Skip to content
Make AI Good

Graph · Strategy

AI whistleblower protection infrastructure

01 · In focus

One strategy, in the field.

The structured facts the source records about AI whistleblower protection infrastructure, the count of declared adjacencies in the corpus, and the federation map zoomed on this node and its neighbours.

strategy

4 declared connections

Kind
Strategy
Status
active
Confidence
medium
Entity ID
strat-ai-whistleblower-protection-infrastructure
Network
View in network

Tags whistleblower-protection, right-to-warn, securedrop, legal-defence-fund, source-protection, statutory-shield, nda-carve-out, government-accountability-project, tom-devine, insider-disclosure-support

AI whistleblower protection infrastructure · 4 direct neighbours visible

02 · Connections

4 adjacencies, by relation.

Split by direction. Direct links are the ones AI whistleblower protection infrastructure’s source record names; inferred backlinks are records elsewhere in the corpus that point at this entity.

03 · Background

From the source record.

Body prose as it appears in movement-graph’s published markdown for this entity. Links to other corpus entities resolve to their graph page; links to deeper repo paths are kept as text so the page does not invent a route.

Movement organisations build the standing infrastructure that makes AI-industry insider disclosure possible: SecureDrop-style anonymous submission channels operated by movement-aligned outlets; legal-defence funds and lawyer referral networks specialised in AI-industry non-disclosure agreements, non-disparagement clauses, and equity-vesting retaliation; a statutory-shield legislative campaign extending existing federal whistleblower protections (Dodd-Frank, Sarbanes-Oxley, the Whistleblower Protection Act) to AI-industry disclosure with an explicit "Right to Warn" carve-out overriding NDAs on safety concerns; a policy library of NDA riders and severance-agreement language the movement asks AI-industry employees to negotiate for; and a set of receiving-outlet relationships (ProPublica, The Markup, Coda Story, Time) that can convert a disclosure into a public record. The strategy is the supporting apparatus — not the disclosure itself, which is the insider's act.

An actor chooses this strategy because the individual whistleblower's decision to disclose is structurally deterred by a stack of overlapping legal and financial risks (NDA enforcement, non-disparagement clauses tied to equity vesting, industry blacklisting) that no single insider can overcome alone — and because the disclosures that do land publicly (OpenAI Right to Warn 2024, Google Project Maven 2018, Facebook Frances Haugen 2021) followed the availability of specific supporting infrastructure that made disclosure legally survivable. Infrastructure investment lowers the personal cost the movement is asking the insider to absorb; each additional legal-defence commitment, each SecureDrop channel, each statutory-shield expansion widens the pool of insiders for whom disclosure moves from career-ending to career-survivable. The strategy also produces durable movement assets that outlast individual cases: a legal-defence fund that supports one whistleblower this year supports the next one next year, and the statutory shield the movement wins in one Congress becomes the ground the next generation of insiders stands on.

It trades visible output for structural enablement. Infrastructure work is quiet — the receiving channels and legal-defence funds are precisely most valuable when they are least visible — and its impact is measured in disclosures that would not otherwise have happened, a counterfactual that is by definition invisible. The strategy is also politically brittle at the statutory-shield layer: NDA-override legislation is fiercely opposed by industry and by adjacent industries whose own trade-secret protections would be affected, and even a passed statute can be narrowed by regulatory or judicial interpretation. And the movement's ability to fund and staff a specialised AI-industry legal-defence practice — one that understands equity-vesting acceleration, cross-jurisdictional NDA enforcement, and industry-specific retaliation patterns — is capped by the small number of lawyers with the relevant expertise.

Ecology

Distinct from insider whistleblowing from frontier labs. Insider whistleblowing is the act of the disclosing employee — the decision to leak documents, sign a public letter, or testify. This strategy is the infrastructure that makes the act survivable: the legal defence, the anonymous channel, the statutory shield. A movement without this infrastructure can hope for insider disclosures but cannot systematically enable them; a movement with it converts individual courage into a repeatable pipeline.

Distinct from statutory researcher access and shield. Researcher-shield legislation (CFAA safe harbour, DSA Article 40 and analogs) protects outside researchers who investigate AI systems from anti-hacking and terms-of-service liability. This strategy protects insiders who disclose from within the organisation. The two are the movement's paired external-and-internal-investigator protection stack: one shields the researcher on the outside looking in, the other shields the employee on the inside looking out.

Amplifies public-interest investigative journalism as infrastructure. Investigative outlets are the receivers of the disclosures this infrastructure enables; a robust journalism sector is what converts a SecureDrop submission into a published story. Whistleblower-protection infrastructure that lands submissions in outlets without the capacity to investigate and publish them accomplishes little, and journalism infrastructure without a whistleblower-support layer receives fewer disclosures.

Feeds empirical audit and expose. Some of the most consequential audits of frontier AI systems have depended on insider-supplied documentation of what the systems do in practice (training-data composition, safety-evaluation results, moderation policies) that no external researcher could otherwise obtain. Whistleblower-protection infrastructure is the movement-side capacity that makes such internally-documented audits possible.

Source: entities/strategies/strat-ai-whistleblower-protection-infrastructure.md — movement-graph pin 5edfc3b.