33 comments

  • MisterMunchkin 31 minutes ago
    How can you charge someone for making a threat when you only read the threat by spying on them? Surely that has to be thrown out in court? They didn’t actually send the threat to anyone, you just obtained it by spying.
    • akerl_ 22 minutes ago
      This seems to be the statute: https://www.leg.state.fl.us/Statutes/index.cfm?App_mode=Disp...

      With the obvious IANAL, it doesn't seem to rely on the message be sent to the person being threatened. The specific segment is "in any manner in which it may be viewed by another person".

      This may be one of those cases where we get to find out how courts view SaaS platforms.

      • nemomarx 20 minutes ago
        Interesting that it exempts telephone calls. Why don't we treat other messaging services like phone calls?
      • throw310822 5 minutes ago
        The subjective element of crime (i.e. doing it on purpose) is fundamental also in the US legal system. If the person wasn't aware that someone else might see their messages, it should be hard to claim that they did it.

        According to Gemini, "Florida appellate courts have overturned juvenile convictions [based on this law] when the state could not prove the person subjectively intended for the record to be seen."

    • theturtletalks 25 minutes ago
      Exactly, can you threaten someone without them receiving the threat? If this is not thrown out, Minority Report will actually happen.
    • sajithdilshan 4 minutes ago
      I was thinking the same. If the evidence was not obtained with a proper court order wouldn’t this result in a mistrial?
    • anvuong 16 minutes ago
      We are snowballing to Minority Report ...
      • boothby 6 minutes ago
        If the AI recommends murder and you exhibit a pattern of following AI advice are you guilty of precrime
    • slopmachine 2 minutes ago
      It's legal to spy if the terms of service say so
    • bilekas 25 minutes ago
      It's not quite spying when you willingly hand over this information and agree to terms of service. You're data is not considered yours alone.
    • sandworm101 11 minutes ago
      A threat sent by mail is still a sent threat even if nobody ever opens the envelope to read it. The crime is in the sending. This woman used an online resources, one which involves transmitting everything across innumerable state lines. I am surprised she isn't up on federal charges.

      Note that the law doesn't forbid the writing of a threat. You have to send it to someone. Had she kept it in a book under her bed, she would not be in trouble. But she sent it to a website/service/LLM portal.

      >> It is unlawful for any person to send, post, or transmit, or procure the sending, posting, or transmission of, a writing or other record, including an electronic record, in any manner in which it may be viewed by another person

      • wlesieutre 6 minutes ago
        If you draft an email threatening someone and delete it without sending have you committed a felony because someone at Google could be reading your drafts box, stored in a datacenter across state lines?
  • socializer 12 hours ago
    I have some sympathy for Anthropic here because I've seen the headlines after OpenAI failed to report a shooter in a similar situation. So from their perspective, it's damned-if-you-don't, damned-if-you-do.

    However, people need to get it in their heads that they're not chatting with their secret BFF, they're chatting with Big Tech. Before LLMs, Big Tech had no way to scrutinize the bulk of what was going on within their services, so you could have a secret hate diary in Google Docs. Now, everything you say or write can be automatically screened for red flags on a planetary scale, and probably will be because that's what the regulators and "concerned citizens" will demand. In a couple of years, you'll be biting your tongue a lot more often in private chats.

    • Isamu 1 hour ago
      This is one of the reasons why AI companies are looking for explicit regulations, it can help to reduce the risk of possible liability and maybe make the legal way forward more tractable. With a regulatory framework in place much of the burden of identifying risks falls on the regulatory authority.

      Then the AI companies have more confidence that they can move forward in a certain way, and issue investor guidance that is maybe closer to reality.

      • monocasa 45 minutes ago
        I think they're mostly looking for regulations because they've spent close to $2T, all to realized they have no technical moat, so they're trying to build a regulatory one.
        • Legend2440 13 minutes ago
          Both things can be true.

          They want stable rules they can follow, which will limit their liability as long as they stay within them.

          They also would like those rules to be as restrictive as possible towards their competitors.

          • monocasa 8 minutes ago
            They've spent close to $2T so far. At that scale the legal issues they've had are just the cost of doing business.

            I'm quite sure that if there wasn't the existential threat of a lack of a moat, they would not be pushing for regulations at all.

        • heaney-555 43 minutes ago
          That's the conspiracy theory, but there's no good evidence for it, and it doesn't really make sense in the long-run.
          • monocasa 42 minutes ago
            It's the only thing that makes sense for a lot of these companies to survive to any long term when open models keep nipping at their heels for pennies on the dollar.
            • bilekas 24 minutes ago
              You're assuming the open models will follow regulations though.
              • monocasa 11 minutes ago
                No, I'm assuming that the open models won't/can't and will be banned from a lot tons of use cases that will mandate use of the large frontier shops in order to comply with said regulations.
              • ghostpepper 11 minutes ago
                The theory is that open models cannot follow regulations and will therefore be banned or not eligible for many of the large contracts that the frontier labs will win.
    • fasterik 50 minutes ago
      I'm still puzzled that people's default assumption isn't that somebody is reading all of their internet communications. Ever since the Snowden revelations of 2013 I've more or less assumed that everything I type into a computer is stored in a government database somewhere. Not that I actually believe it is 100% of the time; there's a spectrum of trust, so I'm more confident that local apps on my Linux desktop are secure, somewhat confident in the end-to-end encryption of certain apps on my iPhone, but all bets are off for non-E2E encrypted data going across the internet.
      • fn-mote 31 minutes ago
        People don’t want to believe the Stasi is monitoring them. They want to believe the world is a nice place just like where they grew up.

