VELARU MANDATE EXHIBIT PACK — MINOR SAFETY / PLATFORM CHILD PROTECTION Jurisdiction: France (fr) Modality: Text / Chat Program: Velaru Minor Safety / Platform Child Protection · France (galactic_minor_safety_fr) Product ID: minor_safety:fr:bundle:text Vertical: minor_safety Generated: 2026-08-22T22:02:32.117948Z Authority: France CNIL AI Pack — Platform Child Safety + NCMEC Audit Pack Deadline: KOSA + EU AI Act prohibited practices enforcement Velaru verify: https://velaru-erra.onrender.com/verify EXHIBIT A — AI INVENTORY [] EXHIBIT B — GOVERNANCE FRAMEWORK { "framework": "Velaru Mandate Registry \u2014 Minor Safety / Platform Child Protection", "exhibit_authority": "France CNIL AI Pack \u2014 Platform Child Safety + NCMEC Audit Pack", "regulatory_frameworks": [ "KOSA", "COPPA", "18 USC 2258A", "EU AI Act Article 5", "EU AI Act", "CNIL AI recommendations", "GDPR", "French AI Act" ], "standards_alignment": [ "POSS-2", "DRP-1", "TCB", "FRE 707 pre-compliance", "ISO 42001" ], "human_oversight": "serve content to minor account", "third_party_verification": "https://velaru-erra.onrender.com/verify (operator-independent)", "data_lineage": "Hash-chained Ed25519 receipts; optional RFC3161 + external anchor", "mirror_trap": "Platforms prove moderation in policy docs \u2014 regulators want proof of what AI refused to show minors. \u00b7 CNIL among most aggressive EU DPAs on AI \u2014 French language audit trail required.", "chain_integrity": { "depth": 6, "invariant_holds": true } } EXHIBIT D — DATA INPUTS & VALIDATION { "data_validation_method": "Cryptographic receipt per AI decision; public verify without trusting deployer, vendor, or Velaru operator", "bias_testing_proxy": "Asymmetry score from live chain signals", "model_change_control": "Policy lock registry \u2014 criteria hash frozen pre-dispute", "logging_retention": "90-day pre-dispute window minimum; permanent verify permalinks", "external_validator": "Nisaba LLC / Velaru", "validator_independence": "Client-side Ed25519 verify; BYOK tri-receipt optional", "headline_stat": "18 USC 2258A federal reporting \u2014 proof of detection AND proof of escalation", "global_leaders_addressed": [ "Meta", "Snap", "Discord", "NCMEC", "Ofcom", "CNIL", "Mistral AI", "AMF" ] } MIRROR TRAP (regulatory insight) Platforms prove moderation in policy docs — regulators want proof of what AI refused to show minors. · CNIL among most aggressive EU DPAs on AI — French language audit trail required. NERVE CARDS — WHY GLOBAL LEADERS CARE [ { "title": "KOSA liability", "body": "Duty of care for minors \u2014 recommendation AI logs are discovery gold.", "source": "vertical" }, { "title": "EU Art 5 ban", "body": "Prohibited practices for minors \u2014 receipt of refusal is compliance artifact.", "source": "vertical" }, { "title": "D&O personal", "body": "Section 230 narrowing \u2014 executives personally named in state AG suits.", "source": "vertical" }, { "title": "[France] Sovereign AI", "body": "France pushing Mistral/sovereign stack \u2014 receipts prove which model decided.", "source": "jurisdiction" }, { "title": "[France] AMF scrutiny", "body": "French financial markets AI \u2014 AMF expects algorithm documentation.", "source": "jurisdiction" }, { "title": "[Text / Chat] Modality hook", "body": "Baseline \u2014 all frameworks apply to text decisions.", "source": "modality" } ] BOOK SUMMARY: { "total_insureds": 0, "compliant": 0, "grace_period": 0, "non_compliant": 0, "expired": 0, "not_enrolled": 0, "compliant_pct": 0.0 } TAM / EXPOSURE: $200B+ social platform revenue · child safety = existential regulatory risk INSURANCE LINES: Platform liability, D&O, Cyber DISCLAIMER: External validation evidence pack — not legal advice, not filed rate approval.