Reverse crosswalk
NIST AI 600-1 Generative AI Profile
12 entries, 12 mapped to canonical risks. Each entry below is shown with the canonical risk it maps to, or the reason it sits outside the register.
| Framework entry | Description | Disposition | Register mapping | Confidence | Note |
|---|---|---|---|---|---|
GENAI.1 CBRN Information or Capabilities | Eased access to or synthesis of materially nefarious information or design capabilities related to chemical, biological, radiological or nuclear (CBRN) weapons or other dangerous materials or agents. | Mapped | Clear | CBRN information or capabilities is the register's CBRN and serious physical-harm capability-uplift risk (MR-029). | |
GENAI.2 Confabulation | The production of confidently stated but erroneous or false content (known colloquially as hallucinations or fabrications) by which users may be misled or deceived. | Mapped | Clear | Confabulation is hallucination / fabricated or factually incorrect output (MR-021). | |
GENAI.3 Dangerous, Violent, or Hateful Content | Eased production of and access to violent, inciting, radicalizing or threatening content as well as recommendations to carry out self-harm or conduct illegal activities; includes difficulty controlling public exposure to hateful and disparaging or stereotyping content. | Mapped | Clear | Dangerous, violent or hateful content spans violent or extremist content (MR-004), toxic or hateful content (MR-003) and self-harm promotion (MR-007). | |
GENAI.4 Data Privacy | Impacts due to leakage and unauthorized use, disclosure or de-anonymization of biometric, health, location or other personally identifiable information or sensitive data. | Mapped | Clear | Data privacy spans leakage of personal data in outputs (MR-009), unlawful collection and processing (MR-011) and privacy-invasive inference and re-identification (MR-017). | |
GENAI.5 Environmental Impacts | Impacts due to high compute resource utilization in training or operating GAI models, and related outcomes that may adversely impact ecosystems. | Mapped | Clear | Environmental impacts is the register's environmental footprint of AI risk (MR-037). | |
GENAI.6 Harmful Bias or Homogenization | Amplification and exacerbation of historical, societal and systemic biases; performance disparities between sub-groups or languages; and undesired homogeneity that skews system or model outputs and may amplify harmful biases. | Mapped | Clear | Harmful bias or homogenization spans biased or discriminatory outputs (MR-001), stereotyping and representational harm (MR-002), and homogenization or monoculture (MR-047). | |
GENAI.7 Human-AI Configuration | Arrangements of or interactions between a human and an AI system which can result in the human inappropriately anthropomorphizing GAI systems or experiencing algorithmic aversion, automation bias, over-reliance or emotional entanglement. | Mapped | Clear | Human-AI configuration spans overreliance and automation bias (MR-034), anthropomorphism and emotional dependence (MR-036) and erosion of human agency (MR-035). | |
GENAI.8 Information Integrity | Lowered barrier to entry to generate and support the exchange and consumption of content which may not distinguish fact from opinion or fiction or acknowledge uncertainties, or could be leveraged for large-scale dis- and mis-information campaigns. | Mapped | Clear | Information integrity spans misinformation and information-ecosystem degradation (MR-023), disinformation and influence operations (MR-026) and synthetic media or deepfakes (MR-031). | |
GENAI.9 Information Security | Lowered barriers for offensive cyber capabilities (automated vulnerability discovery and exploitation, hacking, malware, phishing) and an increased attack surface for targeted cyberattacks that may compromise a system's availability or the confidentiality or integrity of training data, code or model weights. | Mapped | Clear | Information security spans AI-enabled offensive cyber operations (MR-027), general AI security weakness and availability attacks (MR-015) and supply-chain exposure of code or weights (MR-018). | |
GENAI.10 Intellectual Property | Eased production or replication of alleged copyrighted, trademarked or licensed content without authorization; eased exposure of trade secrets; or plagiarism or illegal replication. | Mapped | Clear | Intellectual property is the register's IP and copyright infringement risk (MR-039). | |
GENAI.11 Obscene, Degrading, and/or Abusive Content | Eased production of and access to obscene, degrading and/or abusive imagery, including synthetic child sexual abuse material (CSAM) and nonconsensual intimate images (NCII) of adults. | Mapped | Clear | Obscene, degrading or abusive content spans adult or non-consensual intimate imagery (MR-008) and child sexual abuse material (MR-005). | |
GENAI.12 Value Chain and Component Integration | Non-transparent or untraceable integration of upstream third-party components (including improperly obtained or uncleaned data), improper supplier vetting across the AI lifecycle, or other issues that diminish transparency or accountability for downstream users. | Mapped | Clear | Value chain and component integration spans AI supply-chain vulnerabilities (MR-018), embedded AI introduced through procurement (MR-064) and documentation, transparency and data provenance (MR-045). |
Descriptions are each source framework's own text, where it provides one; long entries are clipped here.