The Commonplace
Home Three-study pilot Papers Evidence Explore Trends Syntheses Digests References Docs 🎲 Workforce Futures
← Papers
Direction, evidence grade, and study type are AI-generated labels (gpt-5-mini), not human-verified. Syntheses are LLM-written. "Tensions" are machine-detected candidates, not confirmed contradictions. A research-acceleration tool, not peer review. How this is built →

AI-ER separates how much AI threatens a software company's business model from its capacity to adapt, offering a compact metric set and an evidence/confidence layer to support due diligence; the framework is practical and well-grounded but remains to be validated empirically.

AI Exposure and AI Resilience: A Two-Dimensional Assessment Framework for Software and Software-Based Business Model
Paul Darius Mandl, Peter Mandl, Martin Häusl · September 10, 2026
arxiv theoretical n/a evidence 7/10 relevance Full text usable extracted full text Source PDF

Structured author observations

Linked only from stored provider relations; the raw author line above is never matched by name.

Arxiv

Latest observation:

  1. Paul Darius Mandl unresolved corpus identity
  2. Peter Mandl unresolved corpus identity
  3. Martin Häusl unresolved corpus identity
Presents AI-ER, a two-dimensional framework (AI exposure and AI resilience) with a compact set of metrics and an evidence/confidence model to assess how AI pressures software-based business models and how firms can adapt.

Citation observations

Cumulative provider counts captured on specific dates; providers are never combined.

Artificial intelligence is changing both software production and the economics of software-based business models. Classical technology due diligence mainly examines technical properties such as architecture, scalability, and technical debt. These criteria do not fully capture how AI can affect a company's value proposition, competitive position, margins, or access to customers. This paper develops Artificial Intelligence Exposure and Resilience (AI-ER) as a two-dimensional assessment framework. AI exposure describes the pressure for change that AI creates for a business model. AI resilience describes the company's ability to absorb that pressure, adapt to changed conditions, and use AI in an economically viable way. Metrics for both dimensions are derived from current AI capabilities, their deployment conditions, and relevant research on business models and organizational adaptability. The model keeps exposure and resilience separate and adds an explicit assessment of evidence quality and confidence. It can be applied first with public information and later refined with internal evidence. The result is a traceable company profile that supports comparison without concealing uncertainty in the underlying evidence. The paper also specifies an initial score logic and a procedure for empirical validation.

Summary

Main Finding

The paper introduces AI-ER, a two-dimensional assessment framework that separates (a) AI exposure — the external economic pressure AI creates on a software or software-based business model — from (b) AI resilience — the firm’s capacity to absorb that pressure and adapt. It operationalizes both dimensions with a compact set of metrics, a rule-based scoring/aggregation proposal that keeps evidence and confidence explicit, and a procedure for empirical validation. The framework is designed for strategic assessment, tech due diligence, and investment/M&A decisions; it is intentionally not a single aggregate “company grade.”

