Singapore’s frontier-artificial-intelligence policy moved on two tracks this week: abroad, Prime Minister Lawrence Wong signed onto a leader-level statement urging mandatory pre-deployment testing and independent evaluation of advanced models; at home, agencies that already run red-team exercises and accredit third-party testers framed that pledge as continuity rather than a pivot. The joint declaration—initiated by Norwegian Prime Minister Jonas Gahr Støre and Finnish President Alexander Stubb and open for further endorsements—asks governments to coordinate standards, share serious incident reports, and explore an international institution that could verify capability thresholds.
What Wong endorsed on Sep 22
Channel News Asia reported that Mr Wong joined 21 other heads of government, including Canada’s Mark Carney and Australia’s Anthony Albanese, in backing transparent corporate safety protocols. The letter presses qualified evaluators to receive sufficient system access—a friction point when frontier developers treat weights and training data as trade secrets. It also urges UN member states to build on existing mechanisms rather than inventing parallel bureaucracy from scratch, while leaving room for verification bodies when models cross agreed capability lines.
The Straits Times noted the statement does not demand an AI slowdown. Instead it argues advanced systems should stay under human direction and international law, with regional organisations pooling scientific capacity so evaluation is not concentrated in a handful of capitals. For Singapore, that aligns with years of hosting the International Scientific Exchange on AI Safety and publishing the Singapore Consensus research priorities, updated in 2026 with a fourth pillar on societal resilience and a companion note on agentic deployment risks.
Domestic testing infrastructure
The Singapore AI Safety Institute, operated by the Digital Trust Centre with Infocomm Media Development Authority (IMDA) policy leadership, conducts technical evaluations and participates in the Network for Advanced AI Measurement, Evaluation and Science. Minister for Digital Development and Information Josephine Teo told the May 2026 scientific exchange that deployers ask a simple question—who can they trust to red-team a model—and AI TAP is meant to answer it by accrediting firms against IMDA’s Starter Kit for Testing LLM-Based Applications for Safety and Reliability.
That starter kit codifies five core risk families and testing methodologies drawn from the Global AI Assurance Pilot, which stress-tested generative applications across sectors. AI Verify Foundation, IMDA’s non-profit arm, said accredited testers will be judged on technical competency, financial sustainability and operational readiness, with no accreditation fees at launch. The scheme follows sandbox work that exposed prompt-injection and agentic failure modes in live deployments.
From research agenda to oversight
The 2026 Singapore Consensus—more than 100 contributors from 13 countries—prioritises evaluations resistant to sandbagging and alignment faking, secure access for independent third parties, and monitoring when developers use AI to oversee AI. Those research problems are not academic for a hub hosting hyperscaler labs and enterprise adopters in finance and healthcare. Wong’s endorsement signals Singapore will argue inside UN and regional forums that testing norms must be portable, while AISI and AI TAP supply the bench capacity.
Josephine Teo’s post-exchange commentary compared future AI assurance to aviation safety cultures where crews refuse to board without credible maintenance records. Singapore will not single-handedly set global law, but it is positioning evaluation services, accredited testers, and consensus documents as exportable infrastructure. The Sep 22 statement gives diplomats a political hook; AISI and AI TAP are the workshop floor.
What changes for deployers
Enterprises shipping customer-facing chatbots or agentic workflows still face voluntary governance under the Model AI Governance Framework for Gen AI, but procurement teams will increasingly ask for evidence from accredited testers rather than vendor self-attestations. Banks and hospitals already route sensitive use cases through internal risk committees; external jailbreak reports become another line item. International alignment matters because models trained elsewhere serve Singapore users within hours of release.
Parliament does not need to pass a new bill for Singapore to honour the joint statement’s spirit—much of the machinery is funded and staffed. The open question is whether other signatories match rhetoric with evaluator access and incident sharing. For now Wong’s signature binds Singapore to advocate for testing before deployment, while local institutes prepare to perform it.








