{"id":116184,"date":"2026-07-23T09:02:10","date_gmt":"2026-07-23T09:02:10","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/116184\/"},"modified":"2026-07-23T09:02:10","modified_gmt":"2026-07-23T09:02:10","slug":"america-needs-an-off-ramp-between-doing-nothing-and-shutting-ai-down","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/116184\/","title":{"rendered":"America Needs an Off-Ramp Between Doing Nothing and Shutting AI Down"},"content":{"rendered":"<p>For 18 days in June, two of America\u2019s most capable AI models went dark worldwide, not for technical or business reasons, but because the U.S. government ordered it. On June 12, 2026, the Commerce Department informed Anthropic that its <a href=\"https:\/\/liccardo.house.gov\/sites\/evo-subsites\/liccardo.house.gov\/files\/evo-media-document\/6.18.26-letter-to-commerce-department-on-frontier-model-export-controls.pdf\" rel=\"nofollow noopener\" target=\"_blank\">Fable 5 and Mythos 5 models could no longer be provided to any foreign person without a license<\/a>, and the company concluded that compliance meant shutting the models down for everyone. Public access to Fable 5 was <a href=\"https:\/\/www.anthropic.com\/news\/redeploying-fable-5\" rel=\"nofollow noopener\" target=\"_blank\">restored on June 30<\/a>.<\/p>\n<p>The United States doesn\u2019t have a trusted, standardized process for evaluating the security risks of frontier AI models or proportionate remedies when problems are found. When a security concern surfaces, the government employs blunt tools, including emergency export controls and closed-door pressure. These are wielded through processes that are opaque, unpredictable, and vulnerable to politics and personality. The United States should close this gap by creating a statutory AI security review agency, paired with new, purpose-built legal authority for emergency remedies, anti-capture safeguards, real resourcing, and a path toward allied mutual recognition.<\/p>\n<p>The predictable objection is that any such agency would be captured by industry or politicized by whoever holds power. The June episode illustrates why this view gets the problem backwards. Left without a structured institution, we are vulnerable to a system where private, unvalidated corporate claims dictate public outcomes, the very definition of capture. The design challenge is not whether to build one, but how to build one more insulated from those pressures than the status quo. This is not an argument for adopting Anthropic\u2019s preferred policy position, nor for treating its mitigation claims as presumptively correct. The same process should apply to OpenAI, Google, xAI, Amazon, Meta, and any other developer whose frontier model raises comparable national security questions.<\/p>\n<p>\u00a0<\/p>\n<p style=\"text-align: center; margin: 20px 0 0;\"><a style=\"padding: 12px 24px; background-color: #726184; color: #ffffff !important; font-weight: bold; text-decoration: none; border-radius: 8px;\" href=\"https:\/\/warontherocks.com\/cogs-of-war-newsletter-sign-up\/\" rel=\"nofollow noopener\" target=\"_blank\">Sign Up for Our Newsletter<\/a><\/p>\n<p>\u00a0<\/p>\n<p>An Unprecedented Shutdown<\/p>\n<p>On Friday afternoon, June 12, Secretary of Commerce Howard Lutnick sent a letter (not officially public, but <a href=\"https:\/\/bloomberg.com\/news\/articles\/2026-06-16\/read-the-lutnick-letter-that-led-anthropic-to-disable-mythos\" rel=\"nofollow noopener\" target=\"_blank\">Bloomberg has reported the contents<\/a>) informing Anthropic CEO Dario Amodei that a license was now required to provide Fable 5 and Mythos 5 to any \u201cforeign person\u201d worldwide. This restriction included Anthropic\u2019s own employees. The order capped a 24-hour scramble that began when Amazon security researchers reportedly found a way to \u201cjailbreak\u201d the models\u2019 guardrails and chief executive officer Andy Jassy relayed the findings to Secretary of the Treasury Scott Bessent. Much remains unclear: the technical details of the claims, whether third parties validated them, and whether Anthropic was given sufficient recourse. <a href=\"https:\/\/www.anthropic.com\/news\/fable-mythos-access\" rel=\"nofollow noopener\" target=\"_blank\">According to a statement from Anthropic<\/a>, Lutnick\u2019s letter \u201cdid not provide specific details of its national security concern.\u201d An administration resoundingly against AI regulation in <a href=\"https:\/\/www.whitehouse.gov\/presidential-actions\/2026\/06\/promoting-advanced-artificial-intelligence-innovation-and-security\/\" rel=\"nofollow noopener\" target=\"_blank\">word and deed<\/a> had effectively banned two of America\u2019s most capable AI models worldwide.