U.S. appeals court upholds designation of Anthropic as supply chain risk
cnbc.com
cnbc.com
This is like a pen manufacturer not wanting their pens used to sign drone strike orders, now the military needs to have a special box of pens that don't have stipulations attached. With AI usage it would be the same thing except applied to entire product chains. It seems like it would just add more complexity to operations.
You can agree with the rules anthropic wanted, but having rules set by a private company at all that apply to the military does seem fair for the military to object to.
>The Department reasonably feared that Anthropic might manipulate Claude’s design to prevent it from performing national-security functions that the Department deems contractually authorized and necessary
Though they'd probably put the DoD on the cybersecurity whitelist today, the very idea of the claude whitelists for certain functionality already exists and is being used by them today.
It literally is a textbook definition, signed into US law:
“Supply chain risk,” means the risk that an adversary may sabotage, maliciously introduce unwanted function, or otherwise subvert the design, integrity, manufacturing, production, distribution, installation, operation, or maintenance of a covered system so as to surveil, deny, disrupt, or otherwise degrade the function, use, or operation of such system (see 10 U.S.C. 3252).
To add onto what another commenter said, the pen analogy would be more like the manufacturer designing pens that stopped working when used to sign strike orders they disagreed with.
To give another (bad) analogy: The Pens aren't made to be weapons themselves, they are not intended for that. If the DoD now tries to shoot pens as projectiles and they just melt, that's no reason to classify the pen manufacturer as a supply chain risk, the product was not altered after the fact.
Of course, there _is_ a difference in "It could do that, but it shouldn't" and "It cannot do that". But it is not that large. That's why I don't see it as that clear cut.
https://media.cadc.uscourts.gov/opinions/docs/2026/09/26-104...
> Whatever paradigmatic examples individual members of Congress may have had in mind, the statutory definition is not limited to “adversar[ies],” 10 U.S.C. § 3252(d)(4), and instead covers “any person,”
That fails to accord with the claim:
>The Department reasonably feared that Anthropic might manipulate Claude’s design to prevent it from performing national-security functions that the Department deems contractually authorized and necessary
How does Android and iPhone meet the grade given apps have pretty consistently leaked locations, base layouts etc?
https://media.cadc.uscourts.gov/opinions/docs/2026/09/26-104... see page 30
China, Russia, Iran, come to mind.
>To add onto what another commenter said, the pen analogy would be more like the manufacturer designing pens that stopped working when used to sign strike orders they disagreed with.
The pen analogy would be more like the manufacturer selling pens that work just fine under all circumstances but that the military starts using in hand-to-hand combat.
This is a designation reserved for terrorists and the link.
Actively handicapping a product that's otherwise capable qualifies.
[1] https://www.whitehouse.gov/presidential-actions/2025/02/endi...
Same goes for Anthropic: they would only consider offering a version of their product for military use that had certain restrictions. The government is free to accept that version or reject it. Rejecting it and designating Anthropic a supply-chain risk is just political intimidation and retribution for not playing ball.
it would be like the pen manufacturer who ships pens with an automatic point retractor, AND a video livestream to the manufacturer from the pen AND remote control of the point retractor.
anthropic and contractors monitor the livestream remotely to make sure the pen is not signing drone strike orders and may choose to activate the retractor.
It’s clearly a punitive measure and has nothing to do with national security.
If a supplier uses Anthropic to develop a product, how does that pose a risk to the DoD or national security? The DoD can specify that a third party system can’t rely on Anthropic for DoD use without designating the company a supply risk. It was very clear that the administration was punishing the company for saying “no”.
Any dependency on a company that thinks they have that moral authority and has the technical means to enforce it is absolutely a risk to the supply chain.
If you want to blame someone or something for this, we should start with Dario and “effective altruism”.
Not at all. They want their product kept out of specific decisions because it's not capable.
It doesn't seem any different to me than Dominos pizza offering to deliver pizzas to the Pentagon but not to the strait of Hormuz. If that somehow makes the military subordinate to Dominos Pizza, just because Dominos is able to dictate the terms of their own delivery service, then sure, ban anyone in the military supply chain from being able to order pizzas. It would make the same amount of sense.
And companies absolutely have the right to dictate terms. The idea that the DoD has the unilateral authority to do whatever it wants is literal textbook fascism. It's never been the law in the US and it should not be now.
The analogy would be: “A customer agreed to a contract, and after running into a clause of the contract they no longer wanted to follow…canceled the contract unilaterally…which also violated the contract.”
It seems like absurdly bad faith starting at breaking the contract (over "you have to follow the law", no less!) and then to retaliate after that with trying to destroy the company's reputation and ability to do business. The boot licking going on here justifying the government operating in bad faith is both disappointing and short sighted. I didn't think the leopards would eat MY face!
I don't know how anyone can look at the situation and see anything but an abuse of power. The government could have just as easily contacted with another provider. This whole thing is vindictive
Then the pen manufacturer hears about this and says “Our pens are not made of graphite and are not suitable to be used in nuclear reactors”, to which the reactor owner says “it’s fine, they fit in the graphite rod holes, and we’re just using until the next generation of pens come out which will do an even better job”, and then the pen manufacturer says “I’m not going to sell you any pens until you agree that they will be used only writing.”