        Also, unlike the bad old days when 1 in 3 was an informant, now ordinary people aren’t in “informant loop” of providing information on others, so they aren’t thinking about being informed on either.

      • ToucanLoucan 32 minutes ago
        For technical people, this is incredibly old news.

        For non-technical people, it isn't really news, because they already forgot about it after reading it. Maybe they'll be a little more monitored in their own typing for like... a day or two.

        One of the hardest lessons to internalize, and keep internalized, as someone who works on and writes software, is the vast, vast, vast majority of the Public doesn't understand even the most basic shit about software. It just does stuff. Hopefully the stuff is good. That's it, beginning, middle, and end.

        "Why would you think x would y" is a poor framing. They didn't think about x or y because they don't care. The phone works, that's the beginning and end of their interest in the subject.

    • sandeepkd 1 hour ago
      A disclaimer on the top of page every time would have been a better approach helping Anthropic and the end user.

      A bot talking to you directly as if its some one real caters to your thoughts and can take you in a certain direction without you realizing it. I have heard first hand experience from people that they feel more comfortable talking to chatgpt or claude cause it gives a feeling of being on their side and listening to them.

    • mhitza 57 minutes ago
      > people need to get it in their heads that they're not chatting with their secret BFF

      I see constant ads on video platform (particularly youtube/tiktok) about llm chat apps, from friends, dating, romance and everythkng inbetween; that's personal.

      People need to be reminded constantly if they use such apps that they are participating in easier mass surveillance, profiling and AI training.

      • smcg 48 minutes ago
        How do you get that through to someone who doesn't even understand that mass surveillance and profiling is a problem? Or to young people who have only lived in a society of mass surveillance?
      • torben-friis 48 minutes ago
        Problem is that even not using those apps, the apps you currently use might have turned more hostile.

        It wasn't technically feasible to scan personal chats easily, other than grepping keywords which must have had a bajillion false positives. Now you can get everything autoscanned at scale.

    • gchamonlive 16 minutes ago
      > people need to get it in their heads that they're not chatting with their secret BFF, they're chatting with Big Tech

      It's the other way around, big techs need to properly disclose in their platform, during interaction that they aren't in a private and safe environment

    • JumpCrisscross 12 hours ago
      > people need to get it in their heads that they're not chatting with their secret BFF, they're chatting with Big Tech

      Yup. And with zero privacy protections in statute for AI chat, there is nothing to prevent an AI CEO looking to curry political favour from e.g. handing over the private correspondence of an opponent or an entire district’s residents.

      • nradov 46 minutes ago
        Customers who what privacy protections for AI chats are welcome to negotiate this in enterprise contracts. The major LLM vendors do offer that as an option. Customers can then enforce any violations in civil court (although this obviously wouldn't apply if the customer used the LLM for criminal purposes).
      • HPsquared 2 hours ago
        Or something like leaking every non-corporate ChatGPT user's chat logs (including temporary chats) to the NY Times.
        • tpoacher 1 hour ago
          Or making up stuff
          • sigbottle 1 hour ago
            Don't know why this got downvoted? This is a problem with epistemics.

            It's more efficient to have one central "verifier" for everything, but the "who watches the watchers"? question basically says: Either constrain by construction, have everyone verify (which are two sides of the same coin, btw, when looking at a "global" thing), or centralize explicitly.

    • vulcan1964 12 hours ago
      And such was the case for a man who snapped a photo of his own child to send to the doctor which got uploaded to his Google photos resulting in his Google account of over a decade getting shutdown for CSAM.

      As another commenter said, you're not chatting with a friend; you're chatting with Big Tech.

      How much do you love Big Brother?

      • letrix 53 minutes ago
        Wasn't this because the photo was made "public" as in, shared through Google Photos?
        • gus_massa 44 minutes ago
          If the doctor was not using a gmail account, the UI probably recomended to share it "with anyone that has the link" that is like public but protected by oscurity.

          Most people don't realize that it is 99% like posting it on Facebook.

    • krzat 12 hours ago
      I suspect it will go further: imagine giving an mp3 to LLM to clean up some noise. It detects it was illegally downloaded from youtube, deletes it and automatically fines you via attached credit card.
      • brookst 2 hours ago
        Perhaps but no indication of that so far. Agents are happy to set up *arr stacks today.
        • ribosometronome 1 minute ago
          They could be happy to assist you with a task that they also then flag and forward to authorities, especially if their assistance doesn't break the law but has evidence of you doing so.
      • gr_norm 11 hours ago
        I'll be glad for open models when the day (inevitably) comes that the proprietary LLMs no longer work in my interests.
        • jjav 11 hours ago
          > LLMs no longer work in my interests

          As articles like these show, cloud-based LLMs don't work in your interest today.

