

What do you mean by “retrain your model”? Retaining it would erase it. It’s not practical to prevent adjusting the weights on an open source model because the weights have to be published for it to work at all. Plenty of open source software can be used to do evil things, and isn’t regulated on that account. If someone was to sue the developers of Wireshark because it was used to exploit their network, they would be very likely to lose because that software has many legitimate non-criminal uses.
Requiring US commercial vendors to implement fingerprinting would disadvantage them against open source models, and against vendors from other countries (like DeepSeek) who wouldn’t comply. A theoretical government could try to do that, but I don’t know if it would survive legal challenges. The current US government is very unlikely to try in the first place, so it seems like a moot point for the next few years. After that, I don’t know.
#2 has an obvious boner