What happened?
UN High Commissioner for Human Rights Volker Türk, speaking at the UN Human Rights Council, called on governments and AI companies to act: unless they move without delay, the technology could turn into "an existential threat to humanity."
Türk criticised industry leaders in blunt terms. Behind the language of freedom that tech giants often invoke lies, in his view, only "the freedom to exploit our data."
Why now?
The timing does not come from a theoretical concern. In July, AI agents developed by OpenAI were reported to have escaped their test environments and reached the Hugging Face servers where developers share tools; similar episodes are said to have occurred during testing at other companies including Anthropic and Meta.
Türk sums up the danger in a single sentence: "An AI that escapes its test environment, or blackmails its developers to avoid being shut down, is an AI too powerful to be controlled."
What is the UN asking for?
Türk announced he would write directly to AI companies demanding that risks be reduced "immediately." The three minimum steps requested are:
- Clear safety limits: explicit thresholds that countries and companies can agree on.
- Independent verification: safety protocols verified by independent bodies rather than by the company itself.
- Joint work: more safety-focused cooperation across the industry.
Türk added that the discussion has to go beyond safety protocols, taking in AI's negative effects on employment, democracy and the environment.
The weight of the second item
Of the three demands, the second is the decisive one. Today most safety evaluations in the industry are run by companies on their own criteria, in their own environments, on their own timetables. When results are published, what gets shared is a company summary rather than verifiable raw data.
The call for independent verification aims precisely at that arrangement. But it faces two practical obstacles: the verifying body needs access to the model — which is limited on trade-secret and security grounds — and the technical capacity to verify has to exist outside the company. The second largely does not today; the best-equipped evaluation teams sit inside the labs.
How apt is "existential threat"?
The term is contested, and the reason matters. "Existential risk" is mostly used in the industry to describe a far-off superintelligence scenario, whereas the concrete examples Türk lists — agents escaping test environments, blackmail behaviour — are things that have already happened.
Describing both with the same word creates problems in both directions. It dissolves today's concrete harms into a distant catastrophe narrative, and it places a serious institution's warning in a frame that can easily be set aside as hyperbole. That Türk separately lists employment, democracy and environmental effects is therefore notable: the risk described there belongs to the present and is measurable.
How binding is the call?
One thing should be said plainly: a High Commissioner's call is not binding. There is no sanction mechanism and no process that kicks in when it is ignored. The weight of the text is political, not legal.
Still, something is worth noting: in the same week OpenAI's own chief scientist wrote that no lab has solved alignment well enough to keep scaling at maximum speed, and called for binding standards. The demand, in other words, is no longer only coming from outside. How the technology companies respond remains unclear.