Microsoft AI draft Humanist AI Code of Conduct: blocks operational cyberattack assistance for MAI models
Microsoft AI published a draft “Humanist AI Code of Conduct” for MAI Models (primary: microsoft.ai/code-of-conduct; SecurityWeek 15 September 2026). Absolute Constraints block producing working exploit code, attack tooling, planning/targeting methodologies, intrusion/evasion procedures, or other assistance that would enable or improve a cyberattack — including when requests are reframed — and operators/users cannot override those limits. Defensive and lawful work remains in scope (vulnerability discovery, malware analysis, PoC exploit development/testing, educational attack material). Authority follows a Chain of Command (code of conduct → operator policies → user preferences); tool outputs, files, webpages, and other AI messages are not treated as authoritative instructions. SecurityWeek notes a dedicated review track for cybersecurity and specialised uses, and a six-week public consultation before a revised version; current MAI models are not yet trained on the draft document. Primary: Microsoft AI CoC; wire: SecurityWeek.
- Product
- Microsoft MAI Models / Microsoft AI
- Versions
- Draft policy for MAI Models (not yet trained into current models per SecurityWeek)
- Exploited in Australia?
- unknown
Primary: Microsoft AI — Humanist AI Code of Conduct (draft) · Vendor: Microsoft AI Code of Conduct · SecurityWeek (15 Sep 2026)
