The blocker is never the model.
In financial services the question is not whether a system can read a statement or spot an anomaly. It is who approved it, what it could reach, what it did, and whether any of that can be produced on request. Deployments here succeed or fail on evidence, not capability.