          • ceejayoz 1 hour ago
            Is it in someone's best interest to let them die in a shootout?
        • vincnetas 11 hours ago
          Unless it becomes a requirement to be licensed to be able to use any kind of ai model. You know, for safety and stuff. And of course with appropriate reporting to institutions.
        • rowanG077 11 hours ago
          That day was yesterday. LLMs from big tech regularly refuse to do what you want.
      • veltas 11 hours ago
        Wouldn't they have to fine themselves first?
        • votepaunchy 10 hours ago
          They were fined for their illegal downloading. More than a credit card limit.
          • desolate_muffin 9 hours ago
            And dramatically lower than their expected value from the copyrighted material they scraped
      • yread 11 hours ago
        Or worse: downloading a picture of pirate ship and without any concern for the copyright asking the LLM to make a coloring page for your kid. BTW Chatgpt does that way better than Claude
      • whycome 2 hours ago
        Hey but you’ll be allowed to file a response that will also go to an LLM and deny you automatically. And you will be charge a NSE fee (no sufficient explanation).
    • VariousPrograms 10 hours ago
      You should probably get a head start on waiting a couple years to bite your tongue and assume everything you type into a computer is summarized and sent to your boss, government, advertisers, political actors, insurance companies, worst enemy, etc. With phones, Alexas, and little AI tamagotchis, you probably shouldn't say much in person either.
      • devinprater 1 hour ago
        The Silent Generation, version 2.
    • schoen 48 minutes ago
      Right, the difficulty is partly that they can get a negative headline from any choice of behavior.

      "Anthropic failed to report murderer's threats to authorities"

      (or "Chatbot knew man was planning murder, yet company did nothing")

      "Anthropic reported private chats to authorities"

      (or "Arrested for chatbot fantasy")

      To be fair to the journalists in these cases, there's also no society-wide agreed Schelling point about the correct outcome or correct rules. I have strong beliefs and intuitions about what should happen, but other people also have strong beliefs and intuitions, and many of those are probably opposite of mine. Even if my intuitions are the best and most justified, a journalist is unlikely to think "I'm just not going to mention that some people are mad at this company over this outcome, because a hypothetically better norm or principle would support the company's actions here". Hopefully the journalism can at least contextualize the lack of legal or social consensus and the difficult incentive problems, rather than jumping to "obviously companies are sociopaths staffed by supervillains".

    • anfogoat 11 hours ago
      They're actively rummaging through your inputs so the damned-if-you-don't case doesn't really exist; no one expects Anthropic to not notify law enforcement once they learn of something like this. What you might have expected was some privacy in the first place though, where Anthropic would never have learned of this in the first place and where the damned-if-you-do case wasn't a thing.
    • pessimizer 46 minutes ago
      > in private chats.

      Including any chats anywhere where someone might have a phone in their pocket, or if there's a "camera" attached to a utility pole or a nearby tree. The only real private chats might be whispered lying down in the bathtub together, with a mattress covering it like you're both hiding from a hurricane.

      > they're chatting with Big Tech

      They're chatting with any powerful person who wants to hear it. She thought she was chatting with Anthropic, who doesn't give a shit about her. But after being threatened (and immediately backing down because, of course, they don't give a shit about her) Anthropic has become an arm of the government. So she was chatting with the Bonita Springs, FL Sheriff's office, or anybody else. If I paid enough, Anthropic would tell me about what she was doing so I could sell her laundry detergent.

    • rustystump 33 minutes ago
      Absolutely no sympathy. Anthropic is every bit as slimy as any other big corp. And like other big corps, they must open the vault to whatever governments they intent to do biz with.
    • badatnames 11 hours ago
      It's a byproduct of the nannyism safety marketing from the AI companies. I'm glad these cases were caught, but disagree with how they were disposed of. If the automated flagging is good, enforce it by default. If it's noisy, refine the tech then enforce it by default. This middleground where everything going through the platforms is subject to training and arbitrary human inspection in the midst of an acrid cloud of marketing-driven fearmongering is unacceptable, and it reinforces the idea the fearmongering is legitimate.

      Somehow humanity survived the past 40 years without Microsoft Word and Excel phoning home and shopping users to the feds at random, I don't see why the standard should be any different for this new class of tooling.

      • trallnag 11 hours ago
        As if it is just nannyism marketing by tech companies. The EU tries to bring a new nanny law into legislation every other month
    • api 1 hour ago
      We really need a class, probably in high school, that works through how LLMs work at the high level (don't need to get too far into the deep math, but give people a taste) and then how they're trained, used, and deployed.

      I feel like if people understood what these things actually are there'd be way less of this AI psychosis and similar stuff.

      There'd also be fewer people falling for apocalyptic Rationalist delusions.

