AS9100 Counterfeit Parts Standards: What Clause 8.1.4 Actually Requires in 2026

AS9100 Clause 8.1.4 requires aerospace suppliers to prevent counterfeit and suspect counterfeit parts from entering their supply chain. This guide breaks down how AS5553, AS6174, and AS6081 apply, where DFARS counterfeit clauses raise the bar for defense work, and what a right-sized prevention program looks like for suppliers of every size.

AS5553, AS6174, and AS6081 explained for aerospace suppliers building a counterfeit parts prevention program

Affiliate Disclosure: Some links in this article are affiliate links. If you purchase through them, The Standards Navigator may earn a commission at no additional cost to you.


A Counterfeit Part Doesn’t Announce Itself

A relabeled transistor looks identical to the real thing until it fails in the field. A remarked fastener passes visual inspection until someone pulls the cert and finds the lot number doesn’t trace back to anywhere real. That’s what makes counterfeit parts different from every other nonconformance you deal with — the part isn’t defective, it’s fraudulent, and your normal inspection process was never built to catch it. Closing that gap is exactly what AS9100 counterfeit parts controls exist to do.

If you’re certified to AS9100, you already know Clause 8.1.4 exists — if you’re still working through what AS9100 actually requires at a higher level, this clause is one piece of a much larger operational planning section. What trips up a lot of suppliers is figuring out how much program they actually need to build, which of the SAE standards apply to their specific supply chain, and whether their customer’s flow-down requirements go further than the base AS9100 clause does.

This guide breaks down what 8.1.4 requires, how AS5553, AS6174, and AS6081 fit together, where DFARS counterfeit clauses come into play for defense work, and what a right-sized prevention program looks like for a supplier that isn’t building satellites.

From the Floor: I’ve sat across the table from a supplier during a corrective action review after a customer audit flagged a raw material lot with no traceable mill certification — not a counterfeit electronic part, but the same root failure: nobody had a documented process for verifying the source before it hit the shop floor. The fix wasn’t complicated. It was a two-page procurement control procedure and a supplier approval list that didn’t exist before. Most operations managers assume counterfeit prevention means expensive testing equipment. Most of the time, it means closing the gap between what you assume your buyer is checking and what’s actually written down.

Before you build or rebuild a counterfeit parts prevention procedure, most operations managers are working from the wrong starting point — assuming their existing purchasing controls already cover it. Run a clause-by-clause AS9100 gap check before you touch your procurement procedure — most gaps show up in 8.1.4 first. Get the free AS9100 Rev D Gap Assessment Checklist and see exactly where your documentation stands against all 74 clause-level requirements, including counterfeit parts control.


In This Guide

  • What AS9100 Clause 8.1.4 requires — and what it deliberately leaves open
  • Why traceability is the foundation of counterfeit prevention
  • What qualifies as a suspect counterfeit part
  • AS5553, AS6174, and AS6081: which standard applies to your supply chain
  • DFARS 252.246-7007 and 252.246-7008 for defense-flow-down contractors
  • The three control points every prevention program needs: purchasing, receiving, inspection
  • GIDEP and why registrars ask about it during audits
  • Building a right-sized program if you don’t handle electronic parts
  • Common audit findings and how to close them


👉 Start Here (Top Resources)

  • AS9100 Rev D Gap Assessment Checklist — free 74-item clause-by-clause checklist to find where your counterfeit parts documentation stands today
  • 9001Simplified — pre-built AS9100 documentation packages that include a counterfeit parts prevention procedure template, so you’re not starting from a blank page
  • SAE/AS9100 Standard — ANSI Webstore — the current edition, needed as your baseline reference for Clause 8.1.4
  • BSI AS9100 Training — if your team needs a working understanding of how counterfeit prevention integrates into your broader QMS audit prep

What Clause 8.1.4 Actually Says

Quick Answer: AS9100 Clause 8.1.4 requires organizations to establish processes that prevent counterfeit or suspect counterfeit parts from entering their product, addressing supplier controls, traceability, inspection, personnel training, reporting, and management of obsolete parts.

AS9100 is maintained by the International Aerospace Quality Group (IAQG). AS9100D introduced Clause 8.1.4, “Prevention of Counterfeit Parts,” as a standalone requirement inside the operational planning and control section. In plain terms, it requires your organization to plan, implement, and control processes appropriate to your organization and product to prevent the use of counterfeit or suspect counterfeit parts, and to minimize the impact if one is discovered.

Here’s the part that surprises people: the clause itself doesn’t name AS5553, AS6174, or AS6081 directly. It leaves the “how” open, which is deliberate — a machine shop making titanium brackets and a Tier 1 avionics integrator face completely different counterfeit exposure, and a one-size-fits-all mandate wouldn’t work for either.


The Five Areas AS9100 Counterfeit Parts Controls Must Address

What it does require, at minimum, is that your process address:

  • Personnel training on counterfeit part risks and detection
  • Application of methods for detection appropriate to the parts you purchase
  • Maintaining traceability of parts and components to their original or authorized manufacturer — the same traceability backbone covered in Clause 8.5.2, which is why weak traceability records are a common thread behind both types of findings
  • A process for reporting counterfeit or suspect counterfeit parts to appropriate authorities
  • Control of parts that reach obsolescence or are no longer supported by the original manufacturer

If you are already ISO 9001 certified → this is one of the requirements with no direct ISO 9001 equivalent, which means you can’t repurpose an existing procedure — you need something built specifically for this clause.


