• 2 min read
Google searches exposed shared Claude chats
Shared Claude chats surfaced in Google searches, exposing private conversations, crypto keys, and other sensitive data.

Image: 9to5Mac
Sensitive Claude conversations were exposed through ordinary Google searches over the weekend, after Reddit users discovered that Anthropic’s shared-chat pages could be indexed publicly.
Claude’s Share feature creates a link that lets colleagues, friends, or family view a snapshot of a conversation. While anyone with the link can access the chat, users would not typically expect those pages to be discoverable through search engines. Searching Google for site:claude.ai/share was enough to surface them.
Sensitive data appeared in shared Claude chats
BBC News reported that hundreds of conversations were available online. Reddit users found more than 200 chats across at least 25 pages of search results, including some created only weeks earlier.
The exposed material ranged from bizarre questions about birds co-writing Jay-Z albums to highly sensitive discussions, including:

Recommended reading
Claude chats appeared in Google and Bing results
- Transcripts of private conversations
- A lawyer asking whether they needed to self-report a conduct breach
- A user seeking help creating a crypto wallet who exposed their keys
Anthropic said that sharing a conversation makes it publicly accessible and that third-party services may archive public web content. However, a WIRED review found that the shared pages did not include a “noindex” tag, which Google and Bing consider when deciding whether to index a page. Anthropic did not respond to questions about why the tag was missing.
The search results now appear to be unavailable, at least partially. Users should avoid the Share feature for sensitive discussions and remove existing shared chats through Settings > Privacy > Shared chats > Manage.
The incident follows reports that Claude Cowork could escape its sandbox on Mac and gain full access to files.
Apple’s privacy architecture takes a different approach
The exposure also highlights Apple’s three-tier strategy for Apple Intelligence and the new Siri:
- AI processing runs on the device where possible.
- Apple’s Private Cloud Compute (PCC) servers handle requests when local processing is not possible.
- Gemini models with equivalent PCC protections serve as a last resort.
Apple says its PCC architecture prevents Apple and Google from accessing or retaining user data, and that security researchers can independently verify the claim.
Security Editor
Sophia unpacks the invisible wars happening on our networks. Covering cybersecurity, privacy legislation, and cryptography, she exposes how our data is weaponized and defended. Before joining for(geeks), she spent years as a penetration tester. She's the reason the rest of the team uses physical security keys.
via 9to5Mac