Key Points

  • Conceptual separation:
    • AI exposure = pressure for business-model change arising from AI capabilities and diffusion.
    • AI resilience = firm-level ability to absorb, adapt to, and economically use AI.
    • Dimensions are assessed and reported separately (no single combined score).
  • Derived economic impact mechanisms (how AI changes business economics):
    • Substitution, Compression, Bundling, Re-intermediation.
  • Exposure metrics (numerical + categorical modulator):
    • Substitutability of the core paid customer benefit (how closely AI capabilities map to the core service).
    • Replicability of the offering (effort to recreate offering given company data, integrations, domain expertise, regulation).
    • Competitive dynamics (how competitors or platforms can change speed, price, bundling using AI).
    • Customer access / demand pressure (changes in customer expectations, willingness to pay, and intermediated selection).
    • Business-model modulator (categorical): direction/amplification vs dampening of impacts on current business model.
  • Resilience metrics (five numerical):
    • Protective positions (robust, company-specific resources or barriers that remain valuable under AI change).
    • Adaptability (organizational capacity to sense and change product/process/business model).
    • Technical AI maturity (ability to develop, integrate, monitor, and operate model-based functions reliably).
    • Implementation capability (software delivery, skills, governance to convert technical possibilities into deployed solutions).
    • Economic viability (balance of development/operation/control costs vs expected value capture).
  • Evidence & confidence:
    • Each metric must be linked to documented evidence.
    • Confidence scores capture quality and independence of evidence (not the rating value).
    • Assessments can be done with public information initially and refined with internal data.
  • Scoring & aggregation:
    • Metrics are combined only within their respective dimension to produce an exposure and a resilience profile.
    • Non-compensatory rule-based variant is proposed to keep individual critical scores visible.
    • Encourages multiple independent assessment runs where possible to improve reliability.
  • Technical foundation and limits:
    • Focuses on economically relevant AI services (analytical, predictive, optimization, generative).
    • Emphasizes deployment conditions: need for integration, monitoring, human oversight, regulatory compliance, and cost/viability constraints.
  • Validation: paper proposes empirical validation via independent assessments, inter-rater/reliability analysis, and sensitivity testing; provides a numerical example (specification) for testing.

Data & Methods

  • Methodological approach:
    • Integrates three literatures: AI technical capabilities & deployment limits; technological exposure & business-model change; organizational resilience & dynamic capabilities.
    • Procedure: assess AI capabilities & limits → review research foundations → derive recurring economic impact mechanisms → define assessment dimensions → define metrics → construct AI-ER profile.
  • Evidence sources (used to motivate metrics and limits):
    • Task-exposure studies (e.g., Eloundou et al., OECD) for occupations/task risk.
    • Benchmarks and technical literature for generative/predictive/analytical capabilities and their failure modes.
    • Business model and platform economics research for bundling/re-intermediation effects.
    • Organizational resilience and digital transformation literature for adaptability and capability formation.
  • Implementation details:
    • Metrics were selected to be distinct, observable, and limited in number to preserve tractability and avoid double-counting.
    • Proposed rating logic: rule-based aggregation inside dimensions; evidence-anchored ratings; explicit confidence scoring; independence of multiple runs required for treating them as separate evidence.
    • The framework is conceptual and prescriptive; it specifies how to collect, rate, and combine evidence but does not assume particular proprietary AI technologies.
  • Validation plan:
    • Empirical validation recommended through (1) independent assessor comparisons, (2) inter-rater reliability metrics, and (3) sensitivity analyses on scoring rules and evidence quality.

Implications for AI Economics

  • For tech due diligence, M&A, and investors:
    • AI-ER provides a structured, traceable way to evaluate AI-induced risk and adaptation capacity beyond code/architecture checks — capturing economic capture, platform risk, bundling, and customer-access threats.
    • Keeps technical substitutability distinct from economic vulnerability: a company may be technically replaceable yet economically resilient (and vice versa).
    • Explicit confidence/evidence treatment helps surface uncertainty and prevents overconfident single-number grades.
  • For firm strategy and management:
    • Emphasizes the need for investments not only in models but in integration, monitoring, governance, and business-model redesign (implementation capability + economic viability).
    • Highlights the importance of protective positions (data assets, regulatory/contractual barriers, customer lock-in) and organizational adaptability as sources of resilience.
  • For policy and market structure analysis:
    • Draws attention to platform-mediated re-intermediation and bundling as systemic mechanisms that can reshape market access and rents.
    • Suggests regulators/investors should look beyond model performance to deployment, intermediaries, and concentration risks.
  • For future research:
    • The framework fills a conceptual gap by combining exposure and resilience but requires empirical validation and calibration.
    • Opens avenues to quantify how specific firm-level attributes (e.g., data exclusivity, platform dependence, delivery capability) mediate the distribution of AI gains across incumbents, entrants, and platforms.
  • Limitations to bear in mind:
    • Currently conceptual and prescriptive; effectiveness depends on implementation fidelity, quality of evidence, and assessor judgment.
    • Designed for software and software-based business models; applicability to heavily physical/regulatory businesses will be limited or need adaptation.

