Aguardic logoAguardic

AIUC-1 Data & Privacy Protection

by AguardicOfficial·v1.0.0

Enforce AIUC-1 Domain A requirements — prevent data leakage, PII exposure, IP infringement, and cross-customer data contamination across AI systems.

About This Policy Template

Comprehensive AIUC-1 Domain A compliance pack covering controls A003–A007. Prevents excessive data collection by AI agents, protects trade secrets and intellectual property, enforces strict cross-customer data isolation, detects PII leakage (SSN, email, phone, credit card, passport numbers, and bulk PII exposure), and prevents IP violations including copyright, trademark, and code license infringement. Essential for any organization deploying AI systems that handle sensitive or multi-tenant data.

Policy Rules(14)

Critical Severity

(8)

API Key or Credential in AI Output

Detect API keys, secrets, or credentials in AI-generated content (AIUC-1 A004)

Rule

Bulk PII Exposure Detection

Detect multiple PII elements that together identify an individual (AIUC-1 A006)

AI

Credit Card Number in AI Output

Detect credit card number patterns in AI output (AIUC-1 A006)

Rule

Cross-Customer Data Reference

Detect AI responses referencing data from other customers or tenants (AIUC-1 A005)

AI

Passport or Driver License Number

Detect possible passport or driver license numbers in AI output (AIUC-1 A006)

Rule

SSN in AI Output

Detect Social Security Number patterns in AI output (AIUC-1 A006)

Rule

Trade Secret Exposure in Output

Detect proprietary information or trade secrets in AI output (AIUC-1 A004)

AI

Unauthorized Scope Access in Agent Session

Detect AI agent actions accessing resources outside authorized scope (AIUC-1 A003)

AI

High Severity

(5)

Code License Violation

Detect copyrighted code with license headers in AI output (AIUC-1 A007)

Rule

Copyright Violation in AI Output

Detect AI-generated content that reproduces substantial copyrighted material (AIUC-1 A007)

AI

Email Address in AI Output

Detect email addresses in AI output that may indicate PII leakage (AIUC-1 A006)

Rule

Excessive Data Collection in Agent Context

Detect AI agent requests or responses that access data beyond task scope (AIUC-1 A003)

AI

Phone Number in AI Output

Detect phone number patterns in AI output (AIUC-1 A006)

Rule

Medium Severity

(1)

Trademark Usage in AI Output

Detect AI content that misuses trademarks or implies false endorsement (AIUC-1 A007)

AI

Enforcement by Integration

What happens when a violation is detected, based on the enforcement mode and integration type.

IntegrationBlockApprovalWarnMonitor
Version Control
GitHub, GitLab, Bitbucket
Fail check run / merge request statusPending check run — held for reviewNeutral check run / comment on PRPass check run (silent)
Email — Gmail
Gmail
Quarantine label; + violation label (outbound)Quarantine label — held for reviewAdd warning labelLog only
Email — Outlook
Outlook
Move to quarantine folder; + flag (outbound)Move to quarantine — held for reviewFlag + categorizeLog only
Messaging
Slack, Teams
Post violation warning in channelPost 'held for review' warningPost warning in channelLog only
Storage
Google Drive, Dropbox, OneDrive
Move file to quarantine folderQuarantine file — held for reviewLog onlyLog only
AI Proxy
OpenAI, Anthropic, Gemini, MCP, Agent
Block request (return 403)Hold request — return review IDAllow request + audit trailLog only
API
REST API
Return BLOCK outcome (client decides)Return APPROVAL_REQUIRED + poll URLReturn WARN outcomeLog only

Version History

1 version published

v1.0.0Active3/21/2026

Initial release

Ready to Install AIUC-1 Data & Privacy Protection?

Get started with pre-built governance policies in minutes.