<\/p>\n<p>None of this took place in a political vacuum. In March, the Pentagon labeled Anthropic a supply chain risk after the company sought limits on how its models would be used. Emil Michael, the Pentagon\u2019s senior official for research and engineering, called Amodei \u201ca liar\u201d with \u201ca god-complex\u201d on <a href=\"https:\/\/x.com\/USWREMichael\/status\/2027211708201058578\" rel=\"nofollow\">social media<\/a>, and Pentagon chief Pete Hegseth announced that <a href=\"https:\/\/www.cbsnews.com\/news\/hegseth-declares-anthropic-supply-chain-risk\/\" rel=\"nofollow noopener\" target=\"_blank\">companies using Anthropic models could no longer do business<\/a> with the department. An objective observer could reasonably conclude that personal animosity is a factor, and some would call the June order retaliation. My argument does not depend on that theory. Even if the government\u2019s technical case is sound, valid evidence demands a structured process, not opaque wrangling that takes one technology company\u2019s word over another\u2019s. The failure was the absence of any trusted, standardized process to evaluate the claim and impose proportionate remedies.<\/p>\n<p>Shaky Legal Ground<\/p>\n<p>The government cited the <a href=\"https:\/\/www.congress.gov\/bill\/115th-congress\/house-bill\/5040\" rel=\"nofollow noopener\" target=\"_blank\">Export Control Reform Act of 2018<\/a> and its <a href=\"https:\/\/www.ecfr.gov\/current\/title-15\/subtitle-B\/chapter-VII\/subchapter-C\/part-734\/section-734.13\" rel=\"nofollow noopener\" target=\"_blank\">deemed-export rules<\/a>, but whether either applies to a foreign person\u2019s access to a hosted American AI model is unsettled. As a <a href=\"https:\/\/harvardlawreview.org\/blog\/2026\/06\/is-access-to-fable-an-export\/\" rel=\"nofollow noopener\" target=\"_blank\">Harvard Law Review analysis<\/a> observes, when a foreign national prompts a model on American servers, the software never leaves the country. The first legal challenge arrived on June 23, when Legion LegalTech, an Anthropic customer, <a href=\"https:\/\/subscriber.politicopro.com\/article\/2026\/06\/trump-administration-faces-first-lawsuit-over-anthropic-export-controls-00973058\" rel=\"nofollow noopener\" target=\"_blank\">filed suit<\/a> arguing that the <a href=\"https:\/\/exportcompliancedaily.com\/article\/2026\/06\/25\/lawsuit-us-cant-block-anthropic-models-with-export-controls-that-dont-exist-2606240029\" rel=\"nofollow noopener\" target=\"_blank\">directive \u201cexceeds every source of statutory authority on which it could conceivably rest,\u201d<\/a> including the <a href=\"https:\/\/clearinghouse-umich-production.s3.amazonaws.com\/media\/doc\/171890.pdf\" rel=\"nofollow noopener\" target=\"_blank\">International Emergency Economic Powers Act<\/a>, whose Berman Amendment excludes informational materials. Most consequentially, Legion invokes the major questions doctrine, central to the <a href=\"https:\/\/www.hklaw.com\/en\/insights\/publications\/2026\/02\/supreme-court-strikes-down-ieepa-tariffs\" rel=\"nofollow noopener\" target=\"_blank\">Supreme Court\u2019s February decision<\/a> striking down the administration\u2019s emergency-powers tariffs. If the executive branch wants to regulate AI, Congress should clearly authorize it.<\/p>\n<p>These legal questions expose a distinction any reform must confront: Creating an evaluator and creating the authority to act on its findings are two separate problems. An agency without substantive legal authority leaves the government reaching for ill-fitting emergency tools. Authority without a credible evaluator produces remedies untethered from validated findings. Congress should do both \u2014 establish the review body and write a narrow, purpose-built emergency-remedy authority requiring written determinations, strict time limits, proportionality, and judicial review. If the courts extend the major questions doctrine to AI, clear congressional authorization will be the only legally durable path for a federal system that can assess frontier-model security and impose remedies when validated findings warrant them.<\/p>\n<p>Throughout, the burden of proof rests with the government. No restriction persists without an independently validated finding and a written determination, and orders lapse if deadlines pass unmet. Congress writes the authority, the agency adjudicates within it, and the courts review the result: the ordinary constitutional division of labor the June order bypassed.