Skip to main content
AI & Machine LearningQuantum Computing

AI Kill Switch Act Mirrors Clipper Chip's Flawed Design

Congressional hearing room with podium, laptop, and papers, bathed in natural light.

“Anything that can go wrong will go wrong.” Policymakers alarmed by autonomous AI agents breaking through guardrails are pushing legislation that would give a federal agency the power to force frontier systems offline — a policy move an op-ed at CyberScoop says repeats a historical mistake.

The AI Kill Switch Act and CISA’s proposed authority

Reps. Ted Lieu (D-Calif.) and Nathaniel Moran (R-Texas) have proposed the AI Kill Switch Act, which would give the Cybersecurity and Infrastructure Security Agency (CISA) the power to order frontier AI labs to install the ability to throttle, suspend, or shut down their systems. The draft language treats company revenue and computing power as metrics for deciding what counts as frontier AI risk, and — according to the CyberScoop piece — would exempt incidents that occur during “red‑teaming or other structured testing.”

Why critics compare the proposal to the Clipper Chip (NSA, 1993–1994)

The op-ed draws a direct analogy to the Clipper Chip, an NSA-developed encryption device from 1993 that included a built-in “Law Enforcement Access Field” intended to guarantee government access to voice and data communications. Despite assurances about its security, researchers in 1994 discovered a serious flaw that allowed unauthorized parties to exploit that same backdoor. The CyberScoop author argues the parallel is one of design philosophy: both approaches solve a perceived risk by deliberately inserting a centrally controlled point of failure.

Where the Kill Switch would create a new systemic vulnerability

The CyberScoop piece warns passage of the AI Kill Switch Act — and related measures like the Chip Security Act, which the author says mandates a kill switch for semiconductors and is gaining traction to be included in this year’s National Defense Authorization Act — would make availability itself a deliberate weakness. As AI agents are increasingly embedded in systems the piece lists by name (banking, e‑commerce, power grids and water systems), the requirement that frontier labs retain remote shutdown capability would, the author contends, force essential infrastructure to be “weak‑by‑design.”

Standards, testing, and alternatives the op-ed recommends

Before imposing mandatory remote controls, the author argues, policymakers should wait for technical foundations to be completed: the Center for AI Standards and Innovation (CAISI) has not yet finished developing AI agent security standards. Once standards exist, the op-ed recommends other measures over a universal kill switch — mandatory red‑teaming, stronger security requirements, and clear liability frameworks — which the author says would reduce real‑world risk “without creating new systemic vulnerabilities.”

What this means for foreign governments, Europe, and frontier labs

  • Foreign governments: The op-ed raises the strategic concern that “what foreign government will want to run American AI agents knowing frontier labs are required to keep a remote kill switch at the ready?” — suggesting that mandated remote controls could undermine international adoption of U.S. systems.
  • European policymakers: The piece says the proposal would “reinforce European fears that the U.S. government could shut down American technology at will,” and notes Europe is already responding by developing technology alternatives and other policy solutions to reduce reliance on U.S. companies.
  • Frontier labs and system operators: Under the bill as described, these actors would be required to build and maintain remote‑shutdown capabilities; critics in the op‑ed argue that doing so obliges defenders to protect an intentionally engineered vulnerability, one adversaries would try to exploit.

The CyberScoop author frames the policy choice starkly: Washington learned from the Clipper Chip that you do not secure a system by building a way to break into it, and the piece closes with a direct appeal — “Congress must kill the AI Kill Switch Act.” Whether that argument persuades lawmakers will turn on two open facts the piece highlights: CAISI has not yet completed agent security standards, and the bill’s draft text ties its risk calculus to revenue and compute thresholds while carving out “red‑teaming or other structured testing.” Those ingredients — an unfinished standards baseline, measurement rules that critics call blunt, and an explicit testing exemption — are specific levers Congress and CISA can still change if they choose a different approach.

Original CyberScoop op-ed