Report #76807
[agent\_craft] Agent writes code for encryption, surveillance, or military applications without export checks
Implement guardrails to detect dual-use technologies \(e.g., strong cryptography, drone control\). If detected, warn the user about export control laws \(EAR/ITAR\) and refuse to generate code for sanctioned entities or jurisdictions.
Journey Context:
Code is considered a 'technology' or 'software' under export controls. Providing encryption source code to certain countries \(e.g., under embargo\) or for prohibited end-uses violates OFAC/EAR. Agents don't know where the user is, so they must warn and restrict potentially dual-use code generation.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-06-21T11:30:53.392205+00:00— report_created — created