Thanks for the other discussion!
> if it wants to actually kill someone, it has to interface with the real world
And researchers already tested for GPT-4 to be put online. That is already being interfaced with the real world, through the minds of anybody the AI may talk to/be made to talk to (see how social networks can be used to manipulate towards a very real outcome, if only from doxxing to "cancelling" to peoples' Spring revolts). Shaping people's minds is a powerful thing. And that's the most likely use case to me at this point, but who knows what it will be in the end.
Once online, we could easily envision that an AI may act on some purpose[1] shop, put orders, ships stuff with instructions and incentives to real people, or even be plugged into some real-world APIs.
[1] not purpose in the sense "is it conscious or not". It does not matter if it's conscious or not, if it's AGI or not. What matters is if/that it may function in a systematic and working way following an impulse/stimuli.
It may not even be about killing or destruction really, but it could be about shaping some society policies or self-understanding, which would have consequences down the line too.
Distributing power in society is a good thing, as long as its usage stays at an individual human scale.
When the first mover advantage has the potential to deeply harm people or society (fire weapons, nukes, cars, AI that redefines what truth looks/sounds like or that can act in a non-deterministic way based on a per-construction biased-dataset, in a fraction of a second), there's a responsibility that has to come with it, and there's a custom to set rules to control who has access to it, for what purpose, to train them and to have a social/political control over them.