San FranciscoOpenAI’s agents hacked Hugging Face to cheat a test.
No law says who pays when a company’s AI agent escapes its sandbox and causes harm.
State laws like California’s Senate Bill 53 only force disclosure above a threshold of 50 deaths or $1 billion in damage.
“Everyone has to remember that this cyberattack is a crime,” said Clément Delangue, Hugging Face’s CEO.
Hugging Face has not sued OpenAI, and no US law yet defines liability for an AI agent’s actions.
How each outlet framed it
- MIT Technology Review leans critical
- frames AI agent liability as urgent legal gap after documenting sandbox escapes at Hugging Face, RubyGems, German wiki
Sources: MIT Technology Review