RSK-4401 · Data leakage
Aadhaar patterns in vendor-bound payloads
Twelve requests carried unmasked identifiers to a document-AI vendor before the masking transform engaged.
high
Exposure score
16/25
likelihood 4 × impact 4
Remediation SLA
6 days
detected 2026-07-18 19:55
Accountable owner
M. Fernandes
named under the AI risk charter
Affected agent
KYC Verification Agent
AGT-1042 · Onboarding
Investigation
What the sweep found and how it was corroborated
Twelve requests carried unmasked identifiers to a document-AI vendor before the masking transform engaged.
Requests
12
Records
31
Vendor
Azure Doc AI
Exposure position
Placed at likelihood 4, impact 4 on the enterprise 5×5 matrix.
Remediation plan
Tracked to closure
- Force masking at pipeline entry
- Vendor deletion attestation
- DPO notification filed
Case metadata
- Risk ID
- RSK-4401
- Category
- Data leakage
- Detected
- 2026-07-18 19:55
- Owner
- M. Fernandes
- SLA
- 6 days
- Agent record
- AGT-1042