning) or vendor.
Provider = you create/sell the system. Deployer = you use it. Both must comply. If you're a customer, demand AI Act documentation.
Not confirmed. Partial postponements are under discussion, but August 2026 deadline for credit scoring stands today. Do not wait.
Yes, if OCR is used in a high-risk decision (e.g., extracting financial statements for credit scoring). RocketFin integrates OCR into its audit trail with complete traceability.
Fines up to EUR 15 million or 3% of global revenue (whichever is higher). Plus temporary deployment ban.
Complete model audit → Documentation → Robustness testing → Human oversight → NFRA registration. RocketFin guides you at each step.