AI accessed proprietary data — DTSA requires proof of misappropriation timeline
—DTSA + EU Trade Secrets Directive
Regulatory exposure — commonly overlooked:
Employee uses ChatGPT on confidential specs — employer owns DTSA claim, needs receipt of what AI saw. · CMA: you are liable for your AI agent like an employee — applies to every agentic commerce vertical.
TAM / Exposure
Trade secret theft $500B+ annual · AI accelerates exfiltration
Insurance lines
IP defense · Cyber · E&O
Exhibit authority
UK CMA Agent Liability Pack — AI Trade Secret Access Audit Pack
Global leaders
DOJ · Microsoft · OpenAI · EU IPO · WIPO · CMA · ICO · FCA
Session logs
Vendor integration logs purged in 30 days — Velaru receipt permanent.
Output similarity
AI output mirrors trade secret — receipt links input to output hash.
Inevitable disclosure
AI training on employee uploads — receipt proves disclosure occurred.
[United Kingdom] Post-Brexit divergence
UK not bound by EU AI Act but CMA/ICO more aggressive on agents.
[United Kingdom] London market
Lloyd's syndicates need AI decision audit for specialty lines.
[Text / Chat] Modality hook
Baseline — all frameworks apply to text decisions.
7 mandate layers (live)
Regulatory ClockCountdown to operative regulatory deadline — NAIC adoption, GSE mandate, EU transposition.Open →
Domain ClassifierIndustry-specific SAFE/CRISIS/VIOLATION with regulatory framework mapping.Open →
Exhibit / Filing PackRegulator-ready external validation — NAIC Exhibit D, Fannie QC, EU FRIA, FDA Part 11.Open →
Mandate RegistryEnroll deployers/insureds under vertical-specific governance mandate.Open →