Safe Superintelligence promised to answer to no one. Its compute now runs through the company with the most to gain.
Ilya Sutskever's lab took no product to market and no shortcut to revenue, so the only thing outsiders can read is its cap table. This week it gained a name: Nvidia, with a stake reported at $5 billion and an order-of-magnitude compute bet on the vendor's own roadmap.

Image: Coolcaesar / Wikimedia Commons (CC BY-SA 4.0)
Safe Superintelligence Inc. has never shipped a product, published a benchmark, or, so far as anyone outside the company can confirm, released a single model. That is not the awkwardness of a young company still finding its feet. It is the design. The lab Ilya Sutskever founded in June 2024 was built to do one thing — reach what he calls safe superintelligence in a straight shot, with no products, no revenue, and none of the quarterly pressure to prove itself along the way — and to be walled off from anything that might pull it off that line. Which is why the most revealing document the company has produced in two years is not a paper. It is a cap table.
On July 27, that cap table gained a name. Nvidia said it had taken a stake in Safe Superintelligence and would supply the lab with its forthcoming Vera Rubin systems, in what both companies called a long-term strategic partnership. Neither disclosed a figure; Bloomberg reported the investment at $5 billion. Nvidia said the arrangement would expand SSI's compute by "an order of magnitude," and that in return it would receive not just equity but rare access to the lab's closely guarded research. "We have research that is worthy of scaling up," Sutskever said, "and having access to a big NVIDIA computer will let us do so. We are confident that our big bet on the Vera Rubin platform will take us to the next level."
Read that sentence twice. It contains a big bet on a specific vendor's specific platform, spoken by the founder of a company whose entire pitch was that it would bet on nothing but the science.
A lab built to be unreadable
Start with what secrecy does. SSI's silence is not a phase; it is a principle, and the principle has a consequence its admirers rarely state plainly: from the outside, there is nothing to check. No model to probe for the failure modes it was sold as avoiding, no evaluation to reproduce, no paper whose appendix you can turn to when the summary sounds too clean. I want to be precise about what that means, because it is easy to hear it as an accusation and it isn't one. There is no evidence SSI is hiding wrongdoing. The point is narrower and stranger: the company has deliberately removed almost every external signal by which the rest of us could form a view of what it is building, or how safely.
In the absence of technical signals, the financial ones carry the whole load — and those we can read. SSI raised $1 billion at a $5 billion valuation within months of launching. It raised $2 billion more in February 2025, at a reported $32 billion — an extraordinary multiple for a company with no revenue and, by policy, no plan to have any before it reaches its single goal. The founding bench has thinned since; co-founder Daniel Gross departed last year, reportedly for Meta. What stayed constant was the promise embedded in all that money: capital with no product attached, and therefore, the story went, no one to please. The July deal complicates that promise in a way worth taking slowly.
A company that publishes nothing and sells nothing has made its cap table the only text outsiders can read. It now reads, in part, Nvidia.
The bet is the tell
The reason this particular investor matters more than the last one comes from Sutskever's own theory of the path. If you believe, as he has argued, that superintelligence is largely a scaling problem — more compute, aimed by the right research, until something qualitatively new appears — then your largest single dependency is whoever sells the compute. And your interests and theirs align by construction. You want to scale; they want everyone to scale. That alignment is comfortable, and it is not neutral.
Nvidia does not profit from SSI reaching safe superintelligence. It profits from SSI buying, and being seen to buy, an order of magnitude more of its newest silicon — and from every other lab reading the announcement and concluding it cannot afford to be the one that didn't. The cleanest possible version of this deal, with no coercion and no strings beyond the ordinary, is still one in which a slice of the lab's capital, the machines it runs on, and now the architectural direction it has publicly committed to — "our big bet on the Vera Rubin platform" — all trace back to one supplier. When your compute vendor is also on your cap table, the ordinary tension between buyer and seller, the one that keeps a customer honest about whether it really needs the next system, goes quiet.
An order of magnitude is not a figure of speech here; it is roughly the difference between a program that can run one frontier-scale experiment at a time and one that can run several. Vera Rubin is Nvidia's next platform after Blackwell, not yet shipping in volume, which means SSI's expansion is a forward commitment — capacity promised against hardware still on the roadmap. That is ordinary in AI infrastructure now. It also means the lab's compute future and the vendor's product future are, from this week, the same story told from two sides.
Two clouds, pointing the same way
It would be wrong to say SSI has switched sides. The lab has run its research on Google's tensor processing units, under a cloud arrangement struck last year, and reporting indicates it will keep them — running now on both Google's TPUs and Nvidia's Vera Rubin GPUs, two infrastructures owned by two rivals. There are two ways to read that, and the difference matters. The generous reading is a hedge: a lab spreading its dependency so no single vendor can hold it hostage. The skeptical reading is the mirror image — a lab now entangled with two of the three companies that dominate frontier compute, having doubled the surface area of its dependence rather than halved it.
Which reading is correct depends on terms none of the three parties have published: who gets priority when Vera Rubin supply is tight, what the equity conveys, whether "rare access to research" runs one way or both. In the absence of those terms, I would not call the result independence. I would call it a portfolio of dependencies, which is a different thing wearing independence's clothes.
What "safe" has to answer to
The word doing the most work in Safe Superintelligence is the first one. Safe is not a technical property a lab can certify for itself and reveal when ready; it is a claim that implies an audience — some standard, some public, some check outside the building that gets to disagree. SSI's answer, so far, has been that safety is a research problem it will solve internally and disclose on its own timeline. That is a defensible way to do research. It is a harder way to be accountable, because accountability is precisely the part that cannot be internal. When the system arrives — if it arrives — someone has to be positioned to say whether it is safe, and to have nothing riding on the answer being yes.
Two years in, the entities with the most access to SSI's work and the most tied to its trajectory are its investors. The newest of them is the company that sells the machines the entire project runs on. That is not a scandal. It is a structure, and structures shape outcomes more reliably than intentions do.
Strip the announcement to what actually converged this week, and three things a lab designed for independence would want to keep apart now sit with a single firm:
- Its compute — an order-of-magnitude expansion delivered on Nvidia's Vera Rubin platform.
- A material slice of its capital, via an investment reported at $5 billion.
- Its stated architectural direction — a public "big bet" on one vendor's roadmap, years before that hardware ships at scale.
The question most people are asking about this deal is whether Nvidia has bought influence over the most secretive lab in the field. The reported terms suggest ordinary venture access rather than control, and I take that at face value, with the confidence the evidence allows, which is moderate. The sharper question is quieter, and it is the one SSI's own design makes impossible to answer from outside: if the lab that promised to answer to no one now runs its one experiment on its investor's machines, toward a finish line only it can see and only it can grade, what would independence even look like from here — and how would the rest of us, reading nothing but the cap table, ever know it was gone?
References
- NVIDIA Newsroom — Ilya Sutskever's Safe Superintelligence Inc. and NVIDIA Announce Long-Term Strategic Partnership
- TechCrunch — Ilya Sutskever's Safe Superintelligence partners with Nvidia to scale its AI research
- Unite.ai — Nvidia Takes a Stake in Sutskever's Safe Superintelligence
- Yahoo Finance — Ilya Sutskever's Safe Superintelligence partners with Nvidia to scale its AI research
- Tech Startups — Nvidia invests $5 billion in Ilya Sutskever's Safe Superintelligence as it shifts from Google TPUs to GPUs