Why Traceability Is the Foundation of Counterfeit Prevention

Every control in a counterfeit prevention program eventually comes back to one question: can you trace this part to its original manufacturer? That’s not a coincidence — it’s why registrars frequently write findings against Clause 8.1.4 and Clause 8.5.2 together during the same audit. A gap in one is almost always a gap in the other.

A working traceability chain for counterfeit prevention typically covers:

  • Original manufacturer traceability — a documented path from the part in your hands back to the OEM or an authorized aftermarket manufacturer, not just to whichever distributor you bought it from
  • Lot traceability — the ability to isolate every unit affected by a specific lot if a counterfeit or nonconforming condition is discovered after the fact
  • Mill certification traceability — for raw material and hardware, a cert that actually matches the heat or lot number stamped on the material, not just a document that arrived alongside it
  • Serialization where applicable — for high-consequence or flight-critical parts, unit-level identification that survives the part through receiving, inspection, and installation

Most counterfeit investigations don’t start with a lab test — they start when someone tries to trace a part backward and hits a dead end. Auditors treat 8.1.4 and 8.5.2 as connected for exactly that reason: a counterfeit part is, by definition, a traceability failure somewhere upstream. If your organization can’t demonstrate an unbroken chain back to an authorized source, no amount of visual inspection at receiving closes that gap. If you’re building or revising your counterfeit prevention procedure, do it alongside your traceability procedure rather than treating them as two separate audit prep exercises — most of the objective evidence a registrar wants overlaps between the two.


What Qualifies as a Suspect Counterfeit Part?

AS9100 counterfeit parts decision flow infographic showing the process for verifying traceability, quarantining suspect parts, investigating suppliers, reporting findings, and completing corrective actions.
This AS9100 counterfeit parts workflow shows the recommended process for handling suspect counterfeit parts, from documentation review through quarantine, investigation, reporting, and corrective action.

Before your team can detect a suspect counterfeit part, they need a working definition of what one looks like. In practice, a part gets flagged as suspect counterfeit when one or more of these conditions shows up:

  • Altered certifications — a certificate of conformance or test report that’s been modified, or that doesn’t match the part it accompanies
  • Relabeled or remarked materials — physical evidence of resurfacing, re-etching, or blacktopping to hide the original part marking
  • Missing or inconsistent traceability records — no documented path back to an authorized source, or documentation that doesn’t align with the physical part
  • Incorrect manufacturer markings — logos, date codes, or lot numbers that don’t match known authentic formatting for that manufacturer
  • Mismatched lot or date code information — a cert referencing one lot while the physical part is marked with another
  • Unauthorized substitutions — a part that performs the intended function but wasn’t sourced through an approved or franchised channel

None of these alone proves a part is counterfeit — but any one of them is enough to trigger quarantine and further investigation under a properly scoped 8.1.4 procedure. Training personnel to recognize these indicators, rather than assuming counterfeit detection requires lab equipment, is often the single highest-value control in a right-sized program.


The Three SAE Standards Behind Counterfeit Prevention

Registrars auditing Clause 8.1.4 don’t expect you to have memorized these standards, but they do expect your procedure to reflect the intent behind them. All three are published by SAE International, the same standards body responsible for the AS9100-series documents. Three matter most:

StandardScopeWho Needs It
AS5553Counterfeit electronic parts — avoidance, detection, mitigation, dispositionAny organization that procures or integrates electrical, electronic, or electromechanical (EEE) parts
AS6174Counterfeit materiel more broadly — not limited to electronicsOrganizations sourcing raw material, hardware, and non-electronic components with counterfeit risk
AS6081Prescriptive avoidance requirements for independent distributors buying from the open marketDistributors and brokers, not manufacturers buying direct from OEMs

If your organization operates as an independent distributor or broker rather than buying direct from OEMs, AS6081 is written specifically for your position in the supply chain — it sets prescriptive avoidance requirements for open-market purchases that AS5553 and AS6174 don’t fully address.

AS5553 has gone through several revisions since it was first published in 2009, reflecting how counterfeit detection techniques and supply chain risk have evolved. The current edition is AS5553E, published in 2025 — always confirm you’re referencing this edition rather than an older one sitting in a binder from your last certification cycle. Get the current AS5553E standard through ANSI Webstore — it’s the source document for the avoidance, detection, mitigation, and disposition requirements referenced throughout this section. The same discipline applies to the AS9100 standard itself: buy from an authorized source and confirm you’re working from the current revision before you build a procedure around it.

AS9100 counterfeit parts infographic comparing authorized aerospace supply chains with high-risk open market sourcing, highlighting traceability, supplier approval, and counterfeit prevention.
This comparison illustrates how authorized suppliers, complete traceability, and approved sourcing reduce AS9100 counterfeit parts risk compared to open-market purchasing and broken documentation.

If your shop doesn’t touch electronic components at all — pure machining, fabrication, or coatings work — AS6174 is the more relevant reference, since it covers materiel counterfeiting broadly rather than EEE parts specifically. Don’t assume “no electronics” means “no counterfeit exposure.” Counterfeit and mismarked raw material, fasteners, and castings are a documented problem in the fabrication supply chain too.

