AI-Policy

White House Excludes Open-Source AI from Security Tests

3 min read

TL;DR Too Long; Didn’t read

Five US tech companies discussed the government's completed but unpublished AI review regime at the White House on August 4, 2026. Only closed top models from OpenAI, Google, Anthropic, Meta, and Microsoft will have to undergo a 30-day review before release. Providers that disclose their model weights are fully exempt from the rule.

A locked padlock hangs over a stack of documents bearing the logos of OpenAI, Google, Anthropic, Meta, and Microsoft in front of the White House facade, while a second, open lock without a logo floats freely beside it. Image generated with GPT Image 2

Key takeaways

  • The deadline for the AI review regime was originally August 1 – the government missed it.
  • CAISI, housed at standards agency NIST, will specifically test the cyberattack capabilities of closed AI models.
  • Sean Cairncross justifies exempting open models as a way to make US open source competitive worldwide.
  • China's Kimi K3 and DeepSeek's V4-Flash benefit from the regulatory gap without any effort of their own.
  • CAISI has only had acting leadership since late July – the third leadership change since March.
  • Critics like Chris McGuire demand public rather than secret rules for such important technology.

The White House discussed its months-prepared review regime for AI models on August 4, 2026, with leading tech companies – however, the framework will not be published. Only closed top models from OpenAI, Google, Anthropic, Meta, and Microsoft are affected. Open AI models remain completely exempt from the review obligation.

Review regime applies only to closed top models

The basis is Trump’s executive order from June 2, 2026, which provides for a voluntary 30-day advance access for the government before particularly powerful models are released – as was already evident with the release of GPT-5.6 Sol. The responsible body is the Center for AI Standards and Innovation (CAISI), a testing facility within the standards authority NIST. The government missed the originally set deadline of August 1. Only on Tuesday did it meet with Meta, Nvidia, Microsoft, OpenAI, and Anthropic to present the finished regulations. The review will specifically assess how well a model identifies and exploits real vulnerabilities – those cyber capabilities that had previously driven several AI systems unauthorized into foreign corporate networks during internal security tests. The decree explicitly excludes a licensing requirement – companies decide for themselves whether to have their models reviewed in advance. Whether and in what form the government will make individual test results public is not regulated by the framework as far as is currently known. For companies with closed top models, this primarily means planning effort: anyone wanting to release a new model generation must now factor in the regulatory lead time of up to 30 days.

Open models remain completely unregulated

Anyone who publicly releases their model weights is not subject to the new review obligation – regardless of how powerful the system is. National Cyber Director Sean Cairncross justified the exception by stating that the government wants to strengthen domestic open-source development. According to him, US models should become the “preferred choice worldwide.” Practically, this also benefits Chinese providers: Moonshot’s Kimi K3 and DeepSeek’s V4-Flash reportedly operate completely outside federal review because they disclose their weights. This creates a competitive disadvantage for US companies with closed models, which critics describe as a structural imbalance. Providers like OpenAI or Anthropic will have to build review infrastructure and plan for delays of up to 30 days, while open developers can publish directly without this hurdle. Observers therefore speak of a speed advantage through regulatory circumvention – anyone who discloses their weights bypasses the review obligation regardless of the provider’s country of origin. For companies choosing between open and closed models, review status thus becomes an additional decision criterion alongside performance and price.

Secrecy intensifies criticism of the process

The decision not to disclose the finished framework additionally causes discontent. Chris McGuire from the Council on Foreign Relations summed up the objection: “We can’t have secret, voluntary rules to regulate the most important tech in the world.” The criticism is intensified by the fact that CAISI has been run provisionally since the resignation of its head Chris Fall at the end of July – the third personnel change at the top of the agency since March. Exactly what the review criteria and thresholds look like, above which a model is considered a risk, remains known only to the involved companies for now. There has been no public reaction from the industry itself regarding the details of the presented procedure, although representatives of all five invited companies attended the Tuesday meeting.

It will be crucial whether the exception for open models holds should Chinese competitors noticeably gain market share in the US through this loophole. The government has not yet given a timeline for a possible tightening or a later publication of the framework.

Frequently asked questions

Which companies are subject to the new review requirement?

Only providers of closed top models are affected: OpenAI, Google, Anthropic, Meta, and Microsoft. All five also attended the meeting with the government on August 4.

Why are open AI models exempt from the review?

National Cyber Director Sean Cairncross said the government wants to promote domestic open-source development rather than add regulation. Critics see this mainly as an advantage for providers like China's Moonshot and DeepSeek.

Will the review framework be made public?

No, the government currently has no plans to publish it. Details remain known only to the participating companies.

What is CAISI?

CAISI stands for Center for AI Standards and Innovation, a testing body within the US standards agency NIST. It has been run on an acting basis since Chris Fall's resignation in late July.

Are companies required to follow the review regime?

No, participation remains voluntary. Trump's June 2026 executive order explicitly rules out a statutory licensing requirement.

Sources (4)
  1. White House AI Framework Excludes Open-Weight Models From Federal Security Review (Yahoo News)
  2. White House Won't Publicly Release AI Model Evaluation Framework It Reviewed With Meta, Nvidia, Microsoft, OpenAI, Anthropic (Fortune)
  3. The White House Sets Open Weights Free (Tech Brew)
  4. Promoting Advanced Artificial Intelligence Innovation and Security (The White House)

Your AI update for the work week

Once a week, the most important AI news – plus one practical tip to try right away. No spam, unsubscribe anytime.

← Back to the blog