VELARU GALACTIC EXHIBIT PACK — POST-QUANTUM CRYPTOGRAPHY Jurisdiction: New York (us_ny) Modality: Text / Chat Program: Velaru Post-Quantum Cryptography · New York (galactic_post_quantum_us_ny) Product ID: post_quantum:us_ny:bundle:text Vertical: post_quantum Generated: 2026-08-18T02:03:03.535089Z Authority: New York AI Governance Pack — PQC Migration Decision Audit Pack Deadline: NYDFS AI guidance + Local Law 144 enforcement Velaru verify: https://velaru.xyz/verify EXHIBIT A — AI INVENTORY [ { "named_entity": "Velari", "slug": "velari", "ai_use_case": "AI-assisted Post-Quantum Cryptography decisions", "vertical": "post_quantum", "risk_tier": "elevated", "external_validation": "Velaru independent receipt verification", "handler_receipt_lock": "https://velaru.onrender.com/r/4c58eac890bfd031ce2189de5a1ca9ea292a0c837f5f535daf164aef34f31e53", "compliance_state": "grace_period", "asymmetry_grade": "A", "found_scripture_export": "https://velaru.xyz/bundle/pre-dispute/d8fb129c0c0c78d05256/export.txt", "diligence_url": "https://velaru.xyz/diligence/velari" }, { "named_entity": "LinkAudit Test", "slug": "linkaudit-test", "ai_use_case": "AI-assisted Post-Quantum Cryptography decisions", "vertical": "post_quantum", "risk_tier": "elevated", "external_validation": "Velaru independent receipt verification", "handler_receipt_lock": "https://velaru.onrender.com/r/58ddedd1974156453bc55daef6a9857d8570d56388becbb2a80bf5bac76b771b", "compliance_state": "grace_period", "asymmetry_grade": "A", "found_scripture_export": "https://velaru.xyz/bundle/pre-dispute/78aa6e3f3a84cf1a88c0/export.txt", "diligence_url": "https://velaru.xyz/diligence/linkaudit-test" }, { "named_entity": "Link Audit Co", "slug": "link-audit-co", "ai_use_case": "AI-assisted Post-Quantum Cryptography decisions", "vertical": "post_quantum", "risk_tier": "elevated", "external_validation": "Velaru independent receipt verification", "handler_receipt_lock": "https://velaru.onrender.com/r/d00533b7b6c0495802b4250abd5c29f60bd9f2ad3fb141bba2d9a5afee5f5542", "compliance_state": "grace_period", "asymmetry_grade": "A", "found_scripture_export": "https://velaru.xyz/bundle/pre-dispute/fea572f3996c4b963779/export.txt", "diligence_url": "https://velaru.xyz/diligence/link-audit-co" } ] EXHIBIT B — GOVERNANCE FRAMEWORK { "framework": "Velaru Mandate Registry \u2014 Post-Quantum Cryptography", "exhibit_authority": "New York AI Governance Pack \u2014 PQC Migration Decision Audit Pack", "regulatory_frameworks": [ "NIST FIPS 203/204/205", "NSM-10", "EU eIDAS 2.0", "NYDFS Circular Letter on AI", "NYC Local Law 144", "Martin Act" ], "standards_alignment": [ "POSS-2", "DRP-1", "TCB", "FRE 707 pre-compliance", "ISO 42001" ], "human_oversight": "sign cryptographic record", "third_party_verification": "https://velaru.xyz/verify (operator-independent)", "data_lineage": "Hash-chained Ed25519 receipts; optional RFC3161 + external anchor", "mirror_trap": "Ed25519 receipts valid today \u2014 quantum threat requires algorithm agility documented in receipt metadata. \u00b7 Local Law 144 requires annual bias audit \u2014 Velaru receipts are continuous audit, not annual snapshot.", "chain_integrity": { "depth": 611, "invariant_holds": true } } EXHIBIT D — DATA INPUTS & VALIDATION { "data_validation_method": "Cryptographic receipt per AI decision; public verify without trusting deployer, vendor, or Velaru operator", "bias_testing_proxy": "Asymmetry score from live chain signals", "model_change_control": "Policy lock registry \u2014 criteria hash frozen pre-dispute", "logging_retention": "90-day pre-dispute window minimum; permanent verify permalinks", "external_validator": "Nisaba LLC / Velaru", "validator_independence": "Client-side Ed25519 verify; BYOK tri-receipt optional", "headline_stat": "Harvest now decrypt later \u2014 receipts signed today must plan ML-DSA migration", "global_leaders_addressed": [ "NIST", "NSA", "Cloudflare", "Google", "CISA", "NYDFS", "NYC DCWP", "Goldman Sachs" ] } MIRROR TRAP (regulatory insight) Ed25519 receipts valid today — quantum threat requires algorithm agility documented in receipt metadata. · Local Law 144 requires annual bias audit — Velaru receipts are continuous audit, not annual snapshot. NERVE CARDS — WHY GLOBAL LEADERS CARE [ { "title": "FIPS 203/204/205", "body": "NIST PQC standards finalized \u2014 migration receipt proves compliance timeline.", "source": "vertical" }, { "title": "eIDAS 2.0", "body": "EU qualified signatures moving to PQC \u2014 cross-border receipt compatibility.", "source": "vertical" }, { "title": "Long retention", "body": "7-year financial records \u2014 receipts must survive quantum timeline.", "source": "vertical" }, { "title": "[New York] Financial capital", "body": "NYDFS regulates insurers AND banks \u2014 same receipt primitive for both books.", "source": "jurisdiction" }, { "title": "[New York] Hiring audit law", "body": "NYC AEDT law is template for other cities \u2014 receipt architecture scales municipally.", "source": "jurisdiction" }, { "title": "[Text / Chat] Modality hook", "body": "Baseline \u2014 all frameworks apply to text decisions.", "source": "modality" } ] BOOK SUMMARY: { "total_insureds": 3, "compliant": 0, "grace_period": 3, "non_compliant": 0, "expired": 0, "not_enrolled": 0, "compliant_pct": 0.0 } TAM / EXPOSURE: Global crypto migration · every signed receipt must plan PQC upgrade INSURANCE LINES: Cyber, E&O DISCLAIMER: External validation evidence pack — not legal advice, not filed rate approval.