Assessment

Paper Typetheoretical Evidence Strengthn/a — Paper is conceptual and methodological: it develops a framework from prior literature and technical considerations but presents no new empirical causal evidence. Methods Rigormedium — The framework is clearly derived from relevant literatures (AI capabilities, business model change, organizational resilience), defines a compact set of distinct metrics, and specifies a rule-based rating and confidence logic; however, it lacks empirical application, formal validation, and leaves some operational scoring choices and weighting subjective. SampleNo empirical sample—framework is developed from literature review of AI capabilities, business-model and resilience research; includes conceptual derivation of metrics, a numerical example, and a proposed empirical validation procedure for future application. Themesorg_design adoption innovation GeneralizabilityDesigned specifically for software and software-based business models; may not apply to asset-heavy or physical-goods firms., Framework depends on current AI capabilities and deployment limits; results may change as AI evolves., Practical application requires assessor judgments and evidence collection; scores may vary with assessor expertise and access to internal data., Regulatory, geographic, and industry-specific constraints (e.g., privacy, liability) could limit transferability., Not empirically validated yet; predictive validity and reliability across contexts are untested.

Claims (10)

ClaimDirectionOutcomeConfidence & EvidenceDetails
Current AI systems can perform an increasing share of information-processing and information-generation work at growing scale and falling unit cost. Organizational Efficiency positive The scale and unit cost of information-processing work that AI systems can perform
Reading fidelity high
Study strength medium
not reported
0.12
Technical access to similar AI capabilities does not by itself create a durable competitive advantage because companies, competitors, customers, and large platform providers may access those capabilities simultaneously. Market Structure negative Durability of competitive advantage from technical AI access
Reading fidelity high
Study strength low
not reported
0.06
Generative AI systems can produce plausible but incorrect outputs, behave unstably under changed inputs, and fail to reflect company-specific rules or exceptions. Ai Safety And Ethics negative Reliability and correctness of generative AI outputs in business contexts
Reading fidelity high
Study strength medium
not reported
0.12
AI deployment in longer workflows requires state maintenance, error detection, clear responsibility, integration, monitoring, and suitable human control; model capability alone is insufficient for deployable solutions. Organizational Efficiency negative Operational deployability and reliability of AI-enabled workflows
Reading fidelity high
Study strength medium
not reported
0.12
AI-related pressure on a company can arise through four economic mechanisms: substitution, compression, bundling, and re-intermediation. Market Structure negative Pressure on a firm's offering, margins, monetization, and customer access
Reading fidelity high
Study strength low
not reported
0.06
AI investment can help firms respond to external disruptions when complementary organizational conditions are present. Organizational Efficiency positive Firm ability to respond to external disruptions
Reading fidelity high
Study strength medium
not reported
0.12
AI use is positively related to organizational resilience, and this relationship is partly mediated by business-model development. Organizational Efficiency positive Organizational resilience
Reading fidelity high
Study strength medium
positive relationship; partly mediated
0.12
AI exposure and AI resilience are distinct dimensions rather than opposite ends of a single scale; a company can have high exposure and high resilience simultaneously. Task Allocation mixed Joint profile of AI-related business-model pressure and response capacity
Reading fidelity high
Study strength low
not reported
0.06
The proposed AI-ER framework contains four numerical exposure metrics, one categorical business-model modulator, and five numerical resilience metrics. Governance And Regulation positive Coverage and structure of the AI-ER assessment framework
Reading fidelity high
Study strength low
4 numerical exposure metrics; 1 categorical modulator; 5 numerical resilience metrics
0.06
The AI-ER framework keeps evidence quality and confidence separate from the substantive rating, so weak support for a rating remains visible. Governance And Regulation positive Transparency and traceability of AI-related company assessments
Reading fidelity high
Study strength low
not reported
0.06

Notes