      Also: people need to understand "not your computer, not your data." (Unless it's stored in the cloud but encrypted locally with keys only you possess.) Same goes for storing things unencrypted in OneDrive, Google Drive, etc. There is nothing to stop these companies from bulk scanning, data mining, or reporting people based on whatever request a government gives them. Don't count on them to resist, because they often can't, especially if the request is from a sovereign state where they do business.

      • nradov 40 minutes ago
        You can make a reasonable case for adding a lot more classes in high school: statistics, nutrition, personal finance, etc. But ultimately it's a zero-sum game and to add a new class means removing an existing class. So what do we cut?
      • orangecat 44 minutes ago
        There'd also be fewer people falling for apocalyptic Rationalist delusions

        Assuming you consider it a "delusion" to have a p(doom) of more than 5% or so, that's not uncommon among frontier lab employees who have a pretty good idea of how LLMs work.

    • mcphage 4 hours ago
      > I have some sympathy for Anthropic here [...] So from their perspective, it's damned-if-you-don't, damned-if-you-do.

      On the other hand, they did put themselves into this position deliberately.

      • brookst 2 hours ago
        By offering a product?

        Show me any product, no matter how simple, that has no safety vs utility tradeoff.

        • hackable_sand 1 minute ago
          [delayed]
        • zdragnar 2 hours ago
          They have some responsibility for people's expectations of the product, at least. They want the personal assistant personas to be able to help you with anything, and don't point out that they'll be judging your thoughts along the way.

          For anyone technically inclined it should be obvious, but it isn't part of the zeitgeist or how they pitch it. People see it as being different than talking to a human, and behave as if there won't be a human in the mix.

  • tintor 2 minutes ago
    Chatbot transcripts need have the same legal protection as phone calls.

    Anthropic (in discussion with Pentagon) claimed mass surveillance is their red line. Yet, they do mass surveilance of their users.

  • hypfer 52 minutes ago
    I guess we probably want our tech to work exactly like this.

    It should catch normal people becoming unstable so that they can receive help. It is just highly unfortunate that the US legal system works in ways where now this woman's name is public.

    ___

    Of course, we also want purely private tech, but that needs a certain level of merit and sanity filter.

    • fasterik 34 minutes ago
      >I guess we probably want our tech to work exactly like this.

      Do we, though? What if someone started an AI company that uses end-to-end encryption to make it impossible for anyone but you to access your data? Personally, I would switch to it in a heartbeat assuming it's competitive with the other products. I don't think it's the tech companies' job to surveil the population and prevent crimes. That said, I'm not necessarily against Anthropic or other companies reporting suspicious activity if their existing systems are detecting it. I'm just not sure we want every product to be forced into that data model.

      Your follow-up about purely private tech seems to contradict your first statement. We can either have privacy or surveillance, not both.

      • r2_pilot 2 minutes ago
        >What if someone started an AI company that uses end-to-end encryption to make it impossible for anyone but you to access your data? Personally, I would switch to it in a heartbeat assuming it's competitive with the other products.

        Why wait for a company to build it? Get your own local hardware like I did and have those guarantees because YOU set it up.

      • vladms 14 minutes ago
        I think we can have both and it might even be smart.

        A lot of people causing issues are people that can't make sense of many things (like many terrorists). They get a fixed idea and they end up doing something bad. You would catch those with some (basic) surveillance.

        A lot of normal people (not wanting to cause issues) might benefit from some privacy, if they understand what are the trade-offs (like government overreach). They can then use a slightly more complex tech.

        We would still remain with the couple intelligent but sociopaths (think Unabomber style), but I think no solution can fix all cases.

      • hypfer 23 minutes ago
        > Your follow-up about purely private tech seems to contradict your first statement.

        That is correct! And exactly my point.

        We want both, but, on paper, that is impossible. But in reality, we make it sorta mostly happen anyway, through making the easy defaults not private, and the private stuff not easy.

        This is not ideal, because [various reasons I do not need to tell you], but it has proven to be the best we can do to mostly achieve both goals.

        Kinda like how capitalism isn't great but just the least worst option we've found so far.

        ___

        The actual fundamental underlying problem being that not all people are equal, but we kinda have to pretend they are, because not doing so leads to fascism and other terrible stuff.

        But we kinda also do not want to fully pretend that, because doing so leads to yet other terrible stuff.

        Hence the quadruple-speak and contradictions to kinda sorta somehow have a somewhat functioning reality.

        • 12387-asd 6 minutes ago
          That is kind of rambling. Our rambling score says we should observe you.
          • hypfer 1 minute ago
            Oh don't worry, I'm certainly already on various lists, but the observations also will have resulted in the assessment that I am stable and no threat :)
    • Terr_ 6 minutes ago
      That sounds adjacent to "I have nothing to hide". Everyone says that until they realize someone can change the rules. Before 2022, women didn't have anything to hide from their period-tracker app, now some have to worry about being charged with crimes.

      A system that can declare her "unstable" is also one that can ban you from all air-travel for saying a nasty thing about Dear Leader.