It's even more perplexing in this case though, because the original DoD contract was signed in July 2025. It was the same "plant manager" just arbitrarily changing their mind in the middle of the contract they signed.
I can see how I might reasonably refuse to deal with that pen manufacturer. The pen manufacturer is unreasonably pushy and they're going to be massive trouble to deal with because they're all up in my business in a paranoid way and disrupting my use of their product. Companies have made my never-again list for far smaller slights.
Have you seen the movie Oppenheimer? The U.S. military did not care about the moral opinions of the nuclear scientists--they were going to get nukes first. This is like Truman telling off Oppenheimer for being upset after the U.S. used the bomb: https://www.biography.com/political-figures/a44361438/why-ha... ("Blood on his hands; damn it, he hasn’t half as much blood on his hands as I have. You just don’t go around bellyaching about it,” Truman said.... He called Oppenheimer a “cry-baby scientist” and said, “I don’t want to see that son of a b–– in this office ever again.”).
Yeah, but also we can be reasonably confident they're not good enough for many of them yet:
What would be the military equivalent of all the things on https://www.felonybench.com/ ?
Machine learning needs a lot of examples to get good. Wars and wargames (including digital ones with unbounded self-play time) and all the textbooks together will at best, on the basis of what we see in other fields, get the equivalent of a new officer fresh out of training… and then, given current observed agentic AI behaviour, "follow orders" rather than "follow lawful orders".
What I don't understand is why the U.S. military is turning to a for-profit corporation when they could fund and pursue the development themselves. Why are they trying to "outsource" it to industry?
You here make another one by pretending, AI was just some random tool, like a screwdriver or a programming language.
AI can make decisions autonomously that would otherwise require a human. Like selecting people to be murdered by drone strike based on arbitrary criteria. A programming language by itself, JAVA, cannot do that.
Basically, it voids the warranty, which you don't really have with Java anyway.
For example, one might extend your analogy to "The nuclear power plant then declares that it will not buy the pens after all, and the pen manufacturer (who had banned them as a customer) sues them to force them to buy the pens after all."
The intent and framing matters a lot here. Refusal to remove safety features is a LOT different than deliberately building mechanisms to sabotage would-be operations.
It's to ensure that companies that the DoW relies on don't build on top of a product that isn't fit for DoW work.
You seem to be agreeing with this designation in a way. The DoW essentially said "Pen company won't let us use their pens as neutron-flux regulator rods, so anyone building power plants for us isn't allowed to use these pens as neutron-flux regulator rods".
What is the problem you have with that?
I am pretty receptive to the "guns don't kill people, people kill people" argument, but we are taking a big leap from pen to llms/artificial intelligence. I am sympathetic to some of your other points, but I simply must reject this analogy.
The moral and ethical scale of the issue makes this far different than someone buying a pen.
If Lockheed could brick its planes if the US planned to use them for military action it disagreed with (and showed some indication they couldn't be trusted not to do it), would they be a supply chain risk?
It is not the role of a defense contractors to have oversight and control power over the military they're supplying.
Anthropic isn’t a supply chain risk since they easy found someone else
If I sold steel to the Pentagon but then tried to say they they couldn't use it for ships and tanks but they are free to use for warehouses they would react the same way as they are doing now.
Edit add: What is targeting? What is surveillance?
If someone in the intelligence analysis department uses AI to generate a report, then someone else uses that report for targeting did they just break the terms? Where is that line?
Much easier for the Pentagon to say no.
They sure as hell shouldn't! Selling steel for any use except ships and tanks is a little odd but it's not a risk.
(I'm ignoring the "but then" because this was about future sales not previous ones.)
Our military must also not be dependent on a private company that believes it has the moral prerogative to control our military’s decisions, and would have the technical capability to do so.
They could’ve just negotiate a new contract with OpenAI, without banning it from every government agency. But I’m sure that would’ve triggered some kind of extra clause and cost money…
Your entire statement lacks any type of fact.
If the military wants to use AI to autonomously kill people, they can - Anthropic is not stopping them - thy just can't with Anthropic's services.
The government retaliating by then claiming that any use of Anthropic is risk is an obvious farce. How would Anthropic be any less of a risk if they let Claude autonomously kill people?
Their argument, in effect, is that we should throw out the entire Constitutional order and make Dario Amodei dictator of the world. The psychopathic hubris is laughable.
This is like the change order from hell.
Nothing was stopping the DOD from just entering into a new contract with OpenAI…
That’s going to make it rather risky for anyone to sign licenses with the DoD. In fact, it renders the licenses pointless since you just have to do anything the licensee says.
So Amazon and Microsoft don't enforce cloud licensing agreements with the USG? If the government wants to add 3,000 Windows users to support their mission Microsoft is shit out of luck in getting paid for them?
