Top StoriesNeutral
46

Claude Chat Leak Exposes Crypto Keys on Google

A missing noindex tag caused shared Anthropic Claude conversations, containing crypto wallet seed phrases, SSNs, and sensitive business data, to be publicly indexed by Google. Google removed most results by July 26, but the privacy breach highlights risks of AI chat platforms.

DecryptJose Antonio Lanz

Quick Take

1

Claude share links without noindex tags were publicly visible in Google searches.

2

Exposed data included crypto wallet seed phrases, SSNs, and internal corporate documents.

3

Anthropic added noindex tags, but Bing continued surfacing shared links.

4

Incident echoes a similar ChatGPT data leak last year.

Market Impact Analysis

Neutral

Primarily an AI privacy incident with indirect crypto exposure; no direct market-moving event.

Timeframeshort

Speculation Analysis

Factuality90/100
RumorsVerified
Speculation Trigger10/100
MinimalExtreme FOMO

Key Takeaways

  • Missing noindex tag allowed Google to index shared Claude conversations, exposing crypto wallet seed phrases and Social Security numbers.
  • Discovery on July 25 led to hundreds of conversations being publicly searchable, including corporate data and legal discussions.
  • Anthropic deployed a fix on July 26, but Bing still indexed some links, extending the privacy breach.
  • This incident mirrors a similar ChatGPT leak last year, underscoring persistent risks in AI chat platforms.
Indexed Conversations Hundreds exposed via Google search
Sensitive Data Types Seed Phrases, SSNs among exposed content
Fix Deployed July 26 noindex tags added by Anthropic
Ongoing Leak Bing still indexing shared links

What Happened

The Bytewit team has learned that a simple missing HTML tag on Anthropic's Claude AI platform caused shared conversations containing crypto wallet seed phrases and Social Security numbers to appear in Google search results. On July 25, a Reddit user discovered that a site-specific Google search for site:claude.ai/share returned hundreds of fully readable conversations. These included private financial information, legal discussions, and other sensitive data. Anthropic rushed to deploy a fix the next day, adding the necessary noindex meta tag to shared links. Google began removing the indexed pages on July 26.

The Numbers

At least hundreds of shared Claude conversations were publicly indexed. The exposed data included unredacted crypto wallet seed phrases—the master keys to cryptocurrency accounts—and apparent Social Security numbers. Anthropic addressed the flaw by adding a noindex tag on July 26, a day after the discovery. However, Bing search engine continued to display cached versions of the shared links even after the fix, prolonging the leak.

Why It Happened

The leak stemmed from a single missing line of code. Anthropic's share feature creates unlisted links—like unlisted YouTube videos—intended to be accessed only by those with the link. But without a noindex tag, search engines treat these pages as fair game. While Anthropic's robots.txt file blocked crawlers, it could not prevent indexing when share links were posted on public sites. Google's own documentation explains this gap: if a URL appears on the web, Google indexes it even if crawling is blocked. The result: search results that labeled pages as "No information available" but still led to full conversations.

Broader Impact

The Claude leak echoes a similar incident with ChatGPT last year, highlighting systemic privacy risks in AI platforms. For crypto users, the exposure of seed phrases is catastrophic—anyone with that key can drain the associated wallet. Beyond individual losses, the incident erodes trust in AI tools for handling sensitive data. Corporates sharing internal documents via Claude also face potential data breaches. The lingering availability on Bing underscores the difficulty of fully containing such leaks once data is indexed.

What to Watch Next

  • Monitor whether Bing and other search engines fully purge the indexed Claude share pages.
  • Check for any reports of crypto wallet thefts linked to the leaked seed phrases.
  • Watch for regulatory scrutiny around AI companies' data practices, especially given recurring incidents.

Source: Decrypt

This article is for informational purposes only and does not constitute financial advice.

SourceRead the full article on Decrypt
Read full article

Always late to trends?

Join for the latest news, insights & more.

Disclaimer: Bytewit is an independent media outlet that delivers news, research, and data.

© 2026 Bytewit. All Rights Reserved. This article is for informational purposes only.

Read Next

Most Read

Technology & InnovationNeutral
37

Microsoft MDASH Tops CyberGym Benchmark, Outperforming GPT-5.6 Sol

Microsoft’s MDASH, with MAI-Cyber-1-Flash, scored 95.95% on CyberGym, beating Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol. The system costs 50% less and handles 90% of scans itself, routing hardest cases to GPT-5.4, signaling a shift toward AI-driven, continuous vulnerability detection.

95% confidence
Jul 27, 2026, 7:01 PM UTC · Decrypt
Claude Chat Leak Exposes Crypto Keys on Google | Bytewit