
What we see now is similar. People release open weights, and users can verify that the model does not phone home. That is one guarantee. But open weights do not tell a nurse or teacher how to change the model when they find something wrong. They cannot guarantee that the training data contains no Trojan horses, sleeper agents or backdoors. They do not necessarily provide a place to appeal where a human will read the appeal. And they may not allow easy post-training.