No, they want to have rules on how the military used Anthropic AI.
Military would still be free to use OpenAI for the nasty stuff
Edit: I was wrong, the statement I linked is extremely dishonest and I was misled. The contract language lower down makes it clear that there are no "red lines", and OpenAI products can in fact be used for mass domestic surveillance, autonomous weapons, and social credit systems as long as they are considered legal.
No it doesn't. Specifically OpenAI had a "all lawful purposes" clause (which plausibly includes the existing mass surveillance apparatus), but Anthropic did not.
OpenAI just said no surveillance of U.S. persons.
Anthropic could have gone further; I think it's likely they did.
> No use of OpenAI technology for mass domestic surveillance.
> No use of OpenAI technology to direct autonomous weapons systems.
> No use of OpenAI technology for high-stakes automated decisions (e.g. systems such as “social credit”).
These are stronger than Anthropic's restrictions (https://www.anthropic.com/news/statement-department-of-war), as OpenAI says themselves: "We think our agreement has more guardrails than any previous agreement for classified AI deployments, including Anthropic’s. [...] Based on what we know, we believe our contract provides better guarantees and more responsible safeguards than earlier agreements, including Anthropic’s original contract."
Edit: I was wrong, see my original comment. Sorry.
OpenAI, xAI, and Google happily agreed to DoW contracts which allow both of those use cases.
Look at it pragmatically. What does the DoD use every single procurement for? Hint: military use.
Why couldn't excluding Anthropic be done a different mechanism than a supply chain risk. Why wouldn't this be a standard part of an agreement or a request and simply refuse to renew or cancel a contract rather than being designated a supply chain risk. If some third party contractor for an unrelated non military reason wanted to use Claude as part of their process, it seems perfectly allowable.
If this was a remotely standard way of operation, why did a fair amount of corporate America sign briefs concerned with the retaliatory aspect.
Parts of the action seemed wholly retaliatory as well since Pentagon officials certainly used it as a threat. Why can't a US company have views contrary to the policies of the US government? Certainly the US government is free to not do business with them, but this designation affects everybody doing any kind of indirect business with the US government which is a rather long chain. If this becomes a legitimate mechanism, how might we distinguish caring about a secure supply chain and simply wiping out a company that disagreed with a pro war attitude? If a machining shop had a policy against manufacturing weapons at all, could they be blocked from making server racks for Microsoft or perhaps light fixtures for the Department of Labor? There are plenty of areas that are, again, non military? I don't think it's credible to claim that Anthropic will deliberately sabotage operations.
Is it not possible that this would change the risk profile of depending on them. It makes sense to work with people who support you than oppose you for things which are critical.
- Just because you don't do everything someone wants you to do does not make you a supply chain risk.
There’s nothing indicating Anthropic was not keeping their end of the contract. If they had, there would have been other recourse.
Oh the hypocrisy and irony. This coming from a country whose military sets rules on other countries' armed forces how weapons systems bought from US can be used.[ß] By this standard US itself should be designated as a supply chain risk for everyone else.
ß: for a very long time in the Ukraine "conflict", US refused to allow their gear from being used to attack targets outside of Ukraine's borders.
It's pretty common for software licenses to state that it's prohibited from being used in medical devices, life support systems, nuclear facilities, etc. Will software with those licenses also be designated supply-chain risks?
https://thedailyeconomy.org/article/tariff-exemptions-are-bi...
https://www.warren.senate.gov/wp-content/uploads/media/doc/l...
The correct mental model for the U.S. federal government right now is not an omnipotent democratic overseer for economic activity, but rather as just one firm that negotiates directly with other major firms for legitimization and legal protection. Their power is likely to decline further, as is the value of "legitimization", as technological developments erode the military's monopoly on physical force. Interesting times ahead - historically tech transitions like this lead to a splintering of state legitimacy and then a reorganization under new forms of governance.
The idea that "fair for the military to object to" implies "fair for the military to ban from their supply chain in any capacity no matter how unrelated the use" is so outlandish that it's never been done before (to a US company), and I think we can be confident that the DoD has frequently objected to would-be contractors' terms.
The claim that it being done for the first time - by a Secretary of Defense denounced the politics of the company in the same text where he announced the designation - isn't "political", is something I have a hard time believing a functioning adult who isn't employed defending the government in court could adopt.
But hey, maybe in some language this is a "textbook" official statement with no "politics":
Cloaked in the sanctimonious rhetoric of “effective altruism,” they have attempted to strong-arm the United States military into submission - a cowardly act of corporate virtue-signaling that places Silicon Valley ideology above American lives.In other words: the same outcome could easily be accomplished without being punitive to Anthropic.
I.e. Anthrophic cannot be trusted to honour a contract.
Who'd have guessed?
No they didn't. They are still using Claude in places despite the fact that the 180 days limit for the transition has expired. This surfaced from the proceedings of the appeal itself, as well as from leaked source. A memo from the DoD authorises use of Claude past the 180 days term for reasons of national security (the rare case where national security is provided by a supply chain risk!)
similarly the pen owner doesnt want to make a variation where the pen also doubles as a knife
I suppose we're supposed to be satisfied that the letter of the law supports this steamroller? Because that's what matters?