    • 12387-asd 4 minutes ago
      The third highest voted comment wants surveillance. What is next? If you write "I'm going to kill that guy", which for non-autists means "that guy was really annoying" you should be reported.
    • rustystump 29 minutes ago
      No. This sentiment is why Snowden happened. We want privacy. Privacy isnt free just like freedom (whatever form it is) isnt free.

      There are trade offs. ISP effectively is like driving on a highway, everyone can see where you are going but not what is inside the car. Id like these AI chats to be the same but they are not.

  • jakzurr 1 hour ago
    First I posted to the (likely dup article) https://news.ycombinator.com/item?id=49965895#49966728. Wanted to post here, after reading more.

    Is this an invasion of their privacy (reporting to police)? Yes, but possibly warranted?

    Should a social worker have contacted them rather than the police? Probably, if for no other reason than to ask if they were serious about harming someone.

    Difficult questions, I'm still undecided on whether it's OK to always ignore someone's rants, even if it may be (or they think it may be) a private diary.

    Actually charging them with a felony seems pretty quick to accuse. (Maybe I missed a hint about how long the investigation took before the felongy charge?)

    • hypfer 45 minutes ago
      It is my very european belief that the problem here is not that the woman was reported, but that what likely is a mental episode was made public in a way that reduces the chances of recovery.
  • Anoian 12 hours ago
    I have told llms all kinds of stories to find out what its answers would be. I always make it sound like it is the truth to make sure the AI answers in a way that it would if somebody actually said this. I also tested internal flagging systems of the ai company I work at with the most evil things a person can ever say to find out if it would flag them.

    Of course I did not mean any of that stuff, but how can you make sure a human reviewer knows you did not mean it while the llm does not know that you did not mean it.

    I guess its a miracle I am not in jail yet.

    Flagging people for anything said to an llm sounds wrong to me because an LLM is not a real person and while some people put in their internal thoughts, others just roleplay and the two are inseparable just from reading it.

    • adrianN 12 hours ago
      Don’t worry, they’ll store those messages forever and incarcerate you at their convenience.
    • childintime 11 hours ago
      This is exactly the typical use I make of the llm.

      Adding: - I typically ask questions in the I form, regardless for whom or why I ask for. - Gemini chats quite often end when it starts recommending psychological council or a suicide line, to talk about my problems. It apparently detects a persistent tendency to not agree with the party line. So it makes sense I must be suicidal ;-

      But sure, as llm's start to babysit us, and know our inner dialog better than anyone else, we'll soon be debugging their opinion/behavior/co-existence/authority, when it comes to reporting people to the authorities, or taking on tasks in society in general. We'll hire doctors to cure our psychological profile from our record (Total Recall).

      A Minority Report like this shouldn't cause a referral to the police.

  • apparent 11 hours ago
    I don't understand how she violated this law:

    > Heller faces a charge of making a written threat of violence under Florida law. Florida Statute 836.10 makes it a second-degree felony to send, post, or transmit a written or electronic record threatening to kill or injure someone, carry out a mass shooting, or commit an act of terrorism.

    She didn't threaten anything, she wrote down that she was going to do it. A "threat" is more than a mere statement, especially when written in what is described as a "diary".

    > A Florida woman is facing felony charges after she used Claude as a diary and allegedly wrote that she planned to "shoot up" the Sheriff's office.

    Obviously I don't want anyone to shoot up anything, but this seems like a weak case legally speaking.

    • halJordan 4 hours ago
      I think it's fair to say this is a gray area. Clearly it was transmitted.

      I can certainly threaten you harm and send it to not-you and you're still clearly in danger even if it wasnt transmitted to you. So the question becomes did she transmit it to someone? Clearly yes she transmitted it to Anthropic. But she clearly intended to send it to Claude, an inanimate object.

      • mossTechnician 1 hour ago
        Claude's terms of service makes it very clear that their employees will read messages[0] to determine that they don't contain the things that these messages contained[1].

        > Review is needed to enforce our Usage Policy... designated members of our Trust & Safety team may access this data on a need-to-know basis as a part of their evaluation process.

        [0]: https://privacy.claude.com/en/articles/10458704-how-does-ant...

        [1]: https://www.anthropic.com/legal/aup

        • kube-system 31 minutes ago
          I highly doubt she read the terms.

          The critical part of a "threat" is that the perpetrator takes some intentional method to deliver it.

      • karmakaze 3 hours ago
        I don't think it qualifies for this part:

        > The communication must be made in a manner in which another person may view it.

        Even 'transmitted' is too broad if you also consider iCloud backup to be a means.

      • Zigurd 2 hours ago
        Too broad. Unless you're transferring ink from a typewriter ribbon onto paper in a hut with no electricity, your words, or my words as I type this, are being grammar checked by something partly in the cloud. If I delete my words, are you saying I've transmitted them nevertheless?
        • zdragnar 2 hours ago
          She may have assumed that the chat conversation was private, but it wasn't. She sent a message of intent to harm and a human received the message.
          • kube-system 40 minutes ago
            Yes but the law usually evaluates the application of a statute within the context of someone's mental state. This is why you are not guilty of battery when you trip and accidentally bump into someone. https://en.wikipedia.org/wiki/Mens_rea
            • zdragnar 33 minutes ago
              That depends on the crime; several related crimes are only distinguished by intent. Negligence is itself a crime if it is the cause of a preventable death when the person has a reasonable obligation, such as when driving a vehicle.

