All episodes

    Episode 179 · July 9, 2026 · 8:47

    Illinois just made AI safety the law

    Illinois enacted the Artificial Intelligence Safety Measures Act, making it the first US state to mandate AI safety practices for large AI companies. This new law requires detailed risk and transparency frameworks, independent annual audits, and documented procedures for handling serious safety incidents involving powerful AI models, shifting from voluntary guidelines to legal obligations.

    Listen to this episode

    Watch this episode

    Watch: Illinois just made AI safety the lawSubscribe

    Episode breakdown

    What happened

    This week, Illinois Governor J.B. Pritzker signed the Artificial Intelligence Safety Measures Act into law, joined by Attorney General Kwame Raul and state lawmakers. This legislation makes Illinois the first US state to impose legally enforceable AI safety obligations on large AI companies that build and deploy advanced AI models. Previously, major AI companies operated under voluntary "safety frameworks" without external verification.

    The new law mandates three key requirements. First, powerful AI companies must publish a detailed risk and transparency framework, outlining how they measure model capabilities, identify dangerous features, and respond to failures. Second, these companies must undergo independent annual audits by third-party organizations to verify their adherence to stated safety processes. Third, companies must establish documented procedures for addressing serious safety incidents, particularly those involving "catastrophic risk" like large-scale cyber attacks or mass disinformation.

    Why it matters

    The Illinois law signifies a shift from voluntary industry self-regulation to mandatory oversight for AI safety. This move establishes a precedent, potentially serving as a template for other states, and signals that lawmakers are beginning to treat advanced AI systems with the same regulatory scrutiny applied to other high-consequence industries like banking or pharmaceuticals. The "catastrophic risk" focus underscores a legislative concern beyond minor AI errors, targeting scenarios with widespread societal impact.

    While industry groups like TechNet express concerns about slowed product releases, legal liability, and a "patchwork" of state regulations, supporters emphasize the necessity of external accountability. When AI systems influence critical decisions in areas like hiring, finance, healthcare, and public safety, relying solely on company self-attestation is deemed insufficient. This legislation introduces a mechanism for external review, creating a paper trail and increasing pressure for companies to prioritize and prove their safety practices.

    This development fundamentally changes the operating environment for large AI developers. It means that the "honor system" for companies building powerful models is ending, at least in Illinois. The legal requirement for external audits and documented incident response ensures that companies must not only articulate their safety intentions but also demonstrate their execution, fostering greater accountability in a rapidly evolving technological landscape.

    What to watch next

    • How quickly other US states propose or pass similar AI safety legislation, potentially creating a "patchwork" of regulations.
    • The specifics of how independent annual audits are conducted and enforced, and what standards emerge for third-party verification.
    • The tech industry's response, beyond initial pushback, including any legal challenges or lobbying efforts against similar laws.
    • The practical impact on product development cycles and deployment speeds for large AI models operating in Illinois.
    • Whether the "catastrophic risk" focus leads to specific regulatory frameworks for high-stakes AI applications in critical infrastructure or public services.

    What this means for you

    Business leaders and operators should immediately assess their organizational exposure to AI systems, both internal and external. If your business uses AI for critical functions—like HR software for hiring, financial tools for transactions, or health information apps—it is imperative to understand the safety practices of your AI vendors. Illinois's law introduces a new standard of due diligence.

    Begin by asking current and prospective AI vendors if they have a published AI safety framework, if they undergo external safety reviews, and what their process is for handling model errors that affect customers or employees. This proactive inquiry can reveal much about a vendor's commitment to responsible AI, helping you mitigate risk and ensure compliance as similar regulations potentially spread beyond Illinois.

    Key takeaways

    • Illinois is the first US state to make AI safety practices legally mandatory.
    • The Artificial Intelligence Safety Measures Act requires specific risk frameworks, independent audits, and incident procedures for large AI companies.
    • This law shifts AI governance from voluntary guidelines to legally enforceable obligations.
    • Industry pushback highlights concerns over compliance burdens and potential regulatory fragmentation.
    • The legislation signals increased scrutiny for AI systems used in high-stakes applications like finance and healthcare.

    What is the Artificial Intelligence Safety Measures Act?

    The Artificial Intelligence Safety Measures Act is a new law in Illinois that mandates specific safety practices for large AI companies. Signed by Governor J.B. Pritzker, it requires these companies to publish detailed risk and transparency frameworks, undergo independent annual safety audits by third-party organizations, and establish documented procedures for handling serious safety incidents, particularly those involving catastrophic risks. This makes Illinois the first US state to legally enforce AI safety.

    What companies are affected by the Illinois AI safety law?

    The Illinois Artificial Intelligence Safety Measures Act primarily targets "big AI companies," specifically those building and deploying powerful advanced AI models. This includes companies whose AI systems are used in critical applications like HR software for screening resumes, banking systems for transaction approvals, or health apps providing medical or investment guidance. The law applies to entities creating AI that can have significant societal impact.

    Why is Illinois regulating AI safety now?

    Illinois enacted the AI Safety Measures Act because state lawmakers determined that voluntary safety commitments from AI companies were insufficient, particularly as AI systems increasingly affect critical areas like hiring, finance, healthcare, and public safety. The state decided that external oversight, similar to that for banks and pharmaceutical companies, was necessary for AI to address potential catastrophic risks and ensure accountability, with the Attorney General's office supporting this view.

    What are the main requirements of the Illinois AI safety law?

    The Illinois Artificial Intelligence Safety Measures Act imposes three main requirements on large AI companies. They must publish a comprehensive risk and transparency framework, detailing how they assess AI capabilities and manage risks. They are also required to undergo annual independent audits by third-party organizations to verify their adherence to safety processes. Finally, companies must have documented procedures for identifying, reporting, and responding to serious safety incidents caused by their AI models.

    How does this law change AI governance?

    The Illinois AI Safety Measures Act fundamentally changes AI governance by moving it from a voluntary "honor system" to a legally enforceable framework. Previously, AI companies could publish internal safety guidelines without external verification. This law introduces mandatory independent audits and requires documented incident response procedures, creating a paper trail and increasing accountability for AI developers, marking a significant shift from "trust us" to "show us" in the industry.

    AI PolicyAI EthicsAI Security

    Share with a friend