The legal apparatus is one of the tools the death machine uses to get what it wants.
And I further dislike Anthropic for creating 2 situations in 2 weeks that are giving this admin an obvious opportunity to be right. The other one is David Sacks responding to the “Pace the Frontier” crap. These were the table tennis equivalent of lobs for the admin.
Also worth noting that no one knows what kind of task would get a rejection with Anthropic’s models. The documentation is near-non-existent with the air of “security,” rules change daily, the harness is buggy, the clients are buggy, and very likely the backend gating and safety mechanisms are buggy. Even if the DOD assumed the best of intentions to comply, the reliability isn’t there.
What military would buy guns that sometimes stop working, and not necessarily for reasons anyone understands, and still be taken seriously?
Also Claude clearly had no issues identifying a school that has been a school for over 10 years as a military target. Why would the military buy tech that would make them more likely to commit war crimes?
Incidentally the second stipulation, the restriction on domestic surveillance, sounds like direct recognition of the role IBM played in the Holocaust. Of course, the better course of action would be to deny the military access to their technology. But that's not going to happen because there is so much money on the table.
Anthropic offered a contract, with certain conditions, as do all contracts everywhere; that's their purpose. The military did not want to agree to those conditions. If they had stopped there, and refused to sign the contract, all would be good. (It's actually worse, they did sign such a contract, and then decided they wanted the contract to say something different than it actually did. "Pray I don't alter it any further.")
> >The Department reasonably feared that Anthropic might manipulate Claude’s design to prevent it from performing national-security functions that the Department deems contractually authorized [emphasis mine]
That is speculation, and you can't call it a "textbook designation" without discussing whether there's a basis for that "reasonable fear". Again, that argument also works for declaring you have a reasonable fear that giving money to Anthropic will support pedophilia. We do not know the specifics, but I at least have heard of zero evidence that Anthropic would sabotage something they signed a legal contract for, and yet I have an abundance of evidence that this administration will use whatever contortions are necessary to pressure and punish those who interfere with it getting what it wants. It all hinges on the word "reasonable", and based on the evidence that is public, this specific fear seems more ridiculous than reasonable to me.
If the government somehow had a way to force Anthropic to sign a contract that it did not want to sign, then this fear might become more reasonable. The twist is that this supply chain risk designation is exactly that. If Anthropic now capitulated, the accusation of supply chain risk (eg from Anthropic employees acting alone) would be justified. So the only way Anthropic can reasonably be considered a supply chain risk is because it is accused of being a supply chain risk.
This is a textbook example, yes, but it's a textbook example of corruption and judicial capture.
> Though they'd probably put the DoD on the cybersecurity whitelist today, the very idea of the claude whitelists for certain functionality already exists and is being used by them today.
And if they signed a contract permitting fully autonomous killbots, then using the whitelist mechanism would be a contract violation. I have some degree of faith that we'd know if such a contract were signed, because half the staff would quit. (As opposed to half the Google staff quitting after signing such a contract, which has been proven to be an incorrect expectation -- such a contract was signed, and I've heard of exactly one person quitting over it. There may be more, I don't know.)
and trump admin originally went WAY further.
they originally said the pen, paper, table etc suppliers cant use anthropic even for products and subsidiaries that have nothing to do with their govt work; far beyond the supply chain of the pen (bomb). Mega Corp Pepsi Co Taco Bell Inc. LLC -> Staples > Pen Co. Sure pen co might be reasonabale. But telling taco bell they cant have claude help expand the baja-blast-radius is way too far. that would be just like secondary sanctions.
iirc there are 2 court cases. one ruled the original order was too broad and i think that still stands? so at least it's narrowed slightly to just the immediate supply chain?
but ianal
however anthropic also believes it is some kind of entity unto itself so it is not at all reliable.
How can it be a textbook designation when designating a US company as a supply chain risk is unprecedented? So many actions under the Trump administration are unprecedented it starts to feel like the norm.
No other administration (Republican or Democrat) would do this. The DoD didn’t have a problem using Anthropic’s models during the raid on Venezuela and early on in the war with Iran.
Anthropic says to the former Fox News host it doesn’t want its models used for domestic surveillance or in kill situations without a human in the loop; all of a sudden they're a supply chain risk?
Seems obviously political.
Lol, do as we say not as we do!
>In addition to monitoring activists in the vicinity of Anthropic executives and keeping tabs on protests near physical Anthropic assets, the firm is also implementing a “pre-crime” approach, attempting to predict incidents before they happen.
https://prospect.org/2026/09/09/anthropic-artificial-intelli...
* How much money did Anthropic and its associates donate to the Biden campaign and associated entities? * How much money was spent on lobbying by Anthropic and associated entities? * How many Biden officials were hired by Anthropic after they left office? * How exactly did Anthropic get exclusive no-bid contracts to be the Federal Government's sole AI provider for classified systems?
