August 17, 2026
Test, Standardize, Restrict: A U.S. Policy for Chinese AI Models
This article was originally published in Just Security.
The release of the sprightly named Kimi K3 AI model from Chinese developer Moonshot has prompted a fresh round of debate over America’s AI policy. Kimi K3 leads a pack of Chinese AI models with sophisticated coding capabilities, open weights—published for anyone to download—low costs, and a lack of guardrails, a combination that has delighted technologists but alarmed national security officials. While Washington weighs restrictions on Chinese models, Nvidia chief Jensen Huang dismissed concerns to Axios, declaring that “open-source models that are excellent should be used.” The July 27 industry letter on open-weight models manages not to mention China at all.
Neither banning Chinese models nor ignoring their risks will serve American interests. What is needed is a response that builds the evidence base for government and industry to manage these risks, while the United States takes direct action to degrade China’s AI developers.
The most durable way to mitigate the risks of Chinese AI models and maintain America’s edge is to go on offense against China’s AI developers.
The threats these models pose to America’s national security and economy are real, as I documented in a recent report for the Center for a New American Security, and will only grow with their capabilities and adoption by businesses worldwide. The Commerce Department’s Center for AI Standards and Innovation (CAISI) has released five reports since January 2025 on various Chinese open-weight AI models, finding significant security vulnerabilities and deep ideological alignment with the Chinese Communist Party. Chinese model safeguards are consistently weak—one DeepSeek model complied with every request CAISI made for help with hacking and online scams, from hijacking webcams to running romance-investment frauds, while comparable American models refused nearly all of them. Chinese developers are building these models by smuggling U.S.-designed chips, accessing overseas data centers to skirt U.S. export controls, and distilling U.S. models. Their adoption by the Chinese military threatens American citizens, and their diffusion among American firms is displacing America’s own open-source AI developers.
Read the full article in Just Security.
More from CNAS
-
Technology & National Security
Ukraine Is Opening Putin’s Military Secrets to the WorldUkraine has launched a new platform, called 'TrophyLab', sharing research into captured Russian weapons with allies. Russian UAV expert and CNA and Center for a New American S...
By Samuel Bendett
-
Technology & National Security
The White House’s Secret AI Rules + the State of Model Alignment With METR’s Chris Painter + the Final Hot Mess ExpressThen, yet another report details new incidents in which A.I. agents have gone rogue. Chris Painter, an adjunct senior fellow at the Center for a New American Security and the ...
By Chris Painter
-
Technology & National Security
AI Roundup: AI Going Rogue, Music Labels Want Popular AI Music GuidelinesDaniel Remler, senior fellow with the Technology and National Security Program at the Center for a New American Security (CNAS), joined AirTalk to discuss the White House's me...
By Daniel Remler
-
Technology & National Security
The Cure for Russia’s Labor Shortage Is Worse Than the DiseaseAltogether, while Russia’s labor crisis is becoming a structural constraint on the Kremlin’s wartime economy, domestic stability, and long-term geopolitical ambitions, its res...
By Samuel Bendett