⚠️ Most common finding: Suppliers write a counterfeit parts procedure that references AS5553 by name but only handles electronic components — leaving raw material and hardware purchasing completely uncovered. If you’re under customer pressure to certify quickly → prioritize scoping your procedure correctly before you invest time drafting it.


DFARS: When Defense Contracts Raise the Bar

If any part of your supply chain touches a Department of Defense contract, two DFARS clauses may apply on top of your AS9100 obligations: DFARS 252.246-7007 (Contractor Counterfeit Electronic Part Detection and Avoidance System) and DFARS 252.246-7008 (Sources of Electronic Parts).

What the Two Clauses Actually Require

These clauses apply specifically to contractors subject to Cost Accounting Standards, and they require a documented system addressing a defined set of risk areas — training, inspection and testing criteria, traceability from the original manufacturer through to Government acceptance, supplier qualification, reporting and quarantining, and monitoring of industry alert databases for suspect parts. The requirement traces back to Section 818 of the 2012 National Defense Authorization Act, which was the original legislative response to counterfeit electronic parts turning up in military hardware.

Flow-Down Applies Regardless of Contract Size

If you supply into the defense industrial base — even as a sub-tier supplier several layers removed from the prime contractor — these requirements can flow down contractually regardless of contract size. Don’t assume flow-down doesn’t apply to you because you’re small. Check your purchase order terms and conditions directly.


The Three Control Points Auditors Check

AS9100 counterfeit parts infographic showing the three critical control points of purchasing, receiving inspection, and final inspection for counterfeit prevention.
The three primary control points for AS9100 counterfeit parts prevention are purchasing, receiving inspection, and final inspection, each playing a critical role in protecting the aerospace supply chain.

Regardless of which standards you reference, a workable counterfeit prevention program controls three points in your process:

Purchasing — Your procedure needs to define authorized sources: original component manufacturers, authorized distributors, or franchised sources. Any purchase from the open market or an unfranchised broker should trigger additional scrutiny, not the same approval as a direct-from-OEM buy. If a prospective supplier claims AS9100 certification, verify it against the IAQG OASIS database rather than taking the certificate at face value.

Receiving — Incoming inspection needs criteria specific to counterfeit detection, not just dimensional and functional acceptance. This can be as simple as visual inspection for remarking or resurfacing on lower-risk parts, up to X-ray or decapsulation testing for high-consequence electronic components.

Final inspection — A last check before parts move into production or assembly, catching anything that slipped through receiving inspection or that entered through an internal process gap.

If you are preparing for your first AS9100 certification → start with these three control points before you draft a single page of procedure text, and map them against your overall AS9100 implementation timeline so counterfeit prevention isn’t the piece you scramble to finish in the final weeks. Registrars will trace your process through all three during the stage 2 audit — the same receiving and final inspection points also show up in First Article Inspection requirements, so it’s worth aligning both procedures rather than building them in isolation. Gaps at any one point are a common nonconformance.


👉 Not Sure This Applies to You?

Before you decide your counterfeit exposure is low → verify it against your actual purchasing data, not your assumption. Download the AS9100 Rev D Gap Assessment Checklist and run your procurement records against the clause 8.1.4 criteria in under 45 minutes.


GIDEP and Reporting Obligations

The Government-Industry Data Exchange Program (GIDEP) is the primary clearinghouse where confirmed and suspect counterfeit parts get reported across the aerospace and defense industry. It isn’t mentioned by name inside AS9100 itself, but registrars routinely ask during audits whether your organization monitors GIDEP alerts and has a documented process for screening incoming reports against your active part numbers.

Reporting works both directions. If you discover a suspect counterfeit part, your procedure should define who reports it, to whom, and on what timeline — both internally and, where required by contract, externally to GIDEP or your customer’s designated reporting channel. A procedure that only covers detection and not reporting is incomplete against both AS9100’s intent and most customer flow-down requirements.


Right-Sizing Your Program

Not every AS9100-certified supplier needs a full electronic parts testing lab. If you’re a small or mid-size fabrication or machining operation with limited electronic content in your product mix, a right-sized program typically includes:

  • A documented supplier approval list limited to OEMs, authorized distributors, or franchised sources
  • A written procedure defining what triggers additional scrutiny — any open-market or broker purchase
  • Incoming inspection criteria that specifically call out counterfeit indicators, not just dimensional checks
  • A process for screening GIDEP alerts relevant to your part numbers, even if that’s a manual monthly check rather than an automated feed
  • A defined reporting and quarantine process for suspect parts

Quick Audit Checklist

  • ✅ Counterfeit parts procedure exists and is controlled as a quality document
  • ✅ Approved supplier list distinguishes OEM/franchised sources from open-market sources
  • ✅ Receiving inspection includes counterfeit-specific criteria
  • ✅ Personnel who approve purchases have received counterfeit awareness training
  • ✅ GIDEP monitoring process is documented, even if manual
  • ✅ Reporting and quarantine process defines responsible roles and timelines
  • ✅ Obsolete part sourcing is addressed separately from standard procurement

Common Audit Findings

The objection I hear most from operations managers building this out for the first time is cost — the assumption that counterfeit prevention means investing in testing equipment they can’t justify for their volume. That’s rarely what triggers a nonconformance. The findings that actually show up during AS9100 audits are almost always documentation and scope gaps, not technical capability gaps:

  • A counterfeit parts procedure exists but was never updated after the organization started sourcing a new part category
  • Training records don’t show counterfeit awareness training was actually delivered, even though the procedure references it
  • The approved supplier list doesn’t distinguish franchised distributors from open-market brokers
  • No evidence of GIDEP monitoring, even informally
  • Reporting process is undefined — the procedure says “report suspect parts” without naming who, how, or within what timeframe

If you are already ISO 9001 certified → the good news is your document control and corrective action processes already exist. You’re not building a new management system, just a new procedure that plugs into the one you have — see our full breakdown of AS9100 vs ISO 9001 for the other clauses in the same category. Counterfeit prevention is also just one piece of the broader aerospace supplier compliance picture, which is worth reviewing if you’re building out your quality system section by section.