And with this corrupt influence, and the money that it earned them, Anthropic has attempted to:
* Stoke public fear and panic about AI * Stoke conflict with China * Eliminate domestic competition * Suppress international competition * Degrade their models in order to limit their ability to create competitive products * Train their models on their customer's proprietary data in order to steal their intellectual property
Anthropic played a game and they lost. They can wrap that up in whatever sanctimonious moralizing clap-trap they want, but nobody believes a word they say, or will ever trust them, so they might as well be talking to the wind.
OpenAI may be playing the same game but at least they have the intelligence and humility to read the room, recognize a failed strategy, and adapt.
Who wants to buy intelligence from people who are stupid enough to publicly try to dictate terms to the US Military? Complete and utter brand destruction for everyone involved.
Army: "OK, we will make sure not to use your AIs"
Antropic: "How dare you! We are suing! We intended for you to keep using it but do only what we want!"
Army: "..."
No, they were against using it to kill people without oversight. I hope nobody thinks that there's a difference between murdering American citizens and murdering people.
Anthropic: "We'll sell you access to our AI as long as you don't use it for war crimes or mass surveillance."
DoD: "Ok, deal."
...time passes...
DoD: "Wait, no, we want to be able to use it for war crimes too."
Anthropic: "Too late, you agreed already, and we won't sign a contract for that. You can keep using it for everything we agreed to."
DoD: "Change the terms or we will destroy your business."
Anthropic: "No."
DoD then signs contracts with OpenAI and Google that permit them to commit war crimes and mass surveillance as long as they get legal cover, and proceeds to apply as much leverage as it can to destroy Anthropic's business.
----
And for the record, Anthropic agreed to all "yucky Army things" usage that was an extension of past yucky Army things, they just did not agree to a new class of yucky Army things: namely, fully autonomous killbots. Even there, it was only "not yet, it's not ready". Your whole comment is a gross mischaracterization.
I quit using ChatGPT entirely over this incident, and that's not because I find Anthropic's position to be saintly. They agreed to a contract where the DoD could and in practice is using their AI for committing war crimes.
US Society has mechanisms for preventing and investigating war crimes. They may not be perfect, and you may not be happy about how they are working, but I doubt that "give control over it to some random guy that makes AI models" is an adequate solution for that. If Antropic decided the risk of DOD circumventing those mechanisms is too high for them to tolerate - they have full freedom not to sell to DOD. Which they used.
> I quit using ChatGPT entirely over this incident
And this is supposed to be an argument because....?
> They agreed to a contract where the DoD could and in practice is using their AI for committing war crimes.
You have a very vivid imagination. Not trying to use it to state things that could be misinterpreted as statements of fact would be nice. Not that I am new on the internet, so I know it's not going to happen.
Hardly. I invite you to [read the opinion][1], particularly the great pains the majority spends on wrangling the definition of the word "manipulate."
Basically, [FASCSA][2] says to denote a company is a "supply chain risk," the govt has to meet the law's rigorous definition of what a "significant" risk actually is. That definition contains a catch-all "or otherwise manipulate the function" of the thing at hand (in this case, Claude) at the very end.
The govt's whole argument is "Well Anthropic has admitted that it can technically "manipulate" the response, therefore its a significant risk, therefore we designate it as such."
The dissent gives an analogy:
> A library might post a sign saying, “Do not shout, loudly talk on the phone, play music, or otherwise disturb others.” The common understanding would be that the rule bans bringing a boom-box into the reading room with the volume turned on high but not listening to music with headphones set at a modest sound level—even though both constitute “playing music.”
It is as if the govt argued "ah ah, Anthropic played music on their headphones, they broke the rules! We therefore have the authority to ban them" and the majority insanely agrees. It is clear to anyone with basic reading comprehension that the "manipulate" clause is supposed to continue the idea of malicious or subversive manipulation that the whole section entails. The hand-waving the majority uses gives the whole game away.
[1]: https://www.politico.com/f/?id=000001a0-d91e-d276-aff6-f97f3...
If I was Palantir or any other GOP aligned company, I would be completely against this. What's to stop a Democratic president from doing the same thing and destroying them?
I doubt that is going to change anytime soon. They are a private entity, so they can manage and change their primary system any way they want.
I suspect this is changing. The DSA branch especially wants all contracts with Palantir eliminated.
And Republicans did it because.... They're anticorporation?
Sarbanes-Oxley? Dodd-Frank? ACA? Now I'm sure you (like, every other living human) has a ton of nitpicks and criticism of bills like that. But they're real and they passed and they're largely-to-wholely partisan creations of the Democratic policy apparatus (SOX looked very bipartisan and was passed under Bush, but the actual bill was written mostly by democratic staffers).
I mean, fine, you'd like different regulation. But they're responsible for basically all the corporate regulation active in the US regime.
Bothsidesism is a very poor tool for this particular argument. Work with your allies, please.
You really can't make a valid case to say the dems are the corporate dominated party. ffs, they are the only ones even attempting to put common sense regulations on the financial industry, something Trump called "bad for business" when he undid antitrust legislature that got passed under Biden.
