Author
Sidhant Tamrkar
Advocate at the Madhya Pradesh High Court, and writes here on what AI regulation actually requires of the people deploying it.
Verify this byline: LinkedIn.
Contributing Analyst, Zan Digital. 17 pieces published, citing 131 sources. Everything under this byline is held to the published methodology.
Published work
17 pieces- 001Agent Credentials vs Impersonation: The Audit VerdictMachine identities outnumber humans 109 to 1. Impersonation ships faster; dedicated agent credentials survive an audit. The decision, the costs, the migration.
- 002Agent Identity: 109 Machine Accounts Per Human UserMachine identities outnumber humans 109 to 1, and 41% of identity breaches trace to weak non-human identity management. Here is what actually works.
- 003AI Bill of Materials: 7 Clusters, Zero ObligationThe G7 published 7 minimum AI SBOM clusters in May 2026 and made them voluntary. What an AI bill of materials should contain, and 12 fields to ship first.
- 004AI Cybercrime: 55% in Africa, 2% in FBI ComplaintsINTERPOL attributes 55% of reported African cybercrime to AI. The FBI's 2025 complaint data puts it near 2%. Why both are right, and which controls follow.
- 005AI Employee Monitoring: The €32M Line Nobody Agreed OnAI now scores messages, code and meetings. One regulator fined 32 million euros for it. What is permitted in 5 jurisdictions, and what breaks trust anywhere.
- 006AI Insurance Is Real Now: What Underwriters AskInsurers now write affirmative AI liability cover, and standard policies exclude it. Deloitte sees $4.7bn of AI premiums by 2032. What underwriters ask.
- 007AI Red Teaming for Agents: Building a Real ProgrammeNIST red teamers raised agent hijacking success from 11% to 81%. Here is how to scope, staff, run and report an AI red teaming programme for agents.
- 008Deepfake CFO Fraud: Why Process Beats DetectionBusiness email compromise cost $3.05 billion in 2025 and open source deepfake detectors lose about half their accuracy in the wild. Fix the payment process.
- 009HIPAA, DORA and AI Controls: Evidence, Not IntentOnly 6.5% of DORA registers passed every data quality check. Here are the HIPAA and DORA control mappings for AI agents, and the evidence each one needs.
- 010Open Source AI Licence: The 4 Clauses Nobody ReadsMost open weight models are not open source. 4 clause types decide commercial use, from Llama's 700 million user cap to terms you must pass downstream.
- 011Prompt Injection: 4 of 26 Models Paid the AttackerZscaler ran 26 models against live injected pages and 4 paid the attacker. Why prompt injection is the agent era's SQL injection, and what contains it.
- 012SOC 2 AI Questions: 9 Artefacts Auditors Now WantThe AICPA has issued no AI-specific SOC 2 criteria. The 2017 trust services criteria already cover AI tooling. Here are the 9 artefacts auditors ask for.
- 013AI Referral Traffic: 4.4x Is a Model, 1.3x Is MeasuredThe 4.4x conversion claim for AI referral traffic is a model output. The datasets that publish a denominator land near 1.3x. What to measure instead.
- 014B2B Case Studies: Ranked Last, Still the Top TacticVendor collateral ranked last with 1,862 buyers in 2026 while 74% read customer reviews. What replaces the B2B case study, and what the swap costs.
- 015Content Marketing 2026: 4.7x Cheaper, 23% Fewer ClicksAI cut the cost of a blog post from $611 to $131. Over the same period, the share of Google searches that send any click fell 22.9%. Here is what survived.
- 016Paid Search CTR Fell 68%. Do Not Move the Budget YetSeer measured a 68% paid CTR fall on AI Overview queries across 3,119 terms. Its larger 5.47M query update reads 16.21%. What that does to your budget.
- 017Software Review Sites Sold for $110M: The ReckoningGartner wrote off $150M on Digital Markets, then sold Capterra, Software Advice and GetApp to G2 for $110M. What that says about software review sites.