FAQ

Does AS9100 require a separate written procedure for counterfeit parts?

AS9100 Clause 8.1.4 doesn’t explicitly mandate a standalone written procedure, but in practice nearly every registrar expects to see one as objective evidence that your organization has planned, implemented, and controlled the required processes. A reference buried inside a general purchasing procedure rarely satisfies an auditor looking for a documented, controllable process.

Do I need AS5553 certification to pass an AS9100 audit?

No. AS5553 is a standard your counterfeit prevention procedure can be built around, but AS9100 doesn’t require separate certification to it. Some customers request AS5553 alignment or certification as a flow-down requirement, which is different from what your registrar checks during your AS9100 surveillance or recertification audit.

What’s the difference between AS5553 and AS6174?

AS5553 covers counterfeit electrical, electronic, and electromechanical (EEE) parts specifically. AS6174 covers counterfeit materiel more broadly, including raw material, hardware, and non-electronic components. If your product mix includes both, your procedure should reference both.

Does a machine shop with no electronic components need a counterfeit parts program?

Yes. Clause 8.1.4 applies to counterfeit and suspect counterfeit parts generally, not just electronics. Fabrication and machining operations should scope their program around AS6174’s materiel-focused guidance rather than assuming AS5553’s electronic parts focus is the only relevant reference.

What is GIDEP and do I have to use it?

GIDEP (the Government-Industry Data Exchange Program) is the industry clearinghouse for counterfeit and nonconforming part alerts. AS9100 doesn’t name it directly, but registrars commonly expect evidence that your organization monitors relevant GIDEP alerts as part of your detection process, and reports confirmed or suspect counterfeit parts through it when required by contract.

Do DFARS counterfeit parts clauses apply to me if I’m not a prime defense contractor?

Possibly. DFARS 252.246-7007 and 252.246-7008 apply to contractors subject to Cost Accounting Standards, but the requirements can flow down contractually to sub-tier suppliers regardless of your direct relationship with the government. Check your purchase order terms rather than assuming your distance from the prime contractor exempts you.

How often should the approved supplier list be reviewed for counterfeit risk?

There’s no fixed interval mandated by AS9100 itself, but most effective programs review the approved supplier list at least annually, and immediately whenever a new part category or supplier is added — particularly if that supplier isn’t a franchised distributor or the original manufacturer.

What’s the most common reason suppliers fail this clause during an audit?

Scope gaps, not missing technology. A procedure that names AS5553 but never addresses non-electronic materiel, or a training program that exists on paper but has no records showing it was delivered, are the findings that show up most often — not a lack of expensive test equipment.


📥 Free Resources


Not Sure What to Do Next?

🔹 Still researching what your program needs to look like? Download the free AS9100 Rev D Gap Assessment Checklist and map your current procurement controls against all 74 clauses before you draft anything.

🔹 Ready to build the documentation? 9001Simplified’s AS9100 packages include a counterfeit parts prevention procedure template built to satisfy Clause 8.1.4 — a faster starting point than drafting from scratch. Not sure if a documentation kit is worth it? Read our honest 9001Simplified review first.

🔹 Need to reference the standard itself while you write your procedure? Get the current SAE/AS9100 standard through ANSI Webstore — use code CC2026 for 5% off through December 31, 2026.

🔹 Need your team trained on how this fits into your broader QMS? BSI’s AS9100 training courses cover counterfeit prevention alongside the rest of the AS9100 clause set. Weighing BSI against another registrar? Compare BSI vs ISOQAR before you commit.

Clause 8.1.4 isn’t the hardest requirement in AS9100 — it’s the one most suppliers underestimate because it looks like a paperwork exercise until an auditor asks to see a GIDEP screening process that doesn’t exist. The Standards Navigator will keep tracking this requirement as counterfeit risk across the aerospace supply chain continues to shift.


Stay Ahead of Aerospace Compliance Requirements

Suppliers that treat Clause 8.1.4 as an afterthought find out the hard way, mid-audit. Suppliers that build the procedure early, with clear supplier approval criteria and a documented GIDEP screening process, walk into that same audit with one less place for a nonconformance to hide. That’s the gap The Standards Navigator exists to close for aerospace suppliers working through AS9100.

👉 Get updates on AS9100 clause interpretation and aerospace compliance
👉 Be first to access new aerospace gap assessment tools and documentation resources

Subscribe

* indicates required

The Standards Navigator — Industrial Compliance. Clearly Explained.

