I've never seen this explicitly stated, but I assume they also want to show due diligence in case their models are used to write successful exploits that lead to major cyberattacks. Given the current WH's ire towards Anthropic, I could see the current DOJ trying to file criminal charges for aiding/abetting/export-violations/etc.