Progressio.ai

Fast, Automated EU AI Act Audits

Autonomously assesses High-Risk AI documentation requirement by requirement, showing what is evidenced, exposing gaps, and recommending the actions needed to remediate them.

eu-ai-act_audit-summary.pdf
Audit summary

Legislation: EU AI Act

AI system: Atria Cardiac Risk Stratifier

Articles
9
Coverage rate
72.4%
Gap rate
27.6%
Provisions
76
Evidenced
55
Evidence gap
21
Coverage overview
Coverage rate:72.4% evidenced·27.6% evidence gap
Strongest coverage
Art 9 · 8 of 8 provisions
Most gaps
Art 14 · 5 of 7 provisions
EU AI Act · Audit SummaryProgressio.ai

Founded by

Specialists in technology law, AI, and enterprise software.

Built for

Legal and audit teams accountable for High-Risk AI.

The EU AI Act is already in force

Penalties of up to €35 million or 7% of global annual turnover, with enforcement powers live since August 2026. The Digital Omnibus moved the main High-Risk AI application dates to December 2027 and August 2028. The evidence runway is shorter than it looks.

  1. Feb 2025

    Prohibited AI practices ban in effect

  2. Aug 2025

    General-purpose AI (GPAI) obligations apply

  3. Aug 2026

    Transparency obligations and AI Office enforcement powers in force

  4. Dec 2027Upcoming

    High-Risk AI system requirements apply (Annex III)

  5. Aug 2028Upcoming

    High-Risk AI system requirements apply (Annex I)

Existing High-Risk AI systems may be subject to transitional provisions.

Timeline reflects Regulation (EU) 2024/1689 as amended by Regulation (EU) 2026/1744 (Digital Omnibus), in force since 27 July 2026. Last reviewed August 2026.

Evidence of intent is not evidence of execution

What was actually designed, implemented, tested, and operated must be evidenced against the requirements of the EU AI Act for High-Risk AI systems.

The challenge lies in connecting evidence to the requirements

01

Finding information

Multiple authors, organisational silos, and content spread across multiple systems.

02

Assessing the information

Completeness, consistency, ambiguity, and currency.

03

Mapping to the requirements

Connecting this vast body of information to the requirements of the EU AI Act for High-Risk AI systems.

04

Assessing the evidence

Assessing the strength of the evidence, identifying gaps, and determining remediation actions.

Search and retrieval tools can locate relevant material, but they cannot determine whether the available evidence sufficiently supports a specific requirement.

Consultants can provide guidance, but they cannot do the work for you.

See your High-Risk AI exposure clearly

One platform, one view, one source of truth about your evidence position against EU AI Act requirements for High-Risk AI systems, operable across the entire AI lifecycle at scale.

01

Maintain your High-Risk AI inventory

Maintain a searchable inventory of High-Risk AI systems with ownership, metadata, and provenance across the organisation.

02

Audit evidence requirement by requirement

Autonomously analyse documentation, identify relevant evidence, and assess suitability and completeness against each requirement.

03

Remediate and stay ready

Surface gaps, prioritise corrective action, and export evidence packs so readiness is continuous, not point-in-time.

Auditing at scale in minutes, not months

Compress months of evidence discovery for High-Risk AI systems into minutes.

Autonomous auditScanning
EU AI Act · Chapter III
  • Art. 9Risk management
  • Art. 10Data & data governance
  • Art. 11Technical documentation
  • Art. 12Record-keeping
  • Art. 13Transparency to users
  • Art. 14Human oversight
  • Art. 15Accuracy & robustness
  • Art. 17Quality management system
  • Art. 18Documentation retention
Coverage
0.0%evidenced
Evidence0
Gaps0
Provisions76
EU AI Act · Chapter IIIProgressio.ai

Each assessment delivers immediate value across the business

C-Suite

C-Suite

Strengthen executive oversight, secure a competitive advantage, and remove growth obstacles created by the EU AI Act.

Technology and Data

Technology and Data

Ship faster without the disruption of questionnaires and ad hoc evidence requests, through audits integrated into the AI lifecycle.

Legal and Compliance

Legal and Compliance

Collect and assess evidence against EU AI Act requirements faster, more consistently and at lower cost, identify gaps, track remediation and progress over time.

Built in the EU. Your data stays in the EU.

All customer data is processed and stored exclusively within the European Union. It never leaves EU jurisdiction and is never used to train our models.

Privacy by design

Built with privacy across every layer of the platform.

End-to-end encryption

AES-256 at rest and TLS 1.3 in transit.

Immutable audit trail

Every action logged with tamper-proof timestamps.

Recognised by

  • Governance Award
    OpenUK Awards 2025
  • UK AI100
    2025
  • Winner
    Women TechEU Deep-Tech

Frequently asked questions

No. Customer data is used to perform assessments, not to train our models. Progressio uses it only to identify and assess evidence against the relevant EU AI ACT requirements.

The platform is built for High-Risk AI systems under the EU AI Act. It assesses available evidence requirement by requirement against Articles 9–15, 17 and 18, showing what is supported and where gaps remain.

Assessment time depends on scope and the documentation available. Progressio.ai automates work that would otherwise require manual evidence discovery and assessment across multiple sources.

Progressio.ai identifies relevant facts in existing documentation, links them to individual EU AI Act requirements and determines whether the identified evidence supports each requirement. It identifies missing, ambiguous or contradictory evidence and areas requiring attention.

Progressio.ai works from the technical and operational documentation you already have, identifying and assessing relevant facts without requiring teams to complete manual questionnaires. Further input is only needed where the available evidence leaves a gap or ambiguity.

Basic tools rely on questionnaires or checklists. Other more advanced tools like search and retrieval agents can locate and summarize material. Progressio.ai goes further by assessing identified evidence and mapping it against each requirement, showing what the evidence supports, where gaps exist and offering remediation actions.

No. General-purpose language models are not used to determine whether the available evidence supports a requirement. They are used only to communicate the assessment results in clear, natural language.

Progressio.ai is built to support Legal and compliance teams to establish and defend an evidenced EU AI Act position for High-Risk systems. It reduces evidence-review effort and cost, limits disruption to technical teams, and gives executives clearer oversight of unresolved AI Act issues.

Yes. You can examine the evidence identified, see how it relates to each requirement, check the evidence state and any identified gaps, and review the resulting assessment.

We apply strict security controls to protect customer data throughout the assessment process. That includes controlled access, secure handling of uploaded and integrated data, and clear boundaries around how customer data is used within the platform.

Both. Depending on your environment, Progressio.ai can assess technical and operational documentation uploaded directly or made available through designated integrations.

Assess Faster. Act Sooner.

Stop spending months buried in evidence discovery and assessment. Progressio.ai automates the heavy lifting so your teams can focus on what matters.