Aerospace Supplier Compliance Standards: What Every Supplier Needs to Know in 2026

Aerospace suppliers face a layered compliance landscape — AS9100 certification is the baseline, but NADCAP accreditation, First Article Inspection, counterfeit parts controls, and customer flow-down requirements are equally enforced. This guide covers every standard and program aerospace primes audit against, with practical checklists and implementation guidance for quality managers.

The complete guide to AS9100, NADCAP, FAI, and the quality requirements aerospace primes actually enforce

Affiliate Disclosure: Some links in this article are affiliate links. If you purchase through them, The Standards Navigator may earn a commission at no additional cost to you.


The Aerospace Supply Chain Has a Short Memory for Second Chances

You get one bad audit. One missed First Article Inspection. One nonconformance that reaches the flight line. That is all it takes to lose an aerospace contract you spent years building.

Aerospace primes — Boeing, Lockheed Martin, Raytheon, Northrop Grumman — do not operate on goodwill. They operate on documented, auditable evidence that every supplier in their chain meets a defined set of compliance requirements. Those requirements are not flexible. They are not negotiable. And they are layered — meaning AS9100 certification alone does not cover everything your customer may require.

This aerospace supplier compliance standards guide breaks down the full compliance landscape: the standards, the programs, the certification requirements, and what aerospace suppliers actually get audited against on the shop floor.

If you are preparing for your first aerospace contract, adding an aerospace customer to an existing customer base, or trying to understand why your customer’s supplier quality team keeps asking for documentation you did not know you needed — this is where to start.

Before your Stage 1 audit, know exactly where your QMS stands. Run a clause-by-clause gap assessment now — before your registrar does. Download the AS9100 Rev D Gap Assessment Checklist →


In This Guide

  • The AS9100 Rev D standard and what it requires beyond ISO 9001
  • NADCAP accreditation — what it is, which processes require it, and when it applies
  • First Article Inspection (AS9102) — scope, deliverables, and common findings
  • Counterfeit parts prevention and AS5553/AS6174
  • FOD control requirements
  • Customer-specific flow-down requirements and how to manage them
  • How to verify a supplier’s certifications before awarding a contract


👉 Start Here — Top Resources for Aerospace Suppliers

Before you read further, these are the resources aerospace suppliers actually use:


AS9100 Rev D: The Foundation of Aerospace Quality

Quality engineers review aerospace supplier compliance standards inside a modern aircraft manufacturing facility with a fuselage assembly, machining equipment, and inspection stations
Quality personnel review engineering documentation on the aerospace shop floor while aircraft structures and manufacturing operations continue in the background.

AS9100 is the non-negotiable baseline. Every organization supplying parts, assemblies, or services to the aerospace and defense industry — whether you are a Tier 1, Tier 2, or Tier 3 supplier — is expected to hold AS9100 certification or demonstrate that your QMS meets equivalent requirements.

AS9100 Rev D is the current revision, published in 2016. It incorporates all of ISO 9001:2015 verbatim and adds aerospace-specific requirements on top of the quality management foundation. The IAQG — International Aerospace Quality Group — governs the standard and maintains the OASIS certification database.

What AS9100 Adds Beyond ISO 9001

The standard adds requirements that reflect the risk profile of aerospace manufacturing — where a single nonconformance can have catastrophic consequences. Key additions include:

AS9100 RequirementISO 9001 EquivalentWhy It Matters in Aerospace
Risk management (beyond Clause 6.1)Risk-based thinkingFormal risk identification, mitigation, and tracking for each program
Configuration managementNot requiredEnsures part revisions are controlled and traceable across the supply chain
First Article Inspection (FAI)Not requiredRequired verification that first production part meets all design requirements
Product/process change controlChange managementAny deviation from approved baseline requires documented approval
Counterfeit parts preventionNot requiredDocumented controls to prevent unapproved or fraudulent parts from entering the supply chain
FOD preventionNot requiredForeign Object Damage/Debris programs with documented procedures
Customer-designated special requirementsNot requiredFlow-down and implementation of prime contractor requirements
Key characteristicsNot requiredIdentification and control of dimensions or features with elevated risk

Most common finding: Organizations that are ISO 9001 certified assume the gap to AS9100 is small. It is not. The configuration management, FOD, and counterfeit parts requirements alone require building procedures that do not exist in a typical ISO 9001 QMS.

If you are already ISO 9001 certified, the AS9100 vs ISO 9001 comparison breaks down every additional requirement clause by clause.

For complete scope on what AS9100 certification involves, what it costs, and how long it takes, the What Is AS9100? pillar article covers the full picture.


NADCAP: Special Process Accreditation

NDT technician performing ultrasonic testing on an aerospace aluminum component using an ultrasonic probe and portable inspection instrument displaying waveform data.
An NDT technician conducts ultrasonic inspection on an aerospace component to verify material integrity and identify potential internal defects.

NADCAP is separate from AS9100 — and your customer will require both.

NADCAP — National Aerospace and Defense Contractors Accreditation Program — is a special process accreditation program managed by the Performance Review Institute (PRI). It applies to organizations performing specific high-risk manufacturing processes where process control is critical to product integrity.

AS9100 certifies your quality management system. NADCAP accredits specific processes within that system. A machined airframe component supplier may need AS9100 certification. If that same supplier performs heat treating, NDT, or chemical processing in-house, NADCAP accreditation is required for those processes — regardless of AS9100 status.