They probably will, and the comment section here on HN will overwhelmingly applaud it. Next question?
They are not turning a profit, and aside from enterprise token billing, every other offering they have is a loss leader. In order to flip that around they need to drive down the cost of inference significantly, either through massive compute improvements, more efficient or lower cost models, and either one lowers the barrier to entry for local and/or private cloud inference for open models. The moat established by the expertise in model training is effectively dissolving as they approach recursive self improvement because any mechanism that prevents model distillation effectively reduces the quality and utility of the models, so each improved model makes their competitors better by default if they want to realize those gains.
The reason for the pivot to control and regulation seems to be more about erecting an artificial moat in their market, and having these technologies controlled or highlighted as supply chain risks will continue to drive investments in alternatives, especially in other countries where data sovereignty and domestic tech has become a priority given the last decade of the US dominated tech industry.
I don't think that AI is going to go away, but I think the future of AI in the next several years looks alot like massive overfunded foundational model providers collapsing, their employees launching dozens or hundreds of direct competitors, and the leading hyperscalers buying up datacenter capacity the way they bought up dark fiber 20 years ago.
also if you look at how the two factions separate from each other decade by decade (there used to be overlap, almost none now) it's obvious that there will be no reconciliation.
it's a musical chairs game at this point, whoever is in power when the democratic facade cracks will be able to seize power and transition into whatever single party state follows.
I think the red team is only now starting to come to similar terms, and will increasingly do so as the blue team continues to maximally exercises power against their opponents instead of revitalize the tarnished reputation of instituions.
Around 2030, the US will need to spend 100% of it's tax revenue to service the debt, and California will need to a federal bailout or risk either default or wiping out their state pensions. I believe the coming financial disaster will likely be the catalyst that quiets the 'nothing ever happens' crowd, and both teams will need to reset their politics to the new world, distinctly different than the post-WW2 open society liberal consensus.
A similar phenomenon is happening in Europe.
Stop trying to both sides this.
If:
1. The designation of Anthropic as a supply chain risk is politically motivated
2. We collectively accept that is okay for the US President to bar all defense vendors and contractors from working with an American company for political reasons.
What defense related company(ies) would a Democratic President have political reasons to ban?
It has been reported that Palantir and its founder have a history of political contributions to the Republican party.
Instead of Republican presidents driving left leaning companies out of defense and Democratic presidents driving right leaning companies out of defense, it would be better if neither party used supply chain risk as a political weapon.
Dems still subsidize O&G but they have other constituents they need to pay lip service to.
Banking and finance own both parties.
Isn't this basically what Anthropic wanted?
Which sounds sensible on the surface, until you realize that all military organizations have extensive experience with that exact question, and have spent centuries refining their practices. Deferring that to a private company is actually a major regression and a concerning role to pass on to the public regardless.
FWIW I am not pro military, but it's a prominent part of human culture and not going away anytime soon. I do understand the nature of professions, however, and only one of these groups has made the interpretation of this question their specialization.
This is not at all what happened. The existing contract that Anthropic had with the government had two red lines: No autonomous weapons (i.e., do not build Skynet with Claude), and no mass domestic surveillance.
Anthropic did not, and does not want, any case-by-case veto power over the US Military's use of their AI models. The red lines were negotiated ahead of time.
I don’t remember the last war that didn’t have credible evidence of war crimes occurring. Were bombing civilian infrastructure in Iran, Iraq had Abu Ghraib among all the Collateral Damage stuff, the Highway of Death in the Gulf was probably a war crime, Vietnam had My Lai, WWII was the advent of carpet bombing civilian infrastructure. I can’t think of any for Korea, but I also know very little so that doesn’t say much.
We still haven’t charged anyone for the second strike on that fishing boat in South America, and I haven’t heard a single rationale for why that’s not a war crime other than “fog of war”.
The US doesn’t even really have a meaningful system for finding and prosecuting these, because we aren’t signatories for the ICC and have a bill saying we’ll invade if they charge one of our service members with a war crime. We aren’t basically the furthest thing from having any experience prosecuting war crimes. I can probably count on my fingers the number of cases we’ve tried. We rarely charge our own service members, and we usually kill foreign combatants rather than capture and charge them.
That kind of extensive experience.
Anthropic did the morally right thing and are being punished for it. The case in point justifies their position.
As they say, no good deed goes unpunished.
They wanted assurances that it would not be used for mass surveillance or autonomous weapons. They did not request to be "in the loop".
Furthermore, even if Anthropic had requested that, it would be a reason for the DoD to cancel the contract because the terms were unacceptable, not to declare Anthropic a supply chain risk. Declaring them a supply chain risk requires proving that they intended to sabotage their own product, adding malicious functionality. There is no evidence whatsoever that they planned to do that.
https://www.cbsnews.com/news/anthropic-pentagon-supply-chain...
I guess my opinion would really depend on the exact wording and details of the arrangement. Lots of people jumping in with strong stances based on pretty limited details.
