Glossary · term

AI Safety Governance Framework 2.0

The AI Safety Governance Framework 2.0 (人工智能安全治理框架 2.0) is a Chinese national-level governance document that classifies AI risks and recommends responses across development, deployment, operation, and use. Published in September 2025 as a TC260 technical document, it updates a 2024 framework. It is non-binding guidance: not a statute, administrative regulation, mandatory national standard, certification, or proof of compliance.

Regulation2025-09-15Wave 2 · 2024Maturity: 4/5

Origin and context

The first framework was released in September 2024. Under Cyberspace Administration of China guidance, CNCERT led specialist institutes, research bodies, and companies in preparing version 2.0; the official bilingual PDF names TC260 and CNCERT/CC. The update was released on 15 September 2025. The official announcement says it refined risk classification, explored risk grading, and updated governance measures in response to technical and application changes. AI Safety Governance Framework 2.0 is the official English title, not a translation supplied by Digital Policy Alert.

Sources: s1, s2, s3, s4

Why it matters

The framework provides a structured view of priorities within China's AI policy and standards community. It groups inherent model, algorithm, and data risks; application risks involving cyber systems, content, the physical world, and cognition; and derivative social, environmental, and ethical risks. It connects those categories to technical and broader governance measures and emphasizes the full AI lifecycle. Independent analyses treat it as a possible precursor or reference point for later standards and rules. A standalone explanation prevents readers from mistaking policy guidance for an enforceable duty.

Sources: s3, s4, s6

Example

An AI provider could use the framework voluntarily to structure a risk register: map a use case to the listed risk families, assess likelihood and impact, assign technical and organizational measures, and revisit them from research through operation. That exercise may support gap analysis, but it does not by itself establish conformity with Chinese law or any mandatory standard. An auditor making a compliance claim would need to identify the actually applicable statutes, administrative measures, standards, contracts, and facts separately; adoption of the framework is neither a legal safe harbor nor a safety certificate.

Sources: s2, s3, s4, s5

How it differs

EU AI Act

The EU AI Act is legislation with binding duties and staged applicability. China's AI Safety Governance Framework 2.0 is non-binding technical guidance. Both organize AI risks, but their legal effect, taxonomies, institutions, and enforcement contexts differ; structural resemblance does not create equivalent obligations.

Frontier AI Safety Commitments

Frontier AI Safety Commitments are public commitments made by companies in an international policy process. This framework is a government-guided technical governance document addressed to a broader AI lifecycle and risk taxonomy. Neither category should be described as binding law without a separate legal basis.

Maturity and evidence

Maturity is rated 4 because this is a second official edition with a stable bilingual artifact, cross-organizational drafting, independent policy and standards analysis, and recognition in an international AI-safety synthesis. It is not rated 5 because the document is recent and voluntary, and there is not yet a mature body of implementation, audit, or outcome evidence. The rating describes institutionalization of the artifact, not legal force or demonstrated effectiveness.

Sources: s1, s2, s3, s4, s5, s6

Limits and open questions

The official English text accompanies the Chinese release and is credible for terminology, but contested legal interpretation should still consult the Chinese original and subsequent instruments. The framework records recommended categories and measures; it does not show that any control is effective or that a system is safe. Later TC260 standards, administrative measures, or legislation may change its practical relevance. This entry reflects sources checked through 5 September 2026 and should not be used as legal advice, a jurisdiction-specific compliance opinion, or safety certification.

Sources: s2, s4, s5, s6

Related terms

References

Last updated: 2026-09-07

In the Skills Atlas

This term is also covered in the Skills Atlas as ai risk management skill.

In the Skills Atlas

This term is also covered in the Skills Atlas as nist ai rmf skill.

In the Skills Atlas

This term is also covered in the Skills Atlas as ai ethics skill.