Courts Tighten AI Security Rules, Raising Costs for Small Law Firms
State courts and court administration bodies are imposing enterprise-grade security requirements on legal AI tools, including encryption, access controls, audit logs, and vendor documentation such as SOC 2 reports and software bill of materials. The National Center for State Courts has incorporated these standards into its 2025 guidance for AI use in court systems. Judges have also begun issuing protective orders that restrict how AI tools may process confidential information, limiting training, data retention, and output deletion.