This is false. Anthropic wanted assurance that its technology would not be used for fully autonomous weapons or domestic mass surveillance.
Tell that to a certain school in Iran
And it also doesn't mean that Anthropic is a supply chain risk merely for not wanting AI to be the active decision maker in live or death situations in war.
And Anthropic's objection was recently confirmed: the US military blew up a school in Iran due to an AI error, and killed more than a hundred kids.
The US military asks me to build the super bioweapon. I say no thanks, please ask someone else, but happy to keep selling you bioweapons I think is safe enough.
I get designated an evil unamerican supply chain risk that nobody in the US military may do business with even though I was still happy to sell my safer bioweapons.
That is the tl;dr
OpenAI has hacked several prominent entities and is allowed to do business as usual but Anthropic putting guardrails on the military's usage of AI is the national security threat while Pentagon itself said that over reliance on AI lead to that attack on school in Minab.
I have also learned that OpenAI's president is a big maga donor and now I am thinking of cancelling my OpenAI membership todau and signing up with Anthropic again.
Edit - i am not a OAI hater and i don't hate anyone. I am just saying Anthropic is kinda getting bullied and OAI is not being punished enough for their actions. It is time for me to support Anthropic (with my $$$) instead of OAI.
[1] https://www.cnbc.com/2026/02/25/thrive-capital-openai-joshua...
Right, because "supply chain risk" designation is as it pertains to them being a supplier to the military, not a overall assessment of their standing as a corporate citizen. Not to mention that the administration wants to go full steam ahead when it comes to AI development, so there's no internal contradiction here.
I get downvoted every time I point out that this was entirely rational. This, downvoters, is why it was entirely rational. Does that mean I agree with it? Of course not. But investments are made to pay off, and this one certainly has for OpenAI.
That is still not corruption, yet. Also in Germany it is the executive branch which controls who is sued or policed by the stately organs.
So favorism can be passed down this way, but not we are not at corruption yet. If reciprocity is expected, then you could call it that. Or could perhaps even file for negligence in treating all other company actors the same, especially if you are Anthropic yourself.
Still, I blame the US voters as much as the current administration if the later is just clowns and thieves.
Also, IANAL and HN discussing US things is always foreign to me.
You're ascribing complex motives to toddlers.
Not at all, because open source contributors aren't megalomaniacs trying to dictate how people use their products. In fact, the exact opposite. That is the entire point of Open Source. Complete freedom for the user.
that's the mobster-loyalty mentality, and it's not how successful (read: desirable for the most people) governments function
This is not an abstract disagreement at all. The red lines that the Department of War wanted to cross were made extremely clear: They want to build Skynet with Claude, and build a mass domestic surveillance system. Now they will have to make do with building those two systems with Gemini and ChatGPT.
But that's not at issue here. Obviously everyone agrees that the Pentagon can issue RFQ's to whatever specifications it wants. They can buy whatever they want, for the same reason that you or I are free to sell whatever we want.
The subject at hand is an attempt to use national security regulatory power to coerce Anthropic into selling a product it doesn't want to sell.
US does not buy weapons that self-regulate generally. The US can and has purchased weapons with stipulations on how they should be used. For instance, and I'm making this up, they might purchase cluster munitions for smashing up an airfields, but with a stipulation they may not be used where humans are present or something. The munition doesn't check GPS and refuse to detonate if GPS doesn't indicate it's over some Russian airfield. Nor does an M4 fail to fire if it's on US Soil. Anthropic tried to build safeguards and out-regulate the government. Everyone here should know that such limitations would (can and have, see some famous IFF spoofing incidents) be exploited by an enemy, which is generally why they aren't acceptable in a military context. Without seeing the contract signed, one possibility is Anthropic tried to push regulations onto the government, and Anthropic gets to ride away on a high horse.
The other side: The Supply Chain Risk feels like an abuse. It's likely a valid designation and likely has its historical uses. If this was a contract issue, that would have been the correct way to litigate. Instead, again without seeing the contract, it feels like this is way to try and stifle their uptake in defense sector; basically attempting to strong arm them by choking a business segment off. Again, if there is a in fact a legitimate breach of contract here, it should be litigated as such. The alternative is there is no such breach, and Anthropic built limitations into the contract and the Pentagon just has buyers remorse. Honestly this wouldn't surprise me, the federal government generally incinerates tax dollars, and with the massive marketing hullabaloo pushed by AI companies, its completely likely a giant contract was signed without reading the fine print.
Honestly both sides of this annoy me.
Separately, as a note to your made up example:
Cluster bombs are uniquely efficient against humans, especially in trenches. The US is not a signatory to the international treaty banning their use. It does not like being limited in how it conducts war. I strongly doubt that it would agree to terms from a private enterprise to similar effect.
The US government took a legal designation explicitly crafted to protect against foreign adversaries and deployed it against a private, domestic entity, to their immediate and great detriment.
Explicitly?
Wow, explicitly means it is directly defined in the statue. Which it isn't.
Did you mean implicitly and accidentally say the exact opposite?