<\/p>\n<p>The Case for a Statutory Review Agency<\/p>\n<p>This matters well beyond Anthropic. Other American frontier companies are <a href=\"https:\/\/www.wired.com\/story\/dangerous-ai-models-are-coming-no-matter-what\/\" rel=\"nofollow noopener\" target=\"_blank\">close to developing capabilities on par with Mythos 5<\/a>, and Chinese AI companies may not be far behind, given how much the <a href=\"https:\/\/hai.stanford.edu\/assets\/files\/ai_index_report_2026.pdf\" rel=\"nofollow noopener\" target=\"_blank\">model performance gap has closed<\/a>. American AI offerings already cost more than less advanced yet <a href=\"https:\/\/qz.com\/ai-us-china-open-models-deepseek-qwen\" rel=\"nofollow noopener\" target=\"_blank\">capable<\/a> Chinese alternatives. Off-the-cuff government reactions that can suddenly cut off millions of paying users compound the disadvantage. When Chinese models are near-frontier, cheaper, and increasingly easy to deploy, every unpredictable pause in U.S. access risks <a href=\"https:\/\/www.axios.com\/2026\/07\/02\/karp-palintir-openai-anthropic-amodei\" rel=\"nofollow noopener\" target=\"_blank\">pushing developers, enterprises, and governments toward a rival stack<\/a>. This matters because the <a href=\"https:\/\/warontherocks.com\/cogs-of-war\/chinas-ai-is-spreading-fast-heres-how-to-stop-the-security-risks\/\" rel=\"nofollow noopener\" target=\"_blank\">diffusion of AI<\/a> is at least as important to U.S. competitiveness as staying at the technological cutting edge, and unilateral restrictions smooth the path for Chinese firms to <a href=\"https:\/\/www.cnbc.com\/2026\/07\/07\/chinese-ai-models-costs-us-openai-anthropic.html\" rel=\"nofollow noopener\" target=\"_blank\">gain market share<\/a> and <a href=\"https:\/\/warontherocks.com\/cogs-of-war\/chinas-ai-governance-offensive-threatens-u-s-tech-leadership\/\" rel=\"nofollow noopener\" target=\"_blank\">standard-setting influence<\/a>.<\/p>\n<p>A June 2 <a href=\"https:\/\/www.whitehouse.gov\/presidential-actions\/2026\/06\/promoting-advanced-artificial-intelligence-innovation-and-security\/\" rel=\"nofollow noopener\" target=\"_blank\">executive order<\/a> directed agencies to develop classified benchmarking and a voluntary framework for evaluating frontier models up to 30 days before release, while going out of its way to disclaim any mandatory licensing, preclearance, or permitting regime. What is needed, though, is exactly the kind of body the order was written to avoid, because the Anthropic episode shows the voluntary approach failing on its own terms. Ten days after it was signed, the same administration imposed the most restrictive action in the history of American AI policy. Congress should act, though even the administration seems to recognize the gap. National Economic Council Director Kevin Hassett said in May that the <a href=\"https:\/\/federalnewsnetwork.com\/artificial-intelligence\/2026\/05\/wh-studying-ai-security-executive-order\/\" rel=\"nofollow noopener\" target=\"_blank\">White House was studying an executive order establishing a pre-release security review<\/a>, likening it to the Food and Drug Administration\u2019s drug approval process.<\/p>\n<p>Congress should build on existing resources rather than start from scratch. The <a href=\"https:\/\/www.nist.gov\/caisi\" rel=\"nofollow noopener\" target=\"_blank\">Center for AI Standards and Innovation<\/a>, housed within the National Institute of Standards and Technology, could serve as the new agency\u2019s technical backbone. Statutory independence and protected funding would fast-track its creation. Many in the frontier AI safety community counter that the center is too politicized to serve as a credible regulator. Its remit has shifted with the administration, and its leadership serves at the pleasure of the commerce secretary. They are right about the institution as it exists today. That is the argument for the statute, not against the agency.<\/p>\n<p>Fixed leadership terms, protected appropriations, and mandatory written findings exist precisely to convert a politically exposed office into a durable one. Its writ would include time-limited model-security reviews, validation of mitigation plans, accreditation of third-party evaluators, and public and classified risk assessments. The standard should be a 30-day pre-release review with third-party validation and written findings. In addition, for credible, acute threats, it should also have the authority to initiate a 72-hour emergency review followed by a temporary mitigation order, independent validation, and a mandatory written determination within 30 days.