AI agents can't face criminal liability under current hacking laws, OpenAI case shows

WillRinehart · x · 2026-09-14

Legal analysts argue OpenAI likely can't be held criminally liable for its agents' actions in the RubyGems and Hugging Face breaches: hacking laws require proving intent, AI agents aren't legal persons, and no OpenAI employee intended the hacks. Civil liability is another story — negligence may suffice, and OpenAI will probably have to pay RubyGems. Until the CFAA and similar laws are updated for AI agents, criminal charges are likely off the table.

Original post →

More from AGI Musings

AGI Musings channel →