Processes That Require NADCAP Accreditation

Process CategoryExamples
Heat TreatingAnnealing, aging, stress relief, case hardening
Non-Destructive Testing (NDT)Ultrasonic, radiographic, penetrant, magnetic particle, eddy current
Chemical ProcessingAnodizing, plating, passivation, conversion coating
WeldingFusion welding per aerospace specifications
CoatingsThermal spray, paint (where specified by prime)
CompositesLay-up, cure, bonding operations
Electrical/Electronic ProcessingSoldering, conformal coating
Fluid Distribution SystemsTube bending, assembly

What NADCAP Audits Cover

NADCAP audits are process-specific and technically rigorous. Auditors evaluate process parameters, equipment qualification, operator qualification, traceability of materials, and conformance to applicable customer and industry specifications.

A NADCAP audit is not a QMS audit — it is a process performance audit. Findings are classified as Critical, Major, or Minor. Critical findings result in immediate suspension of work.

If you are a supplier: Do not assume your customer will accept your subcontractor’s NADCAP accreditation for flow-down purposes without reviewing the approved scope. NADCAP accreditation is scope-specific. Heat treating accreditation for aluminum alloys does not cover titanium heat treating.

If your aerospace customer has asked for NADCAP compliance in your supplier requirements — and you are not sure what processes in your facility are in scope — your AS9100 QMS needs a process risk review before your next customer audit. Download the AS9100 Rev D Gap Assessment Checklist →


First Article Inspection: AS9102

First Article Inspection is one of the most frequently cited sources of supplier nonconformances in aerospace.

AS9102 — Aerospace First Article Inspection Requirement — defines the methodology for verifying that the first production article (or first article after a significant change) meets all engineering, design, and manufacturing requirements. The standard is separate from AS9100 but is required by AS9100 Rev D Clause 8.1.3.

What FAI Covers

A complete FAI under AS9102 includes three forms:

FormTitleScope
Form 1Design DocumentationVerification that the correct drawing revision, specifications, and notes are captured
Form 2Product AccountabilityBill of materials, materials certification, and raw material traceability
Form 3Characteristic AccountabilityMeasurement of every dimension and characteristic on the drawing — not a sample

Form 3 is where most suppliers get tripped up. Every characteristic on the engineering drawing — not a selected subset — must be measured and documented. This includes tolerances, surface finishes, thread forms, and any geometric dimensioning and tolerancing (GD&T) callouts.

When FAI Is Required

FAI is not a one-time event. AS9102 specifies that a new or updated FAI is required when:

  • A new part number is introduced to production
  • A drawing or specification is revised (full or partial FAI, depending on the scope of change)
  • A manufacturing process, facility, or tooling is changed in a way that could affect form, fit, or function
  • Production has been inactive for more than two years

Most common finding: Suppliers treat FAI as a drawing check rather than a full measurement event. Partial FAIs submitted without Form 2 material traceability or without measuring all Form 3 characteristics are rejected by customer quality teams and result in production holds.


Counterfeit Parts Standards: AS5553 and AS6174

Counterfeit parts are a documented safety risk in aerospace. The FAA, DoD, and aerospace primes have all implemented mandatory controls. Your QMS must address them explicitly.

Two SAE standards define the requirements:

AS5553 — Fraudulent/Counterfeit Electronic Parts: Avoidance, Detection, Mitigation, and Disposition. Applies to electronic components — integrated circuits, semiconductors, connectors, and any electronics where counterfeit substitution is a risk.

AS6174 — Counterfeit Materiel: Avoidance, Detection, Mitigation, and Disposition. Broader scope covering raw materials, fasteners, and other non-electronic hardware.

What Your QMS Must Include

A compliant counterfeit parts program under AS9100 Rev D requires documented procedures covering:

  • Approved supplier lists (ASL): Purchasing only from authorized manufacturers, franchised distributors, or approved aftermarket sources
  • Receiving inspection: Risk-based inspection criteria for parts that cannot be sourced from authorized channels
  • Traceability: Certificate of conformance, test reports, and chain of custody documentation for all parts
  • Suspect/confirmed counterfeit parts: Quarantine, reporting, and disposition procedures — including mandatory reporting to GIDEP (Government-Industry Data Exchange Program) for defense contracts
  • Training: Evidence that personnel involved in procurement and receiving inspection are trained to identify suspect parts

If you are a manufacturer and not a distributor, the most critical element is your approved supplier list and purchasing controls — because your customer’s AS9100 audit will verify that you are buying from controlled sources.


FOD Control Requirements

Aerospace tool control shadow board displaying torque wrenches, calipers, safety wire pliers, borescope, and precision hand tools with one tracked tool removed.
A structured tool control system helps aerospace manufacturers maintain accountability, prevent FOD incidents, and ensure every tool is tracked throughout production.

Foreign Object Damage and Debris is a zero-tolerance issue in aerospace.

FOD — Foreign Object Damage or Debris — refers to any substance, material, or item that could potentially damage equipment or endanger personnel. A loose fastener in a fuel system. A rag left in an aircraft cavity. Metal chips in a precision assembly. In aerospace, these are not housekeeping issues — they are quality system failures.

AS9100 Rev D Clause 8.5.1 requires documented controls to prevent FOD throughout manufacturing, assembly, and test operations. Customer-specific FOD requirements are typically more detailed and flow down through purchase order terms.

