VELARU GALACTIC EXHIBIT PACK — AGENTIC COMMERCE Jurisdiction: New York (us_ny) Modality: Text / Chat Program: Velaru Agentic Commerce · New York (galactic_agentic_commerce_us_ny) Product ID: agentic_commerce:us_ny:bundle:text Vertical: agentic_commerce Generated: 2026-08-17T06:23:25.535651Z Authority: New York AI Governance Pack — Mandate-to-Settlement Audit Trail Pack Deadline: UK CMA agent liability guidance Velaru verify: https://velaru-erra.onrender.com/verify EXHIBIT A — AI INVENTORY [] EXHIBIT B — GOVERNANCE FRAMEWORK { "framework": "Velaru Mandate Registry \u2014 Agentic Commerce", "exhibit_authority": "New York AI Governance Pack \u2014 Mandate-to-Settlement Audit Trail Pack", "regulatory_frameworks": [ "FTC Section 5", "UCC Article 2", "EU AI Act Annex III", "NYDFS Circular Letter on AI", "NYC Local Law 144", "Martin Act" ], "standards_alignment": [ "POSS-2", "DRP-1", "TCB", "FRE 707 pre-compliance", "ISO 42001" ], "human_oversight": "authorize agent purchase", "third_party_verification": "https://velaru-erra.onrender.com/verify (operator-independent)", "data_lineage": "Hash-chained Ed25519 receipts; optional RFC3161 + external anchor", "mirror_trap": "Stripe Agentic Commerce Suite needs proof layer \u2014 Velaru is what makes agent transactions auditable for chargebacks. \u00b7 Local Law 144 requires annual bias audit \u2014 Velaru receipts are continuous audit, not annual snapshot.", "chain_integrity": { "depth": 2, "invariant_holds": true } } EXHIBIT D — DATA INPUTS & VALIDATION { "data_validation_method": "Cryptographic receipt per AI decision; public verify without trusting deployer, vendor, or Velaru operator", "bias_testing_proxy": "Asymmetry score from live chain signals", "model_change_control": "Policy lock registry \u2014 criteria hash frozen pre-dispute", "logging_retention": "90-day pre-dispute window minimum; permanent verify permalinks", "external_validator": "Nisaba LLC / Velaru", "validator_independence": "Client-side Ed25519 verify; BYOK tri-receipt optional", "headline_stat": "You are liable for your agent like an employee \u2014 CMA March 2026", "global_leaders_addressed": [ "Stripe", "Shopify", "Google", "Mastercard", "ADR Institute (LCP)", "NYDFS", "NYC DCWP", "Goldman Sachs" ] } MIRROR TRAP (regulatory insight) Stripe Agentic Commerce Suite needs proof layer — Velaru is what makes agent transactions auditable for chargebacks. · Local Law 144 requires annual bias audit — Velaru receipts are continuous audit, not annual snapshot. NERVE CARDS — WHY GLOBAL LEADERS CARE [ { "title": "Chargeback defense", "body": "Five evidentiary points: instruction, permission, decision path, merchant terms, payment auth \u2014 ops logs fail audits.", "source": "vertical" }, { "title": "EFTA gap", "body": "Consumer authorized agent \u2260 unauthorized transaction \u2014 liability shifts to consumer when agent errs.", "source": "vertical" }, { "title": "LCP binding", "body": "Legal Context Protocol fingerprint at payment \u2014 Velaru receipt chain is compatible evidence layer.", "source": "vertical" }, { "title": "[New York] Financial capital", "body": "NYDFS regulates insurers AND banks \u2014 same receipt primitive for both books.", "source": "jurisdiction" }, { "title": "[New York] Hiring audit law", "body": "NYC AEDT law is template for other cities \u2014 receipt architecture scales municipally.", "source": "jurisdiction" }, { "title": "[Text / Chat] Modality hook", "body": "Baseline \u2014 all frameworks apply to text decisions.", "source": "modality" } ] BOOK SUMMARY: { "total_insureds": 0, "compliant": 0, "grace_period": 0, "non_compliant": 0, "expired": 0, "not_enrolled": 0, "compliant_pct": 0.0 } TAM / EXPOSURE: 16,000+ Stripe platforms · agentic commerce = next payments rail INSURANCE LINES: Cyber, E&O, Merchant liability DISCLAIMER: External validation evidence pack — not legal advice, not filed rate approval.