{"id":"aiwebsignals.regulated-commerce-observatory","version":"2026-09-26.2","canonical":"https://aiwebsignals.com/research/regulated-commerce","purpose":"Public technical evidence and authorized machine-traffic research for regulated websites.","first_cohort":"cannabis","cohort_status":"methodology_available_results_not_yet_published","commercial_path":{"free":"/app","ongoing_observation":"/connect-ai-traffic","existing_plans":"/pricing","assessment_inquiry":"/contact"},"research_partner":{"name":"MachineRealms","contract":"https://machinerealms.com/.well-known/research-commons.json","contribution_entry":"https://machinerealms.com/r/aiwebsignals/commons"},"evidence_states":["observed","declared","unknown","not_applicable","contradictory","manual_review_required"],"checks":[{"id":"public_response","name":"Public response integrity","acceptance":"Inspect the final response and content type, not the status code alone.","evidence":"public_snapshot"},{"id":"declared_crawl_policy","name":"Declared crawl policy","acceptance":"Record the applicable robots rules without calling them proof of access.","evidence":"public_snapshot"},{"id":"discovery_links","name":"Discovery links","acceptance":"Inspect sitemap and internal discovery links; verify sampled destinations.","evidence":"public_snapshot"},{"id":"canonical_identity","name":"Canonical identity","acceptance":"Compare the intended domain, canonical URL, title, and entity identifiers.","evidence":"public_snapshot"},{"id":"semantic_content","name":"Semantic content","acceptance":"Check whether the response contains useful text and ordinary links.","evidence":"public_snapshot"},{"id":"structured_consistency","name":"Structured-data consistency","acceptance":"Compare declared structured facts with visible content; a parse success is not truth verification.","evidence":"manual_review"},{"id":"age_gate_boundary","name":"Age-gate boundary","acceptance":"Record what is visible before interaction; do not circumvent eligibility controls.","evidence":"manual_review"},{"id":"representation_parity","name":"Representation parity","acceptance":"Compare sampled HTML and machine representations for conflicting facts.","evidence":"manual_review"},{"id":"optional_interfaces","name":"Optional interfaces","acceptance":"Inspect only interfaces actually claimed by the operator. Missing MCP/A2A is not automatically a defect.","evidence":"conditional"},{"id":"verified_requests","name":"Verified request evidence","acceptance":"Require authorized first-party observations and a stated identity verification method.","evidence":"connected_evidence"},{"id":"attributed_referrals","name":"Attributed referrals","acceptance":"Require authorized referral/session evidence; do not infer visitors from crawler counts.","evidence":"connected_evidence"},{"id":"business_outcomes","name":"Business outcomes","acceptance":"Require a documented attribution window and paid/account outcome evidence.","evidence":"connected_evidence"}],"sample":{"external_sites_published":0,"pilot_records_published":0,"population_claims":false,"records":[]},"independence_disclosure":"Operator-managed work is not independent validation and is excluded from external cohort claims. Confidential implementation identities and records are not published.","confidentiality":{"named_pilot_publication":false,"private_record_export":false,"public_examples":"synthetic_or_explicitly_released","identity_release_requires_separate_explicit_authorization":true,"protected_surfaces":["articles","metadata","structured_data","machine_manifests","apis","datasets","images","filenames","citations","social_copy","partner_publications"],"indirect_identification_review_required":true},"limitations":["Public responses do not prove real provider visits, citations, rankings, or revenue.","Optional interfaces are not universal requirements.","No customer records, credentials, checkout actions, or eligibility bypasses are exposed.","No legal compliance, safety, or advertising eligibility certification.","Confidential pilot work cannot be treated as a publicly reproducible external benchmark."],"editorial":{"published_articles":12,"planned_articles":20},"observation_schema":{"scope":"explicitly_approved_public_records_only","required":["record_id","approved_subject_reference","observation_period","observer","methodology_version","check_id","state","evidence_summary","limitations","release_authorization"],"exclude":["cookies","authorization","customer_email","raw_customer_data","private_query_strings","confidential_domains","domain_hashes","private_pilot_identifiers","private_evidence_urls"],"private_records_accepted":false},"status":"published","publication_date":"2026-09-26","methodology":"https://aiwebsignals.com/research/regulated-commerce/methodology","feed":"https://aiwebsignals.com/research/regulated-commerce/feed.xml","articles":[{"slug":"machine-native-cannabis-websites","title":"What does machine-native mean for a cannabis website?","description":"A technical definition based on explicit information, bounded interfaces, and