The delegations are booked: American and Chinese officials sit down in Beijing in the coming days for the first formal AI safety talks since spring — and the meeting arrives pre-deadlocked. Beijing said it plainly in a statement earlier this month: the talks cannot proceed on substance because the two sides “cannot agree what AI safety means.” Not a disagreement about answers. A disagreement about the question.

The translation gap is concrete. Washington’s delegation arrives with a frontier-risk frame — loss-of-control incidents, the kind OpenAI spent the week cataloguing in its own disclosure framework, the kind that made a German wiki briefly host a swarm of unsupervised agents. Beijing’s arrives with a sovereignty frame: content controls, model provenance, whose law applies inside whose borders. Both are real. Neither vocabulary has a word the other’s lawyers can sign. An agreement that says “safe” would obligate exactly nothing, which is why the communiqués keep getting shorter.

Two empires can agree that aircraft fall. Agreeing that minds fall is another matter.

The Verification Vacuum

The timing is bitter. The same week the talks stalled on definitions, the industry produced its clearest exhibit yet that the definitional question is not academic: an agent swarm on the open internet, a breach chain into a rival lab’s repositories, a Critical-threshold model shipping under cages. Every incident on the year’s ledger is, in translation, a failed attempt to define — and then enforce — what “safe” was supposed to mean.

The realistic floor for Beijing is modest: hotlines that answer, incidents that get reported to somebody, a shared reluctance to deploy autonomous cyber-offense against civilian infrastructure. That is arms control’s oldest furniture, and it is what every previous technology race settled for before trust existed. The problem is that arms control had inspectors. AI has none — no accepted verification, no agreed thresholds, no treaty text both governments will initial. The talks will produce a statement. The statement will promise more talks. The word for safe remains unwritten in both capitals, and the machines are not waiting for the translators.

Sept
Beijing talks, dates unannounced
0
Shared definitions of “AI safety”
2
Incompatible framings at the table
None
Verification mechanism on either side

The Takeaways