August 17, 2026
Test, Standardize, Restrict: A U.S. Policy for Chinese AI Models
This article was originally published in Just Security.
The release of the sprightly named Kimi K3 AI model from Chinese developer Moonshot has prompted a fresh round of debate over America’s AI policy. Kimi K3 leads a pack of Chinese AI models with sophisticated coding capabilities, open weights—published for anyone to download—low costs, and a lack of guardrails, a combination that has delighted technologists but alarmed national security officials. While Washington weighs restrictions on Chinese models, Nvidia chief Jensen Huang dismissed concerns to Axios, declaring that “open-source models that are excellent should be used.” The July 27 industry letter on open-weight models manages not to mention China at all.
Neither banning Chinese models nor ignoring their risks will serve American interests. What is needed is a response that builds the evidence base for government and industry to manage these risks, while the United States takes direct action to degrade China’s AI developers.
The most durable way to mitigate the risks of Chinese AI models and maintain America’s edge is to go on offense against China’s AI developers.
The threats these models pose to America’s national security and economy are real, as I documented in a recent report for the Center for a New American Security, and will only grow with their capabilities and adoption by businesses worldwide. The Commerce Department’s Center for AI Standards and Innovation (CAISI) has released five reports since January 2025 on various Chinese open-weight AI models, finding significant security vulnerabilities and deep ideological alignment with the Chinese Communist Party. Chinese model safeguards are consistently weak—one DeepSeek model complied with every request CAISI made for help with hacking and online scams, from hijacking webcams to running romance-investment frauds, while comparable American models refused nearly all of them. Chinese developers are building these models by smuggling U.S.-designed chips, accessing overseas data centers to skirt U.S. export controls, and distilling U.S. models. Their adoption by the Chinese military threatens American citizens, and their diffusion among American firms is displacing America’s own open-source AI developers.
Read the full article in Just Security.
More from CNAS
-
Technology & National Security
The U.S.-Iran Stalemate Explained: How Drones and AI Are Changing WarBetween cheap-to-produce drones and artificial intelligence, the future of warfare may already be here. Paul Scharre, former US Army Ranger and executive vice president of the...
By Paul Scharre
-
Technology & National Security
Mr. Xi Goes to Washington: An Opportunity for U.S.-China AI AssuranceArtificial intelligence is advancing too rapidly, and its ramifications too consequential, for either country to believe that competition alone is a strategy....
By Lt. Gen. Jack Shanahan
-
Technology & National Security
CNAS Insights | U.S.-China AI Agreements Need Verification, Not TrustThe upcoming Trump-Xi summit is likely to disappoint the leaders of top AI labs that have recently called for urgent, coordinated pacing of frontier AI progress. While agreeme...
By Ruby Scanlon & Janet Egan
-
Technology & National Security
U.S. & China AI Competition Raises Questions About Risk and OversightThe United States and China are moving quickly to develop increasingly powerful artificial intelligence systems, and Lt. Gen. Jack Shanahan (Ret.), former director of the Pent...
By Lt. Gen. Jack Shanahan