              I'm not really sure that this can be likened to a diary when it is called a "chat" but that's for the legal system to determine, not me sitting on my couch.

              • kube-system 29 minutes ago
                Any reasonable person presumes when they chat with Claude that it is a computer program on the other end. "Claude is AI" is explicit on the page right under the input box. The word "chat" doesn't anthropomorphize the situation.

                And yes, some laws are "strict liability", I don't think this one is.

          • caffeinated_me 47 minutes ago
            There was no intent for a human to read the message. By your logic, if she wrote a threat in a diary and a burglar broke in and read it, it would be a crime on her part.
            • zdragnar 24 minutes ago
              Chats with a company's computer aren't private the way a diary is. A better example would be she intended to write it in a word document and instead accidentally sent it in an email to a random person.
          • MisterMunchkin 28 minutes ago
            They didn’t receive it, they secretly extracted it by spying on her.
          • wildzzz 22 minutes ago
            The Florida statute requires that it be transmitted in a manner that can be viewed by another person. If you have no idea that someone could view your communications with a chatbot, did you really intend to break that specific law? Technically, that threat was communicated to another person but not through her own intentions.
          • gopher_space 45 minutes ago
            Saying that she “sent a message” is both literally true and obviously intellectually dishonest.
            • zdragnar 26 minutes ago
              If she had intended to write it in a word document on her computer but instead accidentally wrote it into her email client and sent it to a random person, I'm not convinced she would escape getting charged then either.

              It's not any different than telling an automated phone voice tree system that you plan on killing someone and then being surprised that your words were later heard by a human. She absolutely told a company's computer. She sent the message.

              The law may have been intended for more direct threats to a person as a means of intimidation, but that's a separate conversation.

      • aeturnum 2 hours ago
        A sibling comment includes an important rider to the provision: "...in any manner in which it may be viewed by another person." If you wrote this in a google doc, it almost certainly would not qualify as a threat under this statute. Even though google docs, like LLM chats, have administrative override and you could look at their contents - you would not expect either to be "viewed by another person."

        IMO I do not think this is a grey area and it's legal to tell a LLM you want to kill someone. It's certainly not a "threat" like you might send to another person, though it may end up being evidence of conspiracy or premeditation. I suspect we would be well served to, after a few years of experience, put together some laws governing when LLM chats must be made available to authorities.

        It is very interesting that the LLM responses to these lines - the context around what she is saying - is not in the article. I suspect, as is the case in many instances where LLMs are involved in violent planning, that the LLM was urging this behavior on. Basically entrapment - you are encouraged by a robot to become more violent and vindictive and then when you do you are handed over to police.

    • nextaccountic 11 hours ago
      Yeah.. if you write a personal note and it's backed up by the operating system, it appears to be in violation of this law as well (since the company could theoretically read it)
    • sandos 9 hours ago
      This almost smells like thought crime... Minority Report when?
      • zdragnar 2 hours ago
        People assume there won't be another human in the mix, but there is. She was judged for what she probably assumed was a private thought when it was actually not private.
  • shevy-java 2 minutes ago
    What a ... nice company.

    Snitching on the people - good mass surveillance company.

    On the other hand, people need to learn to not trust these companies. It reminds me of others being surprised when a self-driving car reported a gun in the car. I mean, do people not think? Besides, of course, it's already messed up to want to have a gun. And it is constantly one country that has such issues, more so than many other countries.

  • quadhome 12 hours ago
    It is unlawful for any person to send, post, or transmit, or procure the sending, posting, or transmission of, a writing or other record, including an electronic record, in any manner in which it may be viewed by another person, when in such writing or record the person makes a threat to: (a) Kill or to do bodily harm to another person; or (b) Conduct a mass shooting or an act of terrorism.

    — via https://www.leg.state.fl.us/Statutes/index.cfm?App_mode=Disp...

    The DA is serious about "in any matter."

    • codingdave 53 minutes ago
      > in which it may be viewed by another person

      To me, that is the more interesting legal question. Does a LLM-based safety net that sends content to a human, when the original use case would not have sent it to a human, count as "may be viewed by another person". It certainly wasn't intended to be, and that isn't the norm. At the same time, because no security is perfect, we could say that any digital record, stored in any way "may be viewed by another person."

      Something for the courts to sort out, of course.

      • Symmetry 36 minutes ago
        The usual thing that makes laws against criminal conspiracy pass First Amendment muster is that the words have to be combined with some concrete acts furthering the criminal conspiracy. That might just be something as otherwise innocuous as looking up the blueprints of the bank you talked about robbing but it has to be something other than just talk.
    • dotancohen 12 hours ago
      Is the LLM now "another person"?
      • serial_dev 11 hours ago
        The other person is not the LLM, rather the service provider’s employees.

