All posts

Claude shared chats leaked to Google Search for days

Huma ShaziaAugust 3, 2026 at 4:16 AM4 min read

Thousands of Claude conversations that users had shared via public links turned up in Google search results earlier this month, exposing sexting exchanges, API keys, tax details, and proprietary code. Anthropic appears to have delisted the indexed pages over the weekend of July 26-27, but not before Reddit users spent hours cataloguing the exposed material.

The leak mirrors an almost identical incident with OpenAI's ChatGPT that Fast Company reported in July 2025. In both cases, the root cause was the same: users clicked a "share" or "publish" button without understanding that the resulting link could be crawled and indexed by search engines.

Advertisements

What was exposed?

Shared Claude Chats Appear In Google Search Results | WION

Among the conversations discoverable through a basic Google query were chats containing passwords, access keys, personal questions, and what one user described as "a project meant to train future Security Engineers in Web/Cloud/AI Security." Artifacts, the mini-tools and websites Claude can generate inside a chat, were also indexed. One artifact reportedly compared two treatment arms of a medical trial and included patient names, ages, and treatment dates. Another contained what appeared to be access codes for Irish residential apartment blocks.

Fast Company chose not to publish the direct links to the most sensitive artifacts because it could not verify whether the data belonged to real individuals.

Why did this happen?

Anthropic shows disclosure language when a user clicks the share button, but the warning text is easy to miss. Rachel Tobac, CEO of SocialProof Security, called it "an obvious user experience issue." She added: "Users clearly do not understand what they are agreeing to or that they are publishing their private chats with passwords, keys, personal questions, proprietary data, tax details, et cetera to the world."

OpenAI faced the same criticism last year. Its initial defense was that the opt-in notice appeared in "smaller, lighter text in a popup." Within a week it removed the feature entirely. Google encountered a comparable problem with its Bard chatbot in 2023.

Advertisements

What Anthropic should do next

Tobac argues the fix is straightforward: make the publish button's consequences unmistakable, or disable the feature until users can give informed consent. "It's essential that the Claude team in charge of this function make it more clear to users that when they click that publish button, their chat will be publicly visible and indexed online, including on Google search," she said. "Or better yet, remove it until users understand and can make an informed decision that impacts their security and privacy."

Also Read
Private Claude chats turned up in Google and Bing results

Earlier coverage of the same indexing issue with additional context.

Anthropic has not released a public statement explaining how long the conversations were indexed or how many were affected. The company did not respond to Fast Company's request for comment before publication.

ℹ️

Logicity's Take

For AI product teams, this is a design lesson, not just a PR headache. Any feature that publishes user data to a crawlable URL needs friction proportional to the risk. A small checkbox is not friction. OpenAI learned this in 2025; Anthropic is learning it now. If you're building sharing features into an AI tool, default to noindex meta tags and require explicit, unmissable confirmation before indexing is enabled.

The pattern keeps repeating

Three major AI chat providers have now exposed user conversations to search engines within three years. The underlying dynamic is consistent: users treat AI chat interfaces like private notebooks, while vendors treat sharing features like lightweight social posting. Until that mismatch is resolved, expect more leaks.

Also Read
Nvidia forms 40-firm AI security alliance after agent breach

Related industry response to AI security incidents.

ℹ️

Need Help Implementing This?

If you're building user-facing AI features and want to avoid becoming the next headline, reach out to our advisory desk. We help product teams audit sharing flows and design consent UX that actually works.

Source: Fast Company / Chris Stokel-Walker

H

Huma Shazia

Senior AI & Tech Writer

Produced with AI assistance and reviewed by the Logicity editorial team. Learn more in our Editorial Policy.