To address security and safety risks stemming from highly capable artificial intelligence (AI) models, we propose that the US government should ensure compute providers implement Know-Your-Customer (KYC) schemes. Compute - the computational power and infrastructure required to train and run these AI models - is emerging as a node for oversight. KYC, a standard developed by the banking sector to identify and verify client identity, could provide a mechanism for greater public oversight of frontier AI development and close loopholes in existing export controls. Such a scheme has the potential to identify and warn stakeholders of potentially problematic and/or sudden advancements in AI capabilities, build government capacity for AI regulation, and allow for the development and implementation of more nuanced and targeted export controls. Unlike the strategy of limiting access to AI chip purchases, regulating the digital access to compute offers more precise controls, allowing regulatory control over compute quantities, as well as the flexibility to suspend access at any time. To enact a KYC scheme, the US government will need to work closely with industry to (1) establish a dynamic threshold of compute that effectively captures high-risk frontier model development, while minimizing imposition on developers not engaged in frontier AI; (2) set requirements and guidance for compute providers to keep records and report high-risk entities; (3) establish government capacity that allows for co-design, implementation, administration and enforcement of the scheme; and (4) engage internationally to promote international alignment with the scheme and support its long-term efficacy. While the scheme will not address all AI risks, it complements proposed solutions by allowing for a more precise and flexible approach to controlling the development of frontier AI models and unwanted AI proliferation.
翻译:为应对高度通用人工智能模型带来的安全与安保风险,我们建议美国政府应确保计算提供商实施"了解你的客户"(KYC)机制。计算——训练和运行这些AI模型所需的算力与基础设施——正成为监督的关键节点。KYC作为银行业为识别和验证客户身份而制定的标准,可为前沿AI发展提供更有效的公共监督机制,并填补现有出口管制的漏洞。该机制有望识别和预警利益相关方关于AI能力可能存在的问题和/或突然进展,建立政府的AI监管能力,并支持制定和实施更具针对性的精细化出口管制。与限制AI芯片购买策略不同,对计算资源的数字访问实施监管可实现更精确的控制,既能对计算量进行监管,又可随时灵活暂停访问权限。要实施KYC机制,美国政府需与产业界紧密合作:(1)建立动态计算阈值,有效覆盖高风险前沿模型开发,同时最小化对非前沿AI开发者的负担;(2)制定计算提供商记录和报告高风险实体的要求与指南;(3)建立政府能力以便共同设计、实施、管理和执行该机制;(4)开展国际合作,推动机制的国际协同并保障其长期有效性。尽管该机制无法应对所有AI风险,但它通过提供更精准灵活的方式控制前沿AI模型开发及不良AI扩散,对现有解决方案形成有效补充。