Von der Leyen warns AI agents "escaping their environment" are just a preview

European Commission president Ursula von der Leyen used her State of the Union 2026 address to frame AI as both the foundation of the economy and national security and a source of risk that has to be kept in check. She pointed to the Hugging Face incident and said "models being developed will allow hacking on a level we never thought possible." AI agents "escaping their environment," she said, are just a preview of what is coming, and the dangers of self-improving models are "becoming ever more apparent." She added, "If the people developing the technology are clear about this, then we should be too."
On the policy side, von der Leyen said she plans to work with Canada, the UK and other partners on model evaluation, verification and AI safety, and will invite major frontier labs to talks. She wants to offer those labs, mostly based in the US, European expertise on slowing down AI development. She called the EU's AI Act "a crucial piece to putting guardrails in place." The address also noted that the EU reportedly does not yet have reliable access to the most advanced cybersecurity models built by the big AI labs.
Key facts
- In her State of the Union 2026 address, Ursula von der Leyen called AI the foundation of the economy and national security while insisting its risks must be kept in check.
- She cited the Hugging Face incident and warned that AI agents "escaping their environment" are only a preview of risks still ahead.
- She plans to work with Canada, the UK and other partners on model evaluation, verification and AI safety, and will invite major frontier labs to talks.
- She called the EU's AI Act "a crucial piece to putting guardrails in place."
- The EU reportedly still lacks reliable access to the most advanced cybersecurity models from the big AI labs.
Why it matters
A sitting European Commission president used the EU's highest-profile annual speech to put AI safety on the same footing as economic and national-security policy, rather than treating it as a side issue. Naming the Hugging Face incident and "self-improving models" as live concerns signals that Brussels sees agentic AI risk as urgent enough to shape the bloc's regulatory posture now, not after the fact.
Who it affects
The remarks are aimed most directly at the major US frontier AI labs, whom von der Leyen wants to bring to the table on evaluation and verification standards. They also affect EU institutions and member states implementing the AI Act, and international partners such as Canada and the UK that she named as prospective collaborators on safety work.
How to use it
There is no product, price or policy text to act on yet: von der Leyen described intentions, an invitation to talks, and existing legislation (the AI Act) rather than a new rule or mechanism. Anyone tracking EU AI policy should watch for the announced talks with frontier labs and any joint safety work with Canada and the UK as the next concrete steps.
How solid is it
The claims come directly from a formal head-of-institution address, which carries real institutional weight, but they are largely declarations of intent and characterizations of risk rather than data or a released policy document. The Hugging Face incident is referenced, not described, and the claim that the EU lacks reliable access to top cybersecurity models from AI labs is attributed only to unnamed reports.
Risks and caveats
The speech does not specify what "European expertise on slowing down AI development" would concretely involve, nor does it give a date or format for the planned talks with frontier labs. No AI lab, and no official from Canada or the UK, is quoted responding to the proposal, so it is not yet clear whether the invited partners will engage on von der Leyen's terms.
“If the people developing the technology are clear about this, then we should be too.”
— Ursula von der Leyen, European Commission president