As artificial intelligence becomes increasingly embedded in development services, outsourcing arrangements, and other commercial and technology transactions, customers and vendors are confronting a deceptively simple question: who should bear the risk when something goes wrong with a deliverable created using AI?