Live data from Hacker News

Anthropic requires 30 day data retention for Fable and Mythos

support.claude.com

141–150 of 330 posts

Re: Anthropic requires 30 day data retention for Fable and Mythos

#141
post #103

Earlier quoted context omitted.

They seemed to have changed the wording since you posted the comment, now specifying exactly 30 days with seemingly no exceptions. These terms seem to be updated at-will, so I'll take that with a grain of salt however.

That's strange. Even in my hobby-toy app, I have a TOS that I bump whenever the terms meaningfully change, and in my app, it forces a re-acceptance of the new terms before using the app again.

You mean your terms don't just say "these terms may change at any time and your continued use of this site implies acceptance??"

/s

Re: Anthropic requires 30 day data retention for Fable and Mythos

#142

It is actually worse than that. It is at least 30 days. There is an "almost" that is doing a ton of heavy lifting here "deletion after 30 days in almost all cases". My read of that is they can hang onto data for as long as they want, even if they usually won't. And "all traffic" with an agentic harness is basically your entire codebase you work on. > We will require 30-day retention for all traffic on Mythos-class mo…

It’s even worse than that. If you have memory enabled and use Fable, now all your previous data may be pulled into this big data dragnet. How can Anthropic possibly think this is okay?

Because they think people are okay with it, or at the very least, don't care, or don't care to know.

Which, judging by how much people are using Fable, appears to be true.

Re: Anthropic requires 30 day data retention for Fable and Mythos

#143
post #137
post #66

Earlier quoted context omitted.

It's only for this model, not the one you're already using. And they're not training on the data. It's supposedly to detect abuse etc (such as someone retrying repeatedly with different variations to get around their protections)

> they're not training on the data How would you know that? You can only know what they say they will do with the data.

Sure, some trust is required that they aren't breaking their own terms of service (which legally enforces that they won't train on your data), but the same is true of every company/service you deal with (AWS, Google, your CRM etc). Their entire business model depends on enterprises trusting them.

Re: Anthropic requires 30 day data retention for Fable and Mythos

#144
post #13

A startup that uses agentic coding tools such as Claude Code or Codex is packaging up their entire codebase and sending it directly to their LM provider. Depending on their product, they might be sending it directly to a potential competitor. Odd times we are living in!

people over-rate how much software/IP is useful in running a successful business. There are genuinely very few IP in this world that needs to be protected. Everyone else is running stupid CRUD apps They also over index fear of LargeCo stealing IP from SmallCo. In fact, LargeCo is typically more scared about even the possibility of any product team looking at competitor internals due to lawsuits.

In general, I agree with you.

However, in the case of model providers, I think it is a more real concern since it could make it into some training data, and then one of your actual competitors could ask the model to code something up and get your IP.

I sort of assume the frontier AI labs are good about not doing this when they promise not to, but if you don't have airtight restrictions on what your devs are doing, they might be sending it somewhere that hasn't agreed....

Re: Anthropic requires 30 day data retention for Fable and Mythos

#145

Earlier quoted context omitted.

That's strange. Even in my hobby-toy app, I have a TOS that I bump whenever the terms meaningfully change, and in my app, it forces a re-acceptance of the new terms before using the app again.

You mean your terms don't just say "these terms may change at any time and your continued use of this site implies acceptance??" /s

> continued use of this … implies acceptance

One of the biggest crimes in tech world

Re: Anthropic requires 30 day data retention for Fable and Mythos

#146
post #137
post #66

Earlier quoted context omitted.

It's only for this model, not the one you're already using. And they're not training on the data. It's supposedly to detect abuse etc (such as someone retrying repeatedly with different variations to get around their protections)

> they're not training on the data How would you know that? You can only know what they say they will do with the data.

If you don't trust them, then no policy is enough. Technically everything you send to the model could be stored by them. Personally I do worry about that especially as an average consumer not an enterprise, no one is looking out for us and we don't get any guarantees. But enterprises will get the right treatment because they would find out and sue Anthropic if they lied.

Re: Anthropic requires 30 day data retention for Fable and Mythos

#147

A startup that uses agentic coding tools such as Claude Code or Codex is packaging up their entire codebase and sending it directly to their LM provider. Depending on their product, they might be sending it directly to a potential competitor. Odd times we are living in!

You mean these tools you can now rebuild at the cost of a night and one Claude code subscription?

You have to have an ordinarily unique startup if your software can’t be recreated quickly.

Re: Anthropic requires 30 day data retention for Fable and Mythos

#148
post #9

A startup that uses agentic coding tools such as Claude Code or Codex is packaging up their entire codebase and sending it directly to their LM provider. Depending on their product, they might be sending it directly to a potential competitor. Odd times we are living in!

and all their keys, because sooner or later, the harness is gonna read them

Claude code is actually very good at not reading your keys these days.

Re: Anthropic requires 30 day data retention for Fable and Mythos

#150
post #137
post #66

Earlier quoted context omitted.

It's only for this model, not the one you're already using. And they're not training on the data. It's supposedly to detect abuse etc (such as someone retrying repeatedly with different variations to get around their protections)

> they're not training on the data How would you know that? You can only know what they say they will do with the data.

I mean, if we're assuming they're just willing to lie and violate their own TOS then how could you ever be comfortable with them regardless of this 30 day period (or really any online service)? This seems like a bit of a silly take.
Post reply on HN