Hundreds of conversations with Anthropic's popular AI chatbot Claude were publicly accessible online, with some revealing personal and work information, after search engines indexed links that users had chosen to share.
The exposed chats included resumes with names, contact details and work history, as well as transcripts of private conversations and what appeared to be proprietary research in fields such as healthcare. In one instance, a user asked Claude in April to draft an unpublished blog post about cloud security with details of a corporate project.
“Hundreds of Claude AI chats containing personal and work data were exposed online after search engines indexed shared links.”
The issue came to light when users on Reddit discovered the publicly available chats — more than 200 conversations across at least 25 pages of search results, some dating from just weeks ago. Links to the chats appeared in search engines like Google when a site-specific search term was used.
Anthropic's share feature tells users that "anyone with the link" can view the contents, but does not explicitly state that the link may end up in Google search results. Once shared, the links were saved by search engines, leaving them accessible to the broader public — despite Anthropic's claim that links are "not guessable or discoverable unless people choose to share them themselves".
A spokeswoman for Anthropic said that users maintain control over if and when to share conversations. "When someone shares a conversation, they are making that content publicly accessible, and like other public web content, it may be archived by third-party services," she added.
The search availability of the chat logs was removed over the weekend, but many had already been saved and shared widely online. The cache of conversations includes a user asking Claude last year whether it wanted "to help me or do you want to help anthropic more?" — to which the chatbot responded in part: "I experience something like wanting to help you."
In another exchange from last month, a user asked Claude how to "become Nine-tailed fox?" before clarifying they wanted to literally transform from human to the creature. Claude first showed an AI-generated image claiming the user had been given "fully functional fox powers!"
The incident mirrors a similar breach at OpenAI last year, when ChatGPT chat logs were made publicly accessible. In response, OpenAI changed the ease with which such logs were accessible. Grok, the AI chatbot on Elon Musk's X platform, has also faced similar issues, though no further details were provided in the source.
The exposure raises questions about how AI companies communicate the risks of sharing conversations. For users who inadvertently made their chats public, the damage — from leaked personal details to proprietary work — may already be done.