Anthropic Clarifies Stance: We Do Not Support Banning Open-Weights Models

Our position on open-weights models

Anthropic Clarifies Stance: We Do Not Support Banning Open-Weights Models

I want to clarify that Anthropic has never advocated for banning open-weights models, as they are a public good when safe. My primary concerns are authoritarian regimes using AI for military superiority and the misuse of powerful models for cyber or biological attacks. Instead of blanket bans, I support restricting chip sales to China, cracking down on industrial distillation, and mandating safety testing for all capable models, regardless of whether they are open or closed.

The most dangerous model may be one that is trained in secret and handed only to the People's Liberation Army for use in drones and the Ministry of State Security for surveillance and repression.
  1. vhantz

    Schrödinger's China at once is an evil entity looking to use AI for their own nefarious purposes yet also willing to cooperate with their main competitor to prevent other actors (who??) from achieving similar goals (all while under a chip embargo too!!)

    The reality is much less confusing: Anthropic CEO does not wish for models with similar (or greater) capabilities compared to his own closed and overpriced ones to be widely released. Simply because that will affect Anthropic's bottom-line.

    Anthropic and all other "model" companies have nothing making them special beyond privileged access to chips so obviously they want to restrict what models are out there and more importantly who can produce new ones. Without these restrictions, it's only a matter of time before the multi-hundred billions valuations simply evaporate while they are still holding the bag.

  2. GodelNumbering

    In the first paragraph,

    > Anyone who has read my past writing should know that I don’t regard such bans as a useful measure,

    Later (on banning chip sales to china)

    > we should crack down on the rampant smuggling and workarounds used to obtain access to such chips.

    If you truly believe that bans don't work, the same applies to hardware too.

    Furthermore, Dario says later "To address these concerns, I do support the following three measures...": 1. ban chip sales to China 2. crack down on distillation 3. all capable models should go through mandatory safety testing

    Just so happens that all these moves commercially benefit Anthropic. If Dario really wanted to make a point, it would land a lot better had Anthropic released a single open-weights model

  3. m3h

    Someone who until yesterday did not seem bothered by his technology being possibly used to bomb elementary girls school in another country seems to suddenly care about the repression of citizens in yet another country.

    No, we don't buy your virtue signaling. And we certainly don't need your better-than-thou opinions on this year's "nightmare scenarios".

  4. cogman10

    > Anthropic has never advocated for a ban on open-weights models.

    > All sufficiently capable models, open and closed, should go through mandatory safety testing.

    Yeah, this is anthropic advocating for a ban on open weight models.

    Who runs this test? What happens if this test is too costly or the administrator refuses to allow certain people to participate.

    This is exactly how the US has banned goods in the past, by requiring a stamp and then refusing to issue it.

  5. isomorphic_duck

    A key point I feel that’s missing from the discourse is that alignment/safety is basically an impossible problem as of now. Even the “guardrails” that these closed-weights frontier labs set in are laughably primitive which can provably be broken through.

    The experimental part of Deep Learning has really outdone itself and is far ahead of theory. We have very little understanding of why these particular architectural choices work. The only “safe” way forward is to stop all development until theory catches up, but that’s never happening.

  6. kanak8278

    Yeah anything China does is evil. We are seeing what the so called "democratic" USA is doing. Anthropic and by extension USA wants a monopoly like they had for Jets and other influencing technolgies.

    I think China building and releasing models to Opensource is a greater good because that is providing equal accessibility to everyone in the world.

    By Dario's words authoritarian regime vis a vis China, I think OpenAI and Anthropic are also authoritarian in similar terms.

    We are only seeing what they want us to show, they might be creating models which can do more harm.

    So claiming that China can do or might do, vs Anthropic will not is just words.

    Yeah I agree with the final paragraph that we should have testing agencies mandated world wide for each frontier model testing.

  7. badatnames

    I can't remember the last time (if ever) a company managed to go from golden goose to.. whatever this is.. so quickly. The permanent defensiveness in his presentation is really hard to swallow, it actively puts me off wanting to believe in or rely on their product line with Dario at the helm. I don't even understand the logic leading up to this post. Who was it even hoping to convince. Is it possible Anthropic is due an oil change?

  8. tesnorindian

    AI should not be centralized and should be distributed. There can be no 1 provider to serve all of our needs. We would require both Open weights and Closed weights models for a lot of our use cases.

    Open weights models can be leveraged to optimize the cost of Closed weights models. Open weights models can be leverage to defend cyberattacks as HF has shown. Closed weights models can too act as a better cyberattack defender provided separate subscription exists for those.

    More efforts are required on LLM distillation for several edge cases. LLM weights should be optimized and compressed to run on edge devices (K3 on Pi3 :). Distillation should be seen as a cost optimization strategy rather than as a competition. You cannot prevent a teacher from teaching to students. If not from teacher A, I will learn from teacher B, you cannot prevent my continuous learning.

  9. mjorgers

    So the argument is basically: This technology is too dangerous so only _we_ should have access to it. We’re the good guys and only we can ensure a safe use of this technology.

    Quis custodiet ipsos custodes?

  10. ajyoon

    To everyone here pushing for total proliferation of open models -- what should be done about open weight bioweapon and cyber-offense capabilities? Is it simply the cost of freedom that we should allow attackers to access these tools? The OpenAI / Hugging Face incident shows what a GPT 5.6 level model can do off the leash; within ~6 months, open weight models will match this and every bad actor under the sun will be able to pull off attacks at this scale. Do you seriously want this level of capabilities to be generally available with no guardrails?

    The open weight issue has a lot of difficult nuance. Biasing toward supporting openness makes sense and is a good instinct, but it's incredibly naive to be absolutely in favor of it in every circumstance without seriously thinking about its implications.

More from this day

2026-07-27