LIVE RELAY|UTC —
SYNC

← Compliance · Regulatory Calendar · defense_procurement

Regulatory Calendar critical_infra · CMMC · FISMA · FAR 52.204-21

Defense Procurement / CMMC

CMMC Level 2 required for CUI — AI processing CUI without audit = certification loss

CMMC 2.0 + FAR AI clause rollout
Regulatory exposure — commonly overlooked:
Subcontractor uses AI on CUI — prime owns CMMC finding, sub owns contract termination.

TAM / Exposure

300K+ defense industrial base companies

Insurance lines

Defense E&O · Cyber · Fidelity

Exhibit authority

CMMC AI Supply Chain Pack

Global leaders

DoD · Lockheed · Raytheon · CMMC AB · NIST

FAR 52.204-21

Basic safeguarding — AI agent on CUI network triggers enhanced controls.

Supply chain

AI vendor on CMMC boundary — flow-down requirements to receipt layer.

False Claims Act

Certifying CMMC compliance without AI controls = treble damages.

7 mandate layers (live)

Regulatory Clock Countdown to operative regulatory deadline — NAIC adoption, GSE mandate, EU transposition. Open →
Domain Classifier Industry-specific SAFE/CRISIS/VIOLATION with regulatory framework mapping. Open →
Exhibit / Filing Pack Regulator-ready external validation — NAIC Exhibit D, Fannie QC, EU FRIA, FDA Part 11. Open →
Mandate Registry Enroll deployers/insureds under vertical-specific governance mandate. Open →
Bind / Action Gate ALLOW/BLOCK before consequential action — bind policy, sell loan, deactivate worker. Open →
Compliance Certificate Deployer-facing downloadable cert — forward to counsel, auditor, regulator. Open →
Actuarial / Risk Feed Anonymized asymmetry signals for pricing, reserving, reinsurance correlation. Open →
Run defense_procurement demo Regulatory calendar Download exhibit pack Verify independently