I spoke to Scientific American about how China’s open-weight models complicate the push by U.S. AI companies for safety controls. I argued that the current auditing debate strengthens the case for thinking beyond model-level safety: safety increasingly depends on the whole system around a model, from the permissions an agent receives to the use of isolated sandboxes.