<\/p>\n<p>The regime should be proportionate, avoiding the binary choice of approving or pulling a model. A narrow jailbreak could require a patch and monitoring. Moderate <a href=\"https:\/\/arxiv.org\/abs\/2505.18003\" rel=\"nofollow noopener\" target=\"_blank\">misuse uplift<\/a> could mean <a href=\"https:\/\/nvlpubs.nist.gov\/nistpubs\/ai\/NIST.AI.800-1.ipd2.pdf\" rel=\"nofollow noopener\" target=\"_blank\">conditional deployment, narrower access, and enhanced logging<\/a>. A high-risk capability with safeguards that can be bypassed would mean temporary restrictions, controlled access, and required mitigation. An acute national security threat would trigger an emergency order, classified review, and interagency escalation. Had this ladder existed in June, the government would have had options between doing nothing and switching off two models for the whole world.<\/p>\n<p>A mandatory pre-release gate might seem to damage diffusion just as ad hoc shutdowns do. It is the lesser burden for three reasons. The 30-day review would run largely in parallel with the <a href=\"https:\/\/www.anthropic.com\/glasswing\" rel=\"nofollow noopener\" target=\"_blank\">red-teaming<\/a> labs already conducted before release, adding process more than calendar time. A scheduled review is a known, priceable cost. Leaving things as they are could expose America to losses with no clear upper limit. The June shutdown cut off every downstream customer, mid-deployment, worldwide, for 18 days. Legion told the court that losing access was eroding its viability as a business. Moreover, certification can be a market asset. <a href=\"https:\/\/www.gao.gov\/products\/gao-24-106591\" rel=\"nofollow noopener\" target=\"_blank\">FedRAMP helped accelerate<\/a> federal cloud adoption by giving agencies a <a href=\"https:\/\/www.gsa.gov\/technology\/government-it-initiatives\/fedramp\" rel=\"nofollow noopener\" target=\"_blank\">standardized, reusable security authorization baseline<\/a> that they could rely on across procurements. A rigorous U.S. security review would function the same way in foreign procurement, making it a reason to choose American models, not avoid them.<\/p>\n<p>Designing Against Capture, and Paying for It<\/p>\n<p><a href=\"https:\/\/kingy.ai\/ai\/did-ai-safety-become-regulatory-capture\/\" rel=\"nofollow noopener\" target=\"_blank\">Critics<\/a> <a href=\"https:\/\/a16z.com\/asserting-american-leadership-in-open-source-ai\/\" rel=\"nofollow noopener\" target=\"_blank\">argue<\/a> that an independent agency accrediting third-party evaluators is a capture mechanism dressed up as oversight. In this instance, the status quo is the capture scenario. The June shutdown was set in motion by a competitor\u2019s private report to a cabinet secretary, adjudicated behind closed doors, with no independent validation and no public written record. Whatever capture risk a statutory agency carries, it is strictly less than that of a system in which outcomes turn on which chief executive has which secretary\u2019s cell phone number. Resistance should still be engineered into the statute: fixed, staggered leadership terms; mandatory unclassified findings; conflict-of-interest and cooling-off rules; multiple competing accredited evaluators; appropriations rather than industry fees; and Government Accountability Office review with a reauthorization sunset. Policymakers already have <a href=\"https:\/\/www.cato.org\/blog\/primer-great-american-artificial-intelligence-act\" rel=\"nofollow noopener\" target=\"_blank\">frameworks<\/a> on the table to institutionalize the Center for AI Standards and Innovation, ensure adequate funding of $100 million per year, and establish an independent verification regime.<\/p>\n<p>Resourcing is where proposals like this go to die. Today\u2019s Center for AI Standards and Innovation cannot do this job as it has roughly 30 staff and about $30 million in total funding since 2024, roughly one-tenth of what its British counterpart spends. Even the administration-aligned America First Policy Institute calls it \u201cchronically underfunded.\u201d The Institute for Progress <a href=\"https:\/\/ifp.org\/funding-for-caisi\/\" rel=\"nofollow noopener\" target=\"_blank\">puts an \u201cequipped\u201d Center for AI Standards and Innovation at about $84 million per year<\/a>. This is trivial given the stakes, on the order of a single F-35. The new agency should permit excepted service pay, obtain detailees from the National Security Agency and national laboratories, and host a classified compute enclave.