Product1 publisher2 min readPublished
Brookings and Fudan want humans to hold the decision to attack nuclear command systems
Melanie Sisson of Brookings and Tianjiao Jiang of Fudan propose red lines on military AI, a working definition of meaningful human control, and a hotline for AI incidents. Trump and Xi meet in Washington next week.
The Product Desk · Product desk

What happened
- A report published last week by Brookings' Melanie Sisson and Fudan University's Tianjiao Jiang argues that critical military decisions, such as when to launch a nuclear retaliatory strike, must remain solely in human hands.
- The two authors also propose red lines around the military use of AI, rules for what meaningful human control looks like in practice, and a dedicated military hotline for reporting emergencies triggered by AI errors.
- The report landed ahead of a meeting scheduled in Washington next week between Trump and Xi.
- The Trump administration has used AI in its campaign against Iran, including Palantir's Maven to gather and parse battlefield information that helped officials identify targets for future strikes.
Compiled by The Product DeskSomething wrong?How this is made
Why it matters
- constraint A signed human-in-the-loop clause binds nothing operational until the two sides write down what control means at the console, because a confirmation prompt with a recommendation attached and a running clock satisfies the words.
- decision Because the ask sits upstream of the 2024 wording, any joint statement next week has to choose between restating the nuclear-launch commitment and covering cyberattacks on the systems that carry launch orders.
- precedent A hotline for AI-triggered emergencies would create a reporting duty for a class of failure that currently has no named owner on either side.
- contradiction The proposal needs a signature from an administration already running AI-assisted targeting in a live campaign, so its fate rests on Trump's appetite for the constraint.
In September 1983 a lieutenant colonel in the Soviet Air Defense Forces named Stanislav Petrov received a warning from an automated early-warning satellite system that five U.S. nuclear warheads were headed for the Soviet Union [10]. He reasoned that a real attack would have used hundreds of bombs, not five, and phoned his superiors to report a false alarm [11]. It was later determined that the satellite had picked up flares of sunlight bouncing off clouds and read them as incoming warheads [12]. According to Gizmodo, had he passed the warning up the chain, his superiors very likely would have authorized retaliatory strikes [13].
In that chair, Petrov refused. He applied a judgment about arsenal size that the satellite system was not making. Refusal is the harder half of any human-in-the-loop rule, and Sisson and Jiang leave it to the two governments: they ask Washington and Beijing to work out rules determining what "meaningful human control" looks like in practice [5].
The late-2024 understanding between Joe Biden and Xi covered decisions related to the use of nuclear weapons [6]. Sisson's ask covers a different decision, the one to attack the systems that carry launch orders [14]. "Presidents Donald Trump and Xi Jinping can lead in governing these dangers by agreeing that only humans, not AI, should make the decision to initiate a cyberattack against each other's nuclear command, control, and communications systems (NC3) or critical infrastructure," she wrote [4].
"As militaries integrate agentic AI into their operations and AI models advance rapidly in sophistication and capability, new pathways to catastrophic outcomes are emerging," Sisson wrote [3]. Gizmodo reports that multiple insiders from frontier AI labs came forward over the past week to warn that agent capabilities are advancing much quicker than our understanding of them [15].
Trump has dismissed AI doomsday fears as a "SICK conspiracy" spread to benefit China [9]. Gizmodo also reports he has shown no sign of feeling bound by agreements struck by previous administrations [7].
As described, the proposals apply only to government and military use: government to government, military to military [16]. The four questions underneath them apply to any reserved decision, including the ones product teams write into an escalation policy. Which decision is reserved, in words specific enough to test after the fact. What the human sees at the moment of the decision, including whatever the model is not weighing. How long they have. And what the system does when nobody answers in time: act, or hold. Sisson and Jiang leave the content of that definition to the two governments [5].
What to watch
- Whether next week's Washington meeting produces joint language on AI and NC3, or only a restatement of the 2024 nuclear-weapons wording.
- Whether either government publishes an operational definition of meaningful human control that can be tested against a real targeting pipeline.
- Whether the proposed military hotline for AI gets a named owner on each side and a threshold for what counts as a reportable AI incident.