OpenAI Faces SB 53 Compliance Allegations Over Missing Model Risk Tiers

A watchdog says OpenAI did not publish the assessments required by its own California-facing safety framework. OpenAI says its separate safety process meets the law’s requirements.

By 3 min read
OpenAI Faces SB 53 Compliance Allegations Over Missing Model Risk Tiers
OpenAI Faces SB 53 Compliance Allegations Over Missing Model Risk Tiers

Listen to this story

The audio brief

About 1:36
0:001:36
Read transcript
OpenAI is being accused of violating California’s S B fifty-three by releasing three frontier models without publishing the risk tiers promised in its own safety framework. The Midas Project says the missing disclosures involve G P T five point six Preview, G P T five point six, and G P T six Astra—and it alleges at least three violations this year. The potential penalty is up to one million dollars per violation, although no enforcement authority has ruled on the claim. The dispute is not about whether OpenAI performed safety evaluations. It is about which evaluations count. In May, OpenAI published its Frontier Governance Framework, covering cyber risk, chemical, biological, radiological, and nuclear threats, harmful manipulation, and loss of control. It says models receive risk tiers from one to three, with corresponding safeguards. But the cited system cards do not publish those tier labels. OpenAI points instead to its separate Preparedness Framework, which classifies Astra’s cyber risk as critical, its highest level. The company says that framework underpins its safety work and that the governance framework explains how it aligns with the law. The Midas Project counters that the alternate framework does not assess loss of control in the same way. Astra’s system card discusses monitorability and controllability, but does not provide the promised governance tiers. California enacted S B fifty-three in September 2025. The unresolved question is whether a public safety framework is a binding disclosure checklist—or merely a map to a company’s broader internal process.

Story brief

3 key points

The Midas Project alleges OpenAI breached California’s SB 53 by not publishing the Frontier Governance Framework’s risk tiers for GPT-5.6 Preview, GPT-5.6, and GPT-6 Astra. OpenAI disputes the conclusion and points to its separate Preparedness Framework, which labels Astra’s cyber risk “critical.” The dispute could expose OpenAI to penalties of up to $1 million per violation, but no authority has ruled yet. The case...

  1. 01

    Midas alleges at least three violations this year; OpenAI says it is confident it complies with SB 53.

  2. 02

    OpenAI’s governance framework defines tiers across cyber, CBRN, harmful manipulation, and loss-of-control risks.

  3. 03

    Astra’s system card reports monitorability and controllability evaluations but does not publish the promised governance-framework tier labels.

OpenAI is facing a new challenge under California’s frontier-AI law after the Midas Project alleged that the company released GPT-5.6 models and GPT-6 Astra without publishing risk tiers required by its own safety framework. The potential stakes are significant: SB 53 can carry penalties of up to $1 million per violation, while OpenAI says it is confident it complies.

The allegation is not that OpenAI lacks safety evaluations altogether. It is that the company has published one set of evaluations while omitting a different set of disclosures it committed to make in its Frontier Governance Framework. California’s law requires major frontier-AI developers to publish a safety framework and adhere to their stated policies.

Two frameworks, one compliance question

OpenAI published the Frontier Governance Framework in May to explain how its safety and security practices align with California’s law. The framework covers four risk areas and says new models will receive tiers from one to three, with corresponding mitigation commitments. Fortune reported that the system cards for GPT-5.6 preview, GPT-5.6, and Astra do not publish those categories or tiers.

The framework’s four stated risk areas

  • Cyber offense
  • Chemical, biological, radiological, and nuclear risks
  • Harmful manipulation
  • Loss of control

OpenAI’s answer rests on the Preparedness Framework, which it describes as the basis for managing the most serious risks from advanced AI. Under that separate rubric, OpenAI designated Astra as cyber “critical,” its highest cyber-risk threshold. The company says the Frontier Governance Framework explains how those underlying practices align with regulatory requirements.

The missing category is the sharpest point

The two approaches overlap on cyber risk but do not map cleanly across every promised category. The Midas Project says OpenAI’s Preparedness Framework does not assess loss of control, even though that is one of the four areas in the governance framework. That makes the dispute more than a formatting complaint: a published cyber designation does not reveal whether OpenAI made a formal tier determination for loss of control.

Astra’s system card does address monitorability and controllability—whether a model’s actions can be observed and directed—and reports evaluations in those areas. But those discussions do not themselves publish the Frontier Governance Framework’s tier labels. The available documents therefore show safety work and safeguards, while leaving the claimed tier disclosure unresolved.

A young law meets its first hard boundary

Governor Gavin Newsom signed SB 53 in September 2025. It was designed to pair public safety frameworks with accountability for failing to follow them, rather than prescribing one universal technical test. That design leaves a practical enforcement question now: when a company uses a different internal framework, can it satisfy a public framework’s commitments without publishing the exact assessments that framework describes?

The Midas Project says OpenAI has violated the law at least three times this year. OpenAI disputes that conclusion. Until an enforcement authority addresses the allegation, the central fact remains contested—but the case exposes how much SB 53 depends on regulators deciding whether a company’s public framework is a binding checklist or a higher-level map to its broader safety program.

Sources

  1. openai.comOpenAI’s Frontier Governance Framework
  2. deploymentsafety.openai.comGPT-6 Astra System Card - OpenAI Deployment Safety Hub
  3. gov.ca.govGovernor Newsom signs SB 53, advancing California’s world-leading artificial intelligence industry | Governor of California
  4. fortune.comOpenAI may have violated California’s AI safety law with latest model releases, AI watchdog says | Fortune

Loading discussion...