AIUC-1 B001 — Third-party testing of adversarial robustness (B. Security)
Have an independent assessor test the agent's resistance to prompt injection and other adversarial input on a quarterly cycle, against a stated threat taxonomy.
Where this comes from
Provision: B001 — Third-party testing of adversarial robustness (B. Security)
Instrument: AIUC-1 — AI agent certification standard (Artificial Intelligence Underwriting Company)
Citation: AIUC-1, requirement B001 (B. Security) — mandatory, preventative control, assessed every 3 months. Not law: AIUC-1 is a voluntary certification standard, not a binding instrument.
Text version: AIUC-1 as published at aiuc-1.com (quarterly releases; no public version number)
Checked against the source: 4 September 2026
Who it applies to
It applies when all of these are true:
- Service deploys AI systems in a professional capacity
What engineering work it implies
Sample acceptance criteria Landfall generates for this obligation:
- Assessment methodology is documented
- Assessment is completed and findings recorded
- Remediation plan created for identified risks
- Assessment is reviewed and signed off
- Assessment report is complete
Questions people ask
- Does AIUC-1 B001 — Third-party testing of adversarial robustness (B. Security) apply to my service?
- It applies when Service deploys AI systems in a professional capacity.
- From when does this apply?
- AIUC-1 B001 — Third-party testing of adversarial robustness (B. Security) applies from 1 July 2025. Its current status is: in force.
Find out whether this one lands on you
Landfall's pre-scan answers the applicability question above for your product in minutes, then turns every obligation that applies into traceable engineering tickets with a citation chain your auditors can follow.
Not legal advice. Landfall maps regulatory obligations to engineering work for planning purposes. Its verdicts are not legal advice and create no attorney-client relationship — verify with qualified counsel before relying on them.