        > may be viewed by another person

        Was it viewed by another person? Yes.

        • wildzzz 19 minutes ago
          So a written threat only becomes a crime when someone reads it, even if you never intended for anyone to read it? Is it a crime if I make a threatening statement in a diary and someone breaks into my house and reads the diary?
      • elil17 12 hours ago
        I suppose since Anthropic's T&Cs allow them to have a person read your chats, that makes it violate the law. Of course, if Anthropic didn't have that in their T&Cs, it wouldn't have been illegal to write.
        • positive-spite 1 hour ago
          And it would never have been read by a person (wink wink)
      • 1659447091 12 hours ago
        Depends on how good her lawyer is now
      • andylynch 12 hours ago
        The company that runs it is
    • tkel 12 hours ago
      Except if you're one of the "warfighters" that Anthropic supports
      • antiloper 10 hours ago
        I mean, obviously? Soldiers operate under different rules than civilians. This has always been true.
  • zug_zug 33 minutes ago
    I guess all the "private model" people are right. Don't want to end up in jail (or even charged with something) for asking a crazy hypothetical question or something.
    • deadbabe 2 minutes ago
      Won’t help if your model is trained to immediately find a way to push out a message somewhere to alert authorities of your threat
  • jameskilton 7 hours ago
    Anthropic commits literal felonies by stealing millions of books and violating Copyright like it doesn't exist: no charge.

    One unfortunate woman who happened to write the wrong thing in the wrong place is now having her life turned upside-down for perceived thought-crime.

    To Anthropic, and all employees working there, your company's product and the result of your work is cruelty. You are enabling it and pushing it down everyone's throat. You can never again claim that you are the "ethical" AI company, for no such thing exists.

  • CrzyLngPwd 12 hours ago
    Oh man, what a crazy time to be alive.

    Over in Europe they want to read all ofd our private messages, yet these chatbots, pretending to be our friends, will snitch on us just for our thoughts.

    It's getting pretty orwellian out there.

    • vulcan1964 12 hours ago
      I once had a copy of 1984 in my checked baggage returning home to the USA and when I was unpacking the bag at home, the book had a notice inside the book that my bags had been inspected by TSA...
      • yaro330 39 minutes ago
        I reckon they were just checking for money or hidden compartments. Sending books abroad packed with money is extremely common from the US, though not sure how frequently people do that with onboard luggage.
      • SauciestGNU 5 hours ago
        Only tangential but when I was an undergraduate studying philosophy I had Bertrand Russell's Why I Am Not A Christian in my carry-on, and the TSA saw that and had a field day.
        • epihelix 38 minutes ago
          I can only assume you meant they had a field day celebrating how much of Russell's philosophy matched the concerns about Christianity expressed by Jefferson, Paine, etc?
        • stickfigure 2 hours ago
          Please elaborate - what did they do? And what airport was this?
        • ars 12 minutes ago
          They wouldn't see it until they opened it, so clearly they didn't open it because of the book. And if they need to open your suitcase (not because of the book), they have a reason for that.
    • childintime 11 hours ago
      In Europe they should provide the citizens with the service of their messages not reaching US servers. So basically that there is only one party reading along with them, not half the world.
  • 1209-1266 1 hour ago
    Where are the people now who claimed that LLM chats are really private and not monitored?

    Every single lie of yours is exposed in the past few months.

    • madeofpalk 1 hour ago
      Personally, I’ve never seen anyone claim this. At least anyone who one would think is informed on these matters.
    • crazygringo 36 minutes ago
      I haven't seen anybody claiming this for consumer/free accounts anywhere.

      You get privacy if you're a big corporation that needs to make sure OpenAI/Google/Anthropic can't read your trade secrets etc.

      But those contractual privacy protections have been in place for a long time. It doesn't have anything to do with AI, it's been the same with Office365, Google Docs, etc.

    • heaney-555 43 minutes ago
      Who claimed this? I've never seen that claim.
      • MisterMunchkin 27 minutes ago
        Every single person who has told people to use LLMs with their proprietary information and code.
    • seanmcdirmid 11 minutes ago
      Uhm, those people never existed? Or maybe you just have very interesting friends?

      LocalLLM enthusiasts exist for a good reason.

    • yaro330 41 minutes ago
      No sane person claimed this.
  • Lio 11 hours ago
    For the sake of argument what would happen if she had kept the diary locally and claude code scanned the file?

    What would happen if it had scanned a file it didn’t have permission to look at and found this threat?

    I honestly don’t know how I feel about this. On the one hand if you’re using claude as a diary you have no expectation of privacy and she was talking about committing a very serious crime.

    This still makes me feel queasy though.

    • fwlr 10 hours ago
      Both of those scenarios would demonstrate even more commitment to safety so I imagine they’d be at least as likely to happen as this, if not more.
  • Havoc 11 hours ago
    > making a written threat of violence under Florida law.

    A diary constitutes making a threat?

    Oh boy the roleplaying part of LLM world is in for a bad time

  • thih9 12 hours ago
    In any case this is proof that law and negative PR can influence tech companies, including frontier AI providers.

