S5252119th Congress

BLADE Act

Sponsored By: Senator Hagerty, Bill [R-TN]

Introduced

Summary

Protect U.S. closed-source AI models from foreign model extraction attacks. The bill would create a Commerce-led system to identify attackers, share information with model owners, and use export controls and sanctions to deter and punish fraudulent account networks and extraction efforts.

Show full summary
  • Model owners would get a voluntary, confidential information-sharing channel with the Department of Commerce and a public best-practices guide on detecting and stopping model extraction within 210 days. This preserves owner confidentiality unless they consent to disclosure.
  • Identified foreign attackers and fraudulent account providers would be placed on a public attackers list and could be added to the Entity List, enabling IEEPA-based sanctions and civil or criminal penalties for violations.
  • The Department of Commerce would be required to complete a formal assessment within 180 days, deliver an integrated report within 210 days, and provide annual updates for three additional years to track new persons and methods.

This approach would combine technical guidance, public naming, export controls, and sanctions to make large-scale model copying harder and riskier for actors in countries of concern.

Personalized for You

How does this bill affect your finances?

Personalize government policy and PRIA will tell you what this bill means for your household, plus every other piece of legislation we track. PRIA reads each provision against your financial profile to show you exactly what matters to your wallet.

Bill Overview

Analyzed Economic Effects

6 provisions identified: 6 benefits, 0 costs, 0 mixed.

Blocking sanctions on model attackers

If enacted, the bill would direct the President, under IEEPA, to block transactions and property of persons of concern when those assets are in the U.S. or controlled by a U.S. person. The blocking action would include civil and criminal penalties for violations under IEEPA. Exceptions cover sales of food, medicine, medical devices, humanitarian aid, and authorized U.S. intelligence, law enforcement, and national security activities. The President may waive sanctions with a written national-interest certification and a report to Congress.

Entity List additions for attackers

If enacted, the Under Secretary of Commerce would be required to add to the Bureau of Industry and Security's Entity List any entities identified by Commerce as conducting or facilitating model extraction attacks, including those using fraudulent account networks. Additions must be done within 210 days and would also include subsidiaries that are 50% or more owned. These Entity List entries would restrict exports and technology transfers to listed entities.

Commerce study of AI attacks

If enacted, the Department of Commerce would complete an initial assessment within 180 days identifying who has carried out model extraction attacks and where they operate. The assessment would cover methods used, estimated attempts in the prior two years, and economic and national security effects. Commerce would send a report to Congress within 210 days, update it after one year, and provide annual updates for three more years. Model owners could be consulted, but participation would be voluntary.

New legal definitions for AI

If enacted, the bill would add clear legal definitions for key terms like "closed-source AI model," "model extraction attack," "person of concern," and "fraudulent account network provider." "Country of concern" would automatically include China (including Hong Kong and Macau), Russia, and other countries listed in a specific export-control group as of January 1, 2026, when designated. The definitions would exclude authorized training that follows an owner's terms. These rules would guide later enforcement, lists, and sanctions.

Public online list of attackers

If enacted, the Department of Commerce would keep a public online "AI Model Extraction Attackers List" naming persons of concern identified as directing or conducting model extraction attacks in the past year. The public list would use findings from required assessments. Commerce would not publish confidential information provided by closed‑source model owners on the public site without the owner's written permission.

Voluntary sharing and defense guidance

If enacted, the Department of Commerce would set up a voluntary, confidential system for closed‑source model owners to quickly share reports about extraction attacks and fake account networks. Commerce would also publish best-practice guidance within 210 days on how to detect, prevent, and respond to extraction attacks. Commerce may not include owners' confidential information in public guidance without their express permission.

Sponsors & CoSponsors

Sponsor

Hagerty, Bill [R-TN]

TN • R

Cosponsors

  • Sen. Kim, Andy [D-NJ]

    NJ • D

    Sponsored 8/5/2026

  • Sen. Scott, Tim [R-SC]

    SC • R

    Sponsored 8/5/2026

  • Sen. Cortez Masto, Catherine [D-NV]

    NV • D

    Sponsored 8/5/2026

  • Sen. McCormick, David [R-PA]

    PA • R

    Sponsored 8/7/2026

  • Sen. Shaheen, Jeanne [D-NH]

    NH • D

    Sponsored 8/7/2026

Roll Call Votes

No roll call votes available for this bill.

View on Congress.gov
Back to Legislation