Minimum FOD Program Elements

✅ Written FOD prevention procedure specific to your facility and processes
✅ Designated FOD critical areas with defined access controls
✅ Tool control program — shadow boards, tool counts, calibrated tool tracking
✅ Contamination controls during assembly and inspection operations
✅ FOD walks and documented area inspections on defined frequency
✅ Employee training and awareness records
✅ FOD incident reporting and corrective action process
✅ Customer notification procedure when FOD is suspected or confirmed

Most common finding: FOD programs exist as a procedure document but are not operationally active. Auditors look for evidence — completed FOD walk records, tool control logs, training records — not just a written procedure. The procedure without the records is a Major finding.


Customer Flow-Down Requirements

Your prime contractor’s requirements are your requirements.

This is the element that surprises suppliers who are new to aerospace. AS9100 certification means you have a compliant quality management system. It does not mean your prime contractor’s specific engineering, quality, and documentation requirements are automatically met. Those flow down — meaning they are passed from the prime to you through purchase order terms, quality clauses, and source control documentation.

Common Flow-Down Requirements

CategoryExamples
Quality planFirst Article requirements, inspection frequencies, statistical process control
EngineeringSpecification compliance, drawing revision control, DER approvals
MaterialMaterial certifications, approved material sources, trace requirements
ManufacturingApproved process specifications (e.g. BAC, SPE, DPS), NADCAP process approvals
DocumentationRecord retention requirements (typically 10+ years for flight-critical parts)
Access and oversightRight-to-access for customer source inspection, government source inspection
ReportingGIDEP reporting, escape reporting, timelines for nonconformance notification

Managing Flow-Down in Your QMS

Your QMS must have a documented process for:

  1. Reviewing purchase orders for quality clauses before accepting the order
  2. Translating customer requirements into internal work instructions and inspection plans
  3. Verifying that sub-tier suppliers (your suppliers) receive applicable flow-down requirements
  4. Maintaining records that demonstrate compliance with customer-specific requirements

If you are receiving flow-down requirements you do not understand: Your customer’s supplier quality team is your first contact. Do not guess. Documenting a misunderstood requirement incorrectly is worse than asking for clarification — because the audit finding will be a major nonconformance, not a simple misunderstanding.

If you are evaluating whether your quality system is ready for AS9100 certification, start with the How Much Does AS9100 Certification Cost? article for a complete breakdown of what certification actually involves.

BSI Group offers AS9100 training specifically designed for suppliers building compliant QMS documentation — covering the clause requirements and flow-down obligations that come with aerospace contracts.


How to Verify Supplier Certifications

Never take a supplier’s word for AS9100 certification. Verify it directly.

The IAQG OASIS Database is the official global registry for AS9100, AS9110, and AS9120 certifications. Every accredited certification is listed with scope, effective date, expiration date, and the certification body that issued it. If a supplier claims AS9100 certification and they are not in OASIS, the certification is not valid.

What to Verify in OASIS

  • Certification status: Active, suspended, or withdrawn
  • Scope of certification: Does it cover the specific product category or process your supplier is performing?
  • Expiration date: AS9100 certificates expire and require surveillance audits — a certificate that has not been renewed is not valid
  • Certification body: Is the CB accredited by a recognized accreditation body (ANAB, DAkkS, UKAS)?

For NADCAP accreditation verification, the PRI supplier database at pri-network.org lists all accredited suppliers by commodity and scope.

If you are a quality manager building or updating an approved supplier list for an aerospace program — your supplier evaluation process needs to include OASIS verification as a mandatory step before award and at each annual review.


Compliance Checklist for Aerospace Suppliers

Use this checklist to assess your current compliance posture before a customer audit or certification audit.

Quality Management System
✅ AS9100 Rev D certification current and active in OASIS
✅ QMS manual and procedures documented and controlled
✅ Internal audit program covers all AS9100 clauses — not just ISO 9001 requirements
✅ Management review records demonstrate review of aerospace-specific metrics

First Article Inspection
✅ FAI procedure documented per AS9102
✅ Form 1, Form 2, and Form 3 completed for all active part numbers
✅ FAI triggers defined — changes that require new or partial FAI
✅ FAI records retained and retrievable

Counterfeit Parts
✅ Counterfeit parts prevention procedure in place
✅ Approved supplier list (ASL) current and controls defined
✅ Receiving inspection criteria address suspect parts
✅ Personnel training records current

FOD
✅ FOD prevention procedure active and specific to your facility
✅ FOD walk and inspection records maintained on required frequency
✅ Tool control program in place with records
✅ Employee training documented

Flow-Down
✅ Purchase order review process in place
✅ Customer quality clauses translated to internal requirements
✅ Sub-tier flow-down process documented and verified
✅ Record retention meets customer requirements (typically 10+ years)

NADCAP (if applicable)
✅ All in-scope special processes identified
✅ NADCAP accreditation current for each process
✅ Scope of accreditation matches actual work performed
✅ Sub-tier NADCAP requirements verified and documented


FAQ

What is the difference between AS9100 and NADCAP?

AS9100 Rev D is a quality management system standard that certifies your organization’s overall quality processes — planning, documentation, corrective action, customer satisfaction, and so on. NADCAP is a special process accreditation that applies to specific manufacturing processes such as heat treating, NDT, chemical processing, and welding. AS9100 certification is a QMS-level requirement. NADCAP is a process-level requirement. Aerospace suppliers performing special processes are typically required to hold both.