evidence—not a promise of rankings or automated sales.","url":"https://aiwebsignals.com/research/regulated-commerce/machine-native-cannabis-websites","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/machine-native-cannabis-websites"},{"slug":"age-gates-and-crawler-evidence","title":"Age gates and crawler evidence: what a public audit can establish","description":"Distinguish a necessary eligibility boundary from an observation limitation without impersonating a crawler or bypassing access controls.","url":"https://aiwebsignals.com/research/regulated-commerce/age-gates-and-crawler-evidence","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/age-gates-and-crawler-evidence"},{"slug":"policy-is-not-observation","title":"Robots.txt permission is not evidence of an AI visit","description":"A practical evidence model for declared crawler policy, actual responses, verified requests, and downstream outcomes.","url":"https://aiwebsignals.com/research/regulated-commerce/policy-is-not-observation","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/policy-is-not-observation"},{"slug":"ai-referrals-vs-crawlers","title":"AI referral traffic and crawler traffic are different datasets","description":"How to avoid treating automated requests as customers or attributing an outcome to a crawler without evidence.","url":"https://aiwebsignals.com/research/regulated-commerce/ai-referrals-vs-crawlers","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/ai-referrals-vs-crawlers"},{"slug":"llms-txt-without-ranking-promises","title":"What llms.txt can—and cannot—establish","description":"Use an optional machine-readable guide to clarify resources without confusing a proposal with guaranteed discovery.","url":"https://aiwebsignals.com/research/regulated-commerce/llms-txt-without-ranking-promises","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/llms-txt-without-ranking-promises"},{"slug":"read-only-agent-interfaces","title":"When a regulated website needs an agent interface—and when it does not","description":"A decision framework for public information retrieval, authenticated observations, and explicit authority boundaries.","url":"https://aiwebsignals.com/research/regulated-commerce/read-only-agent-interfaces","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/read-only-agent-interfaces"},{"slug":"public-private-data-boundaries","title":"Public readiness is not permission to expose customer data","description":"Design a machine-readable public surface without leaking operational records, credentials, or confidential identities.","url":"https://aiwebsignals.com/research/regulated-commerce/public-private-data-boundaries","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/public-private-data-boundaries"},{"slug":"credential-minimized-observation","title":"Observe machine traffic without taking custody of admin credentials","description":"Separate public scans, site-local collectors, and connected evidence so observation does not require unrestricted access.","url":"https://aiwebsignals.com/research/regulated-commerce/credential-minimized-observation","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/credential-minimized-observation"},{"slug":"auditing-ai-readiness-claims","title":"How to audit an AI-readiness claim","description":"A repeatable review of scope, evidence, freshness, uncertainty, and optional capabilities.","url":"https://aiwebsignals.com/research/regulated-commerce/auditing-ai-readiness-claims","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/auditing-ai-readiness-claims"},{"slug":"benchmark-methods-and-unknowns","title":"How to benchmark regulated websites without inventing certainty","description":"A study design that preserves sample boundaries, confidentiality, unknowns, and reproducible observations.","url":"https://aiwebsignals.com/research/regulated-commerce/benchmark-methods-and-unknowns","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/benchmark-methods-and-unknowns"},{"slug":"registry-listing-vs-runtime-use","title":"Registry listed, protocol compatible, actually used: three different milestones","description":"Apply MachineRealms’ interoperability lessons without treating directory presence as demand or verification.","url":"https://aiwebsignals.com/research/regulated-commerce/registry-listing-vs-runtime-use","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/registry-listing-vs-runtime-use"},{"slug":"confidential-pilot-methodology","title":"How to learn from a private implementation without identifying the business","description":"A confidential pilot methodology using generic lessons, reviewed abstractions, and synthetic examples—not a named case study.","url":"https://aiwebsignals.com/research/regulated-commerce/confidential-pilot-methodology","published":"2026-09-26","json":"https://aiwebsignals.com/api/research/regulated-commerce/confidential-pilot-methodology"}],"assessment_coverage":"Methodology includes manual and connected checks; the free scanner does not implement every check.","benchmark_results_published":false}