State Regulators Launch Specific AI Oversight Frameworks and Rules

3 min readSources: National Law Review

State regulators introduce detailed AI oversight frameworks and laws for financial and tech sectors.

Why it matters: Legal and compliance teams must prepare for new, precise state AI regulations impacting software audits, risk management, and corporate accountability. These targeted actions mark a clear rise in AI governance at the state level, shaping legal risks and operational obligations.

  • Conference of State Bank Supervisors released an AI Supervisory Framework on Sept 16, 2026, guiding examiners’ risk evaluation in banks.
  • California Governor Newsom’s Sept 18 executive order speeds up AI oversight and mandates developing an AI kill switch.
  • California laws signed Sept 9 establish AI system verification bodies and a state registry for AI auditors.
  • Pennsylvania Governor Shapiro urged federal lawmakers on Sept 17 to enact strict AI regulations focusing on safety and transparency.

On September 16, 2026, the Conference of State Bank Supervisors (CSBS) published an Artificial Intelligence Supervisory Framework to assist state bank examiners in assessing risks from AI technologies in banks and nonbank financial institutions. CSBS President Brandon Milhorn explained the framework provides clear standards for evaluating AI risks, helping institutions align AI use with safety and compliance expectations.

Following up on this, California Governor Gavin Newsom signed an executive order on September 18, 2026, directing state agencies to accelerate independent oversight of AI companies. The order also requires advancing development of an AI kill switch—a mechanism to quickly disable AI systems posing risks.

This executive order complements California's legislative action earlier that month. On September 9, 2026, Governor Newsom signed Senate Bill 813 and Assembly Bill 1405 into law. These create official bodies to independently verify AI systems’ safety and accuracy, and establish a state registry of AI auditors to enhance accountability.

Across the country, Pennsylvania Governor Josh Shapiro urged the U.S. Congress on September 17 to enact federal AI legislation emphasizing independent oversight, transparency, and public safety safeguards. He highlighted the importance of clear guardrails to prevent AI-driven harm.

These initiatives demonstrate how states are defining explicit compliance requirements for AI technologies, especially in sensitive areas like banking and public safety. Legal professionals, compliance officers, and AI developers must closely track these frameworks. Understanding their precise obligations will be critical to managing legal risks and meeting governance expectations as AI technologies become more widely integrated.

What's next: Key AI regulatory developments are expected later this year as states and federal agencies respond to these initial frameworks with additional rules and guidance.