10 CFR 50 requires documented safety analysis — AI recommendation without record = violation
—NRC AI guidance + NERC CIP
Regulatory exposure — commonly overlooked:
Predictive maintenance AI influences outage decisions — utility owns NRC finding, vendor owns SaaS SLA. · CMA: you are liable for your AI agent like an employee — applies to every agentic commerce vertical.
TAM / Exposure
US nuclear fleet · NRC increasing AI scrutiny post-2024 guidance
Insurance lines
Nuclear property · Utility liability
Exhibit authority
UK CMA Agent Liability Pack — Nuclear AI Safety Decision Pack
Global leaders
NRC · Exelon · NERC · IAEA · Duke Energy · CMA · ICO · FCA
Safety-related AI
Any AI touching safety systems requires 10 CFR 50.59 evaluation — receipt is evaluation record.
NERC CIP
Cybersecurity of AI accessing BES — CIP-007 applies to AI agents on OT network.
Insurance uninsurable
Without external validation, nuclear AI risks become uninsurable — plant outage cost $1M/day.
[United Kingdom] Post-Brexit divergence
UK not bound by EU AI Act but CMA/ICO more aggressive on agents.
[United Kingdom] London market
Lloyd's syndicates need AI decision audit for specialty lines.
[Text / Chat] Modality hook
Baseline — all frameworks apply to text decisions.
7 mandate layers (live)
Regulatory ClockCountdown to operative regulatory deadline — NAIC adoption, GSE mandate, EU transposition.Open →
Domain ClassifierIndustry-specific SAFE/CRISIS/VIOLATION with regulatory framework mapping.Open →
Exhibit / Filing PackRegulator-ready external validation — NAIC Exhibit D, Fannie QC, EU FRIA, FDA Part 11.Open →
Mandate RegistryEnroll deployers/insureds under vertical-specific governance mandate.Open →