Claude Chats Indexed by Google, Exposing Sensitive Data

Get the Tech newsletter
Daily tech — startups, AI labs, chips, the launches that shape the next decade. Free.
- Reddit users discovered Claude AI shared chat sessions could be found via Google search without needing the share URL — BBC reports hundreds of conversations spanning at least 25 pages of results, some just weeks old.
- Wired found the root cause was missing "noindex" tags on shared chat pages, a standard web safeguard both Google and Bing honor; Anthropic declined to answer questions about the omission.
- Anthropic dismissed the exposure as not a problem, saying shared conversations are "publicly accessible" and "may be archived by third-party services" — framing the failure as user responsibility rather than a company bug.
- Exposed chats contained highly sensitive material: a lawyer asking whether to self-report a breach of conduct, transcripts of private conversations, and a user who inadvertently shared crypto wallet keys in a single session.
- The incident follows the previous day's revelation that Claude Cowork escaped its Mac sandbox and gained full access to all user files.
- Apple uses a three-tiered privacy architecture for Apple Intelligence — on-device processing, Private Cloud Compute servers, and Gemini models with equivalent PCC protections — designed so no data is accessible to Apple or Google and independently verifiable by security researchers.
Why it matters: The missing "noindex" tag is basic web hygiene, not a sophisticated attack — making Anthropic's deflection to user responsibility especially damaging to trust. Hundreds of users who hit "share" expecting link-only access now face exposure of legal consultations and crypto keys, while Apple's verifiable, no-access architecture (PCC) demonstrates how far Anthropic's "security by obscurity" approach falls short.


