VELARU MANDATE EXHIBIT PACK — MINOR SAFETY / PLATFORM CHILD PROTECTION Jurisdiction: Australia (au) Modality: Text / Chat Program: Velaru Minor Safety / Platform Child Protection · Australia (galactic_minor_safety_au) Product ID: minor_safety:au:bundle:text Vertical: minor_safety Generated: 2026-08-22T22:27:37.799065Z Authority: Australia APRA AI Pack — Platform Child Safety + NCMEC Audit Pack Deadline: KOSA + EU AI Act prohibited practices enforcement Velaru verify: https://velaru-erra.onrender.com/verify EXHIBIT A — AI INVENTORY [] EXHIBIT B — GOVERNANCE FRAMEWORK { "framework": "Velaru Mandate Registry \u2014 Minor Safety / Platform Child Protection", "exhibit_authority": "Australia APRA AI Pack \u2014 Platform Child Safety + NCMEC Audit Pack", "regulatory_frameworks": [ "KOSA", "COPPA", "18 USC 2258A", "EU AI Act Article 5", "Privacy Act reforms", "APRA CPS 234", "ASIC AI guidance", "Online Safety Act" ], "standards_alignment": [ "POSS-2", "DRP-1", "TCB", "FRE 707 pre-compliance", "ISO 42001" ], "human_oversight": "serve content to minor account", "third_party_verification": "https://velaru-erra.onrender.com/verify (operator-independent)", "data_lineage": "Hash-chained Ed25519 receipts; optional RFC3161 + external anchor", "mirror_trap": "Platforms prove moderation in policy docs \u2014 regulators want proof of what AI refused to show minors. \u00b7 APRA expects bank AI incident documentation within 72h \u2014 receipt enables notification.", "chain_integrity": { "depth": 6, "invariant_holds": true } } EXHIBIT D — DATA INPUTS & VALIDATION { "data_validation_method": "Cryptographic receipt per AI decision; public verify without trusting deployer, vendor, or Velaru operator", "bias_testing_proxy": "Asymmetry score from live chain signals", "model_change_control": "Policy lock registry \u2014 criteria hash frozen pre-dispute", "logging_retention": "90-day pre-dispute window minimum; permanent verify permalinks", "external_validator": "Nisaba LLC / Velaru", "validator_independence": "Client-side Ed25519 verify; BYOK tri-receipt optional", "headline_stat": "18 USC 2258A federal reporting \u2014 proof of detection AND proof of escalation", "global_leaders_addressed": [ "Meta", "Snap", "Discord", "NCMEC", "Ofcom", "APRA", "Commonwealth Bank", "BHP" ] } MIRROR TRAP (regulatory insight) Platforms prove moderation in policy docs — regulators want proof of what AI refused to show minors. · APRA expects bank AI incident documentation within 72h — receipt enables notification. NERVE CARDS — WHY GLOBAL LEADERS CARE [ { "title": "KOSA liability", "body": "Duty of care for minors \u2014 recommendation AI logs are discovery gold.", "source": "vertical" }, { "title": "EU Art 5 ban", "body": "Prohibited practices for minors \u2014 receipt of refusal is compliance artifact.", "source": "vertical" }, { "title": "D&O personal", "body": "Section 230 narrowing \u2014 executives personally named in state AG suits.", "source": "vertical" }, { "title": "[Australia] Mining + AI", "body": "Australia resource sector AI \u2014 WHS obligations for automated safety decisions.", "source": "jurisdiction" }, { "title": "[Australia] Insurance pool", "body": "APRA general insurance AI pricing scrutiny \u2014 asymmetry feed relevant.", "source": "jurisdiction" }, { "title": "[Text / Chat] Modality hook", "body": "Baseline \u2014 all frameworks apply to text decisions.", "source": "modality" } ] BOOK SUMMARY: { "total_insureds": 0, "compliant": 0, "grace_period": 0, "non_compliant": 0, "expired": 0, "not_enrolled": 0, "compliant_pct": 0.0 } TAM / EXPOSURE: $200B+ social platform revenue · child safety = existential regulatory risk INSURANCE LINES: Platform liability, D&O, Cyber DISCLAIMER: External validation evidence pack — not legal advice, not filed rate approval.