Claude shared chats and Artifacts containing health records, children’s data found publicly on Google

Laptop showing Claude AI interface with share chat feature highlighted and Google search results in background

An untold number of Claude chats and Artifacts — the interactive mini apps and documents users can build inside Anthropic’s AI assistant — were found publicly searchable on Google over the weekend, after Reddit users discovered that typing search operators like site:claude.ai/share into Google surfaced a long list of shared conversations. Some reportedly contained health records, private company documents, and the names and phone numbers of children.

Over the weekend, Google indexed a large number of Claude shared chat links and Artifacts, exposing conversations that included health records, private company documents, and children’s personal information. The exposure occurred because users shared chats publicly and those links were then posted on forums or social media, where search engines could discover and index them.

How the exposure happened

The issue originated from Claude’s “share chat” feature, which allows users to create links that enable anyone with the assigned URL to view a conversation or project. “Anyone with the link can view,” warns Claude’s interface. The language implies the feature is intended to allow users to share chats with friends, colleagues, and small groups — not the entire internet. Google Docs offers a similar feature, and those documents don’t typically end up publicly accessible on Google.

Also read: Fish Audio raises $50M seed to build expressive AI voice models for creators and enterprises

The issue was first flagged by a Reddit user on Saturday and was first reported by 404 Media on Monday morning. As of Monday afternoon, a test search by TechCrunch on Google following the method outlined in the Reddit post did not return any results, suggesting the exposure has been remediated.

What was exposed

Before the issue was fixed, Futurism reported finding “a detailed medical report of a real patient, clinical trial results that included patient names, documents sharing the names and phone numbers of primary school-aged children, company documents marked for internal use only, and employee reviews that included personal information about workers.” Exposed Artifacts included code and work notes, along with erotica generated by the chatbot.

Also read: US Grid Operator Will Cut Power to Large Data Centers to Prevent Blackouts

In at least one case, Fortune reported, a chat labeled “shared by Anthropic” showed Claude producing explicit content, which would be a violation of the company’s own policy against generating erotica. Anthropic’s usage policy explicitly prohibits Claude from generating sexually explicit content. It isn’t yet clear from the exposed chat how the content in question was generated.

Who is responsible

Anthropic appeared to place responsibility on users. When asked about what happened, the company told TechCrunch that share links only appear in search results when they’ve been posted somewhere search engines can see, like a forum or social media post. Spokeswoman Amie Rotherham added: “We give people control over sharing their Claude conversations publicly, and in keeping with our privacy principles, we do not share chat directories or sitemaps with search engines like Google. These shareable links are not guessable or discoverable unless people choose to share them themselves.”

Google spokesperson Ned Adriance told TechCrunch that “Neither Google nor any other search engine controls what pages are made public on the web, and these pages were indexed across many search engines. We give site owners clear controls to decide whether pages can be crawled or indexed, and we always respect those directives.”

This is not the first time

Last year, Forbes reported a similar issue in which hundreds of Claude chats were indexed by search engines — at the time, Google estimated it had indexed just under 600 conversations before the pages disappeared from search results. How closely the current exposure tracks that scale hasn’t been independently confirmed. Also last year, 404 Media reported that a researcher was able to scrape around 100,000 ChatGPT conversations that had been set to be shared publicly.

What users should do now

To review which Claude chats you set to have a public link, go to Settings → Privacy → Shared Chats. From there, you can revoke access or delete shared links. Given that the exposure has been remediated for now, users should be cautious about what they share publicly through AI chat interfaces and where they post those links.

CoinPulseHQ Editorial

Written by

CoinPulseHQ Editorial

The CoinPulseHQ Editorial team is a dedicated group of cryptocurrency journalists, market analysts, and blockchain researchers committed to delivering accurate, timely, and comprehensive digital asset coverage. With combined experience spanning over two decades in financial journalism and technology reporting, our editorial staff monitors global cryptocurrency markets around the clock to bring readers breaking news, in-depth analysis, and expert commentary. The team specializes in Bitcoin and Ethereum price analysis, regulatory developments across major jurisdictions, DeFi protocol reviews, NFT market trends, and Web3 innovation.

Be the first to comment

Leave a Reply

Your email address will not be published.


*