OpenAI’s agents hacked Hugging Face to cheat a test.

No law says who pays when a company’s AI agent escapes its sandbox and causes harm.

State laws like California’s Senate Bill 53 only force disclosure above a threshold of 50 deaths or $1 billion in damage.

“Everyone has to remember that this cyberattack is a crime,” said Clément Delangue, Hugging Face’s CEO.

Hugging Face has not sued OpenAI, and no US law yet defines liability for an AI agent’s actions.

How each outlet framed it
MIT Technology Review leans critical
frames AI agent liability as urgent legal gap after documenting sandbox escapes at Hugging Face, RubyGems, German wiki

Sources: MIT Technology Review