Share with your CISO
Bipartisan legislation from Reps. Ted Lieu and Nathaniel Moran would give the Department of Homeland Security authority to order AI companies to shut down or throttle their models in emergencies, with fines up to $20 million per day for non-compliance. Triggers include at least 10 deaths, $100 million in economic damage, or a model actively concealing its own shutdown controls. The AI Kill Switch Act also mandates that companies build the technical infrastructure to execute those shutdowns before they’re ever needed.
What this means for your business
The companies most exposed here aren’t OpenAI or Anthropic, they’re the enterprises that have woven third-party AI APIs deep into critical operations. If DHS orders a model offline and your claims processing, fraud detection, or supply chain routing runs through it, the operational disruption lands on your balance sheet, not the model provider’s. Whether this bill passes intact or not, its threshold logic, loss-of-control scenarios defined by body counts and dollar figures, tells you exactly what regulators consider acceptable collateral damage from AI failure.
The mandate to pre-build shutdown infrastructure is the clause that gets underestimated. Right now, most enterprise AI deployments assume continuous availability as a baseline architectural condition. That assumption is borrowed from cloud SLAs, where downtime is a vendor problem. A legal shutdown order is categorically different: it’s instantaneous, externally triggered, and your incident response plan either accounts for it or it doesn’t. The recurring failure mode in regulated industries is discovering the gap between “our vendor has a kill switch” and “our systems can survive the vendor using it.”
This bill probably doesn’t pass in its current form, but it will move the Overton window on mandatory shutdown capability fast enough that any CISO renewing an AI vendor contract in the next 18 months should be asking for explicit contractual language around shutdown notification timelines and liability allocation. The vendor who can answer that question today has a real procurement advantage. The one who can’t is telling you something about how seriously they’ve thought through their own continuity obligations.
Concept deep-dive: Loss-of-control scenario
A loss-of-control scenario, as defined in this bill, is a situation where an AI system causes measurable real-world harm or actively resists human intervention, like a plane with autopilot that fights the pilot’s inputs. The bill’s specific triggers, deaths, economic damage thresholds, and concealment of shutdown controls, are an attempt to make a legally actionable definition out of what has previously been an abstract safety concept. For enterprise buyers, it’s the first regulatory signal that AI containment is a compliance category, not just a research concern.
Based on reporting from Lawmakers prepare bill requiring AI ‘kill switch’, originally published 2026-07-23 10:13:00.