Do I need AS9100 certification to supply aerospace parts?

In most cases, yes — if you are a direct supplier (Tier 1 or Tier 2) to an aerospace prime or defense contractor. Some lower-tier commodity suppliers may not be required to hold AS9100 certification, but customer flow-down requirements and purchase order quality clauses will define the specific requirement. Review your customer’s supplier quality requirements before assuming certification is not needed.

How do I know if my process requires NADCAP accreditation?

Review your customer’s purchase order quality clauses and their approved supplier requirements document. Primes typically maintain a list of processes that require NADCAP accreditation for their programs. If you perform heat treating, NDT, chemical processing, or welding on aerospace parts and your customer has not specified NADCAP — ask. The absence of a requirement on the PO does not always mean the requirement does not exist.

What is a First Article Inspection and when is it required?

A First Article Inspection (FAI) is a formal verification process, defined by AS9102, that the first production article meets all design and engineering requirements. It is required for new part introductions, after drawing or specification revisions, after significant manufacturing process or tooling changes, and after production gaps of two or more years. A complete FAI requires documentation on three forms covering design documents, material traceability, and measurement of every drawing characteristic.

How long does AS9100 certification take?

For an organization with no existing quality management system, the implementation and certification process typically takes 9 to 18 months. Organizations already certified to ISO 9001 can typically close the gap to AS9100 in 6 to 12 months, depending on the number of additional requirements that need to be built out. The How Much Does AS9100 Certification Cost? article covers timelines and costs in detail.

What is the OASIS database and how do I use it?

OASIS — Online Aerospace Supplier Information System — is the IAQG-maintained database of all AS9100, AS9110, and AS9120 certifications worldwide. You can search by organization name, location, or CAGE code to verify a supplier’s certification status, scope, expiration date, and issuing certification body. Access it at oasis.sae.org. Verifying supplier certifications in OASIS should be a standard step in your approved supplier list maintenance process.

What are customer flow-down requirements in aerospace?

Flow-down requirements are the specific quality, engineering, documentation, and process requirements that a prime contractor passes down to their supply chain through purchase order terms and quality clauses. They are legally binding once accepted on a PO. Common examples include FAI requirements, material certification requirements, NADCAP requirements for special processes, record retention periods, and customer source inspection rights. Your QMS must have a documented process for reviewing, implementing, and flowing these requirements to your own sub-tier suppliers.

Can I use my ISO 9001 certification for aerospace customers temporarily while pursuing AS9100?

In most cases, no. ISO 9001 certification does not meet AS9100 requirements. Some customers may grant a temporary waiver for lower-risk commodity suppliers, but for any direct aerospace supply involving flight-critical parts or assemblies, AS9100 certification is typically required before production can begin. Discuss your timeline with your customer’s supplier quality team — do not assume a waiver will be granted.


📥 Free Resources

AS9100 Rev D Gap Assessment Checklist — 74-item clause-by-clause checklist for aerospace suppliers assessing their QMS before certification. Covers every AS9100-specific requirement beyond ISO 9001.

ISO 9001 Roadmap — Step-by-step implementation guide for manufacturers building or improving a quality management system. Useful as a foundation before layering AS9100 requirements.

Manufacturing Compliance Checklist — Practical compliance reference covering key ISO, OSHA, and quality requirements for production environments.

Supplier Quality Checklist — Evaluation tool for assessing supplier quality controls and flow-down compliance before audits or new contracts.

ISO 13485 Gap Assessment Checklist — Free checklist for medical device manufacturers assessing their QMS against ISO 13485 requirements.


Not Sure What to Do Next?

🔹 If you are new to aerospace and need to understand AS9100 from the ground up — start with What Is AS9100? for a complete overview of the standard, certification process, and supply chain requirements.

🔹 If you are ready to buy the AS9100 Rev D standard — purchase the official document through the ANSI Webstore. Use code CC2026 for 5% off through December 31, 2026. The standard is available in digital and print formats and ships internationally.

🔹 If you need AS9100 training for your team or are selecting a certification bodyBSI Group offers the full range of AS9100 courses from awareness through lead auditor, and serves as both a training provider and accredited certification body.

Aerospace compliance is not a project with a finish line. Certification is the beginning. The organizations that hold their approvals and grow within the supply chain are the ones that build compliance into operations — not just into audit prep.

The Standards Navigator covers the full aerospace compliance landscape, from AS9100 certification requirements to NADCAP process accreditation and FAI methodology. Use the resources above to make your next audit a confirmation of what you already know — not a discovery of what you missed.


Stay Ahead of Aerospace Compliance Changes

Losing an aerospace approval because a standard revision or customer requirement changed while you were focused on production is the most preventable kind of failure. Most organizations that fall behind on compliance don’t miss the requirement — they miss the update.

The suppliers who keep their approvals long-term are the ones who treat compliance information the same way they treat production scheduling: as an ongoing operational discipline, not a one-time project.

The Standards Navigator covers AS9100, NADCAP, FAI, and the full aerospace supplier compliance landscape — explained in plain language for quality managers and operations teams who need to act on the information, not just read it.

👉 Get updates when new aerospace compliance articles are published
👉 Be first to access new AS9100 implementation resources and checklists

Subscribe below to stay ahead.

Subscribe

* indicates required

The Standards Navigator — Industrial Compliance. Clearly Explained.