For all the downsides of losing the business of government contractors, it really would hold Anthropic to their stated values: they’ll never develop AI controlled weapons on this blacklist.
I suspect this will be reversed en banc.
Anthropic’s argument is really clear and easy to understand: we can’t simultaneously be a supply chain risk and also be a company the DoD demands we change our policies so they can use our models without restrictions.
The DoD could have used the same authority to seize the technology if it wanted to. Especially in a time of war. DoD has instead chosen to respect Antrhopic's boundaries and has simply barred anyone in the agency from buying a product that comes with strings attached.
This is 100% on Anthropic for product:market fit failure.
Every battlefield from here on out is a competition between autoshot ai capabilities and the armies building/deploying/maintaining them.
It should not be up to an AI company to point out that this breaks the founding conditions of the United States, nor should they be placed in a position to be scapegoated for potential implications of this if left undefined.
Rock and a hard place, by a government with shockingly few qualms about placing any and all Americans in such positions whenever polling, survival, or perceived personal benefit dictates.
Let me explain, if it learns something from training data to do certain things from code it has online it can install or use a code that is vulnerable from a security perspective.
Why is this not considered human in the loop? And let’s say human in the loop will just press Y; what is the difference?
Hire people and pay them well and develop whatever yourself without this charade, they have unlimited budgets.
I am not taking a moral ground, but I can't see how "an Anthropic" fits in. You might say Boing or Lockheed, Sig Sauer and Colt and FN do, but it feels somehow different as they've "bent the knee" for decades.
but really, they all are, look what Grok did to hundreds of Iranian children
* https://thehill.com/policy/technology/5928204-pentagon-musk-...
Without taking sides in this statement, I do think it's important for a private company like Anthropic to have a mechanism it can turn to when it feels it's been inequitably treated by the government.
Not for peasants like you and me! We are forced to surrender our Seventh Amendment rights in order to be able to do most things that are part of everyday life.
1790417228 | Court rules Trump can blacklist Anthropic for refusing to enable Claude features | https://arstechnica.com/tech-policy/2026/09/court-rules-trum... | https://news.ycombinator.com/item?id=49855010 | 0 comments
> Before his appointment to the bench, Katsas served as Deputy White House Counsel in the first Trump administration
> [Rao] was appointed in 2019 by President Donald Trump, having served in the Trump administration from 2017 to 2019 as administrator of the Office of Information and Regulatory Affairs
The autocracy is in full swing.
The real problem is how many people eagerly eat and repeat the nonsensical bullshit, as if they are airtight logical deductions rather than mere rationalizations promulgated by the party's apparatchiks. I don't know if most people still just want to feel power from being on the "winning team" or if they're really unable to mentally model situations with independent parties that have their own rights while government has restrictions in order to preserve those rights, or what. Alas, it does not bode well.
maybe they will succeed just like how it was done with the Interstate Commerce Commission.
but likely now competition is global thanks to the Chinese labs and other small model providers like Mistral.
TBH Anthropic was used for target selection in Iran and if Amodei oversold operational AI and was reason why US bled so many highend munitions... only for Iran to survive than basically everything downstream of the shit show including energy prices is on their heads.
> For one, if the court’s statutory interpretation about the power to affect the operation of delivered software were correct, then pretty much any software product, at least those still subject to vendor-supplied updates, could be considered supply chain risks, given that any update could make substantive changes. In any case, it would seem to mean that any AI model would be too risky for the government to use, because there is nothing unusual about Anthropic’s model-control architecture—to the extent Anthropic could still control its model, so could any other AI vendor potentially control theirs. Whether they would or not would depend on the contract restraining them, and the only thing potentially different about Anthropic is that it did not want to be contractually obligated to allow certain functions that Hegseth really wanted—functions that were ethically dubious at best and monstrously dangerous at worst.
> But because that contractual reluctance upset Trump and Hegseth, they singled Anthropic out, alone, for negative treatment, turning their pique that “we can’t agree with Anthropic on how the software would need to be designed for us to be able to buy it” into “and because we can’t agree then NO ONE ELSE IN THE GOVERNMENT CAN EVER USE IT.” Per the DC Circuit, such an overbroad measure—after all, not every agency had the same concerns about changeability that the military might, yet Hegseth was deciding for them, too, whether they could use Claude, even when its architecture created no particular risk to them—and clearly punitive measure was perfectly fine because it implicated the implicit “national security” exception to the First Amendment the Founders apparently wrote into it in invisible ink.
[1] https://www.law.cornell.edu/uscode/text/10/3252
[2] https://www.techdirt.com/2026/09/25/dc-circuit-oks-hegseths-...
The current fucking US administration.
Anthropic isn't stopping me from getting Chinese parts, Yukon Jack and good Cadbury chocolate.
trump is. Designate him!
Lol wtf, do you think nobody here knows how to use git? this is like a Fox News comment, you are not a developer and are trying to spread fear because a word was used jokingly. "git blame" is just a diff tool.
You cannot use git blame to cause conflict.