AI
Published 2026-09-15
Verified 2026-09-19

Microsoft AI draft Humanist AI Code of Conduct: blocks operational cyberattack assistance for MAI models

Microsoft AI published a draft “Humanist AI Code of Conduct” for MAI Models (primary: microsoft.ai/code-of-conduct; SecurityWeek 15 September 2026). Absolute Constraints block producing working exploit code, attack tooling, planning/targeting methodologies, intrusion/evasion procedures, or other assistance that would enable or improve a cyberattack — including when requests are reframed — and operators/users cannot override those limits. Defensive and lawful work remains in scope (vulnerability discovery, malware analysis, PoC exploit development/testing, educational attack material). Authority follows a Chain of Command (code of conduct → operator policies → user preferences); tool outputs, files, webpages, and other AI messages are not treated as authoritative instructions. SecurityWeek notes a dedicated review track for cybersecurity and specialised uses, and a six-week public consultation before a revised version; current MAI models are not yet trained on the draft document. Primary: Microsoft AI CoC; wire: SecurityWeek.

Product
Microsoft MAI Models / Microsoft AI
Versions
Draft policy for MAI Models (not yet trained into current models per SecurityWeek)
Exploited in Australia?
unknown

Primary: Microsoft AI — Humanist AI Code of Conduct (draft) · Vendor: Microsoft AI Code of Conduct · SecurityWeek (15 Sep 2026)

ai