Congress mandates AI companies hand over model weights to federal labs
H.R. 9965 — AI Threat Output and Monitoring Incident Containment Act · Filed by Celeste Maloy (R-UT) · 2 cosponsors · Introduced Jul 27, 2026 · Referred to committee
Your members of Congress
Enter a ZIP to see where your representative and both senators stood on this bill.
Looked up on this device — your ZIP is never stored on our servers.
What it does
This bill requires the Department of Energy to establish a testing program that evaluates whether advanced AI systems could be weaponized or cause nuclear incidents. Large AI developers (those spending $2+ billion on AI development) must participate, submit their models for testing including 'jailbreak' attempts, and provide access to model weights and unmitigated versions. The DOE can fine violators up to $1 million per day and compel disclosure via subpoena. Information submitted is kept confidential unless needed for national security, court orders, or congressional request.
Why we flagged it
The bill's core mechanism is a mandatory federal testing program for advanced AI systems with enforcement teeth (civil penalties, subpoena power, attorney general referral). It is framed as nuclear-safety regulation but operationally functions as a forced-disclosure mandate requiring private companies to hand over proprietary model weights and unmitigated versions to DOE laboratories.
What the text implies
- The bill exempts the Program from the Paperwork Reduction Act, removing a standard procedural check on government data collection and reducing transparency around what information DOE actually collects from AI developers.
- Confidentiality protections allow DOE to disclose information to 'a third party' for national security purposes without naming which third parties or what safeguards apply, creating a potential pipeline for proprietary AI model data to intelligence agencies or foreign allies.
The full analysis lists 5 implications of this text.
Who stands to gain
Department of Energy (expanded budget and authority); National Laboratories (new testing contracts and staffing); Cybersecurity and AI safety consulting firms (red-teaming and assessment contracts)