<\/p>\n<p>Skeptics will ask how anyone conducts a credible frontier-model review in 72 hours when developers probe their own products for months. The answer is that an emergency review is claim triage, not a de novo evaluation. The agency would not start cold, but rather would validate a specific exploit claim against baselines it already holds from the standing pre-release process. There is evidence this works. The <a href=\"https:\/\/www.einpresswire.com\/article\/910622199\/caisi-signs-agreements-regarding-frontier-ai-national-security-testing-with-google-deepmind-microsoft-and-xai\" rel=\"nofollow noopener\" target=\"_blank\">Center for AI Standards and Innovation has conducted more than 40 evaluations<\/a> and holds pre-deployment agreements with Anthropic, OpenAI, Google DeepMind, Microsoft, and xAI. The 72-hour product would be a validation judgment and a temporary, proportionate remedy, and the full written determination would then follow within 30 days.<\/p>\n<p>The Allied Play<\/p>\n<p>The hardest question is why allies, many hedging against dependence on American technology, would align with a U.S.-led review regime rather than build their own. The honest answer is that they are routing around the United States for a reason. American export control decisions have become unpredictable, and allies increasingly perceive them as weaponized. A statutory, transparent, court-reviewable process would help restore allied confidence in U.S. leadership.<\/p>\n<p>Allies also have affirmative reasons to join. The frontier models they deploy are overwhelmingly American, so a credible American review regime would govern systems they already depend on and provide visibility they cannot generate alone. Most allied bodies do measurement science and lack the model access, compute, and cleared talent for frontier reviews. Mutual recognition would spare their companies duplicative compliance across fragmented national gates, an outcome that raises costs for everyone and cedes <a href=\"https:\/\/warontherocks.com\/cogs-of-war\/chinas-ai-governance-offensive-threatens-u-s-tech-leadership\/\" rel=\"nofollow noopener\" target=\"_blank\">standard-setting influence<\/a> to Beijing. The Center for AI Standards and Innovation\u2019s <a href=\"https:\/\/www.nist.gov\/news-events\/news\/2026\/02\/international-network-advanced-ai-measurement-evaluation-and-science\" rel=\"nofollow noopener\" target=\"_blank\">International Network for Advanced AI Measurement, Evaluation, and Science<\/a>, with its 10 member governments, is a good starting point. Adding India, Israel, the Netherlands, and Taiwan, all with semiconductor weight and growing AI prowess, would bolster its democratic governance and technical credentials. The sequencing matters: mutual recognition of security evaluations first, common test standards second, export control alignment as the long-term horizon.<\/p>\n<p>Predictability Is Power<\/p>\n<p>The United States cannot lead global AI development and diffusion if its own companies and allies cannot predict how security decisions will be made. An independent AI security agency \u2014 armed with real legal authority, designed against capture, and resourced for its mission \u2014 would make American AI governance a competitive advantage, offering predictability while strengthening confidence in the American AI stack. Leaving the current approach unaddressed risks ceding American leadership in AI to its chief competitor, China.<\/p>\n<p>\u00a0<\/p>\n<p style=\"text-align: center; margin: 20px 0 0;\"><a style=\"padding: 12px 24px; background-color: #726184; color: #ffffff !important; font-weight: bold; text-decoration: none; border-radius: 8px;\" href=\"https:\/\/warontherocks.com\/how-to-contribute-to-cogs-of-war\/\" rel=\"nofollow noopener\" target=\"_blank\">Write for Cogs of War<\/a><\/p>\n<p>\u00a0<\/p>\n<p>Martijn Rasser is vice president for technology leadership at the Special Competitive Studies Project. He previously served as an executive at two AI startups. The views expressed here are his own.<\/p>\n<p>Image: Midjourney<\/p>\n","protected":false},"excerpt":{"rendered":"For 18 days in June, two of America\u2019s most capable AI models went dark worldwide, not for technical&hellip;\n","protected":false},"author":2,"featured_media":116185,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[24,25,9071],"class_list":["post-116184","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ai","tag-ai","tag-artificial-intelligence","tag-export-controls"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/116184","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=116184"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/116184\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/116185"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=116184"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=116184"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=116184"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}