YourVoice.Now
Back to Dashboard
HR-9333House2026-06-18Science, Technology, Communications

AI Flaw Reporting and Security Enhancement Act

YourVoice.Now Summary

Transparency & Accountability

A voluntary national database would collect reported AI flaws, incidents, and safety failures.

Transparency & Accountability

  • Public reporting infrastructure — National database created for voluntary reports of AI flaws
  • Disclosure norms — Program must set standards for when AI flaws are made public
  • Reporting to Congress — NIST must report on the program within three years

The details

The government would build a central place to report flaws in artificial intelligence systems. The National Institute of Standards and Technology would run the program, with help from the cybersecurity agency CISA. Reporting would stay voluntary. No company would be required to disclose anything. NIST would bring together industry, universities, nonprofits, and civil society groups. Together they would agree on common terms for AI vulnerabilities, failures, incidents, and misuse. They would build ways to rank how severe a flaw is. They would also set norms for when a flaw should be made public. NIST would create a national database of AI flaws, or adapt an existing one, and may partner with a university or research institution to do it. A report to Congress is due within three years.

Congressional Summary

AI Flaw Reporting and Security Enhancement ActThis bill establishes a program to facilitate the voluntary reporting and tracking of artificial intelligence (AI) flaws, to be administered by the National Institute of Standards and Technology (NIST).In carrying out this program, NIST must seek to convene various stakeholders to establish common definitions for terms related to AI flaws and criteria for the classification of AI flaws (e.g., security-related flaws and safety-related flaws). The group must also support the development of technical standards and guidance related to detecting, managing, and disclosing AI flaws and prioritizing the remediation of such flaws.Further, NIST must develop, or enter into cooperative agreements with institutions of higher education or research institutions to develop, infrastructure for the voluntary reporting, collection, and tracking of AI flaws. This must include a national database of AI flaws or the modification of an existing national database to account for AI flaws. (NIST currently administers a national database of cybersecurity vulnerabilities.) NIST must consider certain topics when developing this infrastructure, including the interoperability of the infrastructure with relevant existing systems, standards, and best practices.Within three years of the bill’s enactment, NIST must report to Congress on the implementation of these provisions.Under the bill, an AI flaw is a set of conditions or behaviors that allow for the violation of certain policies (e.g., safety or security policies) and is not necessarily associated with malicious intent.

Legislative Subjects

Computer security and identity theftComputers and information technologyConsumer affairsData collection, sharing, protectionPerformance measurementProduct safety and qualityTechnology assessment

Details

Congress
119th
Chamber
House
Status
summarized
Action
Introduced in House
Action Date
2026-06-18
Date Added
2026-07-25
Source
Congress.gov →

Like reading a bill in plain English?

We're building an app that does this for every bill in Congress and lets you tell your reps how you want them to vote. We're a small team getting ready to launch, and we're trying to show investors that real people want this. Be one of them. Help us get it built. Leave your email and we'll tell you the moment the app is ready.

By default, we'll only email you once — when the app launches. Unless you opt in below, you won't receive anything else. We don't share or sell your email.