Claude shared chats indexed by Google, sensitive data exposed
Original: PSA: Your Claude shared chats and Artifacts may have ended up on Google
Why This Matters
The incident highlights privacy risks in AI platforms' public sharing features and how user-generated links can inadvertently expose sensitive data at scale.
Anthropic's Claude AI platform had an unknown number of shared chats and Artifacts publicly indexed by Google. Reddit users discovered the exposure on Saturday using site-search operators. Sensitive content including medical records, children's personal data, and internal company documents were reportedly accessible before the issue was remediated by Monday afternoon.
An unspecified number of Claude shared chats and Artifacts — interactive mini apps and documents built within Claude — were found publicly searchable on Google after Reddit users discovered that using the search operator 'site:claude.ai/share' returned a large list of shared conversations. The issue was first flagged on Reddit on Saturday and reported by 404 Media on Monday. Futurism reported finding a detailed medical report of a real patient, clinical trial results with patient names, documents containing names and phone numbers of school-aged children, internal company documents, and employee reviews with personal worker information. Exposed Artifacts included code and work notes. Fortune also reported a chat labeled 'shared by Anthropic' showed Claude generating erotica, which violates Anthropic's usage policy. Anthropic told TechCrunch that share links only appear in search results when they have been posted somewhere search engines can crawl, and that the company does not share chat directories or sitemaps with Google. Spokeswoman Amie Rotherham stated: 'These shareable links are not guessable or discoverable unless people choose to share them themselves.' By Monday afternoon, TechCrunch confirmed the search method no longer returned results, suggesting the issue had been remediated.