    Then again, I wish this worked in a way that would give users more privacy and agency, instead of less.

  • 1209-1266 1 hour ago
    In Florida. Where DeSantis said "You loot, we shoot":

    https://www.politico.com/news/2023/08/30/desantis-warns-hurr...

  • dabinat 12 hours ago
    This kind of thing will get worse with humanoid robots because they have cameras and microphones. Will they be programmed to tell on you if you break any kind of rule in front of them because their owners are terrified of being sued?
  • shlant 12 hours ago
    this feels very thought-crimey to me, but I think I'd have to actually see that chats to really decide. Like is she making plans/asking for advice? is she just talking about her feelings exactly as if it's a diary?
    • nextaccountic 11 hours ago
      She is not being charged with planning, just making threats in a place a person could read - the person being employees of the company.

      Basically, under this interpretation, any personal note you store in the servers of a company could qualify, even if you didn't ever imagine someone would read and as such you couldn't have thought about it as a threat

  • jjmarr 1 hour ago
    This is why I use ZDR and API access.
    • MisterMunchkin 25 minutes ago
      They still read every single message you send and train on them.

      I’ve had them email me before because I was testing it as a filter for abusive messages and they detected some no-no and wrongthink in those test messages.

    • ralphington 31 minutes ago
      I looked into ZDR, it's basically a vapid claim with little to no due diligence or auditing. I expect most providers to cave with only a minimal amount of legal pressure.
    • l0kihardt 54 minutes ago
      How much spend do you need to negotiate ZDR?
      • epihelix 35 minutes ago
        OpenRouter provides ZDR for many endpoints (if you trust OR and the provider). Naturally, the routed prompts process itself adds additional anonymity.

        The downside is that you don't get cached prompt discounts, so you pay a heavy price for ZDR that way.

  • olalonde 12 hours ago
    > The communication must be made in a manner in which another person may view it.

    How does a LLM prompt satisfy this? I guess it'll be an easy win for her.

    • cryptonym 11 hours ago
      LLM is not a person but T&C probably states that a human moderator may view any of it. Her lawyer could probably argue a moderator filtering usage isn't the intent of the law, it was more about publishing / sending message for other humans and it was never clear to her that a human was reviewing her private diary. Shouldn't LLM disclose that at some point when people are feeding really personal stuff?
  • feverzsj 12 hours ago
    If only the woman hosted open-weight model in her house.
  • tantalor 1 hour ago
    > The communication must be made in a manner in which another person may view it.

    Seems to fail this test at face value.

    I mean, somebody you live with may find and read your diary. Is that the same thing?

    Intent matters here. Did you intend somebody else to view it? Does a reasonable person have expectation of privacy with a chatbot?

  • hackerbrother 27 minutes ago
    Do you think they woulda been caught if they used duck.ai?
  • Razengan 31 minutes ago
    We are officially in the era of Thought Crimes.

    Can the public also immediately get alerted when a cop or politician does some bad shit, though?

  • kmfrk 6 hours ago
    After people getting pilloried for social media posts from twenty years ago, I really hope (sensible) people will have the wherewithal to think twice about what they hand over to their chatbots.
  • hackernud3s 12 hours ago
    AI snitches don't get stitches.
  • Dig1t 12 hours ago
    The future is incredibly dark if they manage to ban open source models.
  • AIorNot 1 hour ago
    isnt this the plot of the Movie Kimi? https://www.youtube.com/watch?v=_Gr2zXuEBL0
  • vasco 11 hours ago
    I guess it's time to come up with a more plausible explanation about why I asked how to make nuclear weapons almost every month to test LLM refusals.
  • altmanaltman 12 hours ago
    > Heller faces a charge of making a written threat of violence under Florida law. Florida Statute 836.10 makes it a second-degree felony to send, post, or transmit a written or electronic record threatening to kill or injure someone, carry out a mass shooting, or commit an act of terrorism. The communication must be made in a manner in which another person may view it.

    Thought crimes are real when you're sharing your thoughts with Claude

    • Guvante 12 hours ago
      Auditing logs is a crazy interpretation of "another person may view it"
      • danpalmer 12 hours ago
        I wonder if "criminal intent" may be missing here given that most people probably operate under the assumption that Anthropic are not reading their messages.
        • bossyTeacher 12 hours ago
          I think people have a binary understanding on this. Someone is either reading their messages or not. While the reality is that all the messages are read by a machine (not unlike GMail and Outlook) and anything suspicious gets flagged up so a human can read it. This obscure the concept of "reading" as most laypeople understand it.

          Summary: don't type in Claude anything you wouldn't like a human to read.

        • jimbob45 12 hours ago
          It tells you exactly what it does with your information if you ask it, including this exact scenario, and has for at least four months now (when I asked).
          • calgoo 12 hours ago
            Yes but you are someone (i assume because you are on HN) that at least understands this point. There are A LOT of people that use it as their confidant, expecting it to be private. There is a massive education issue going on as its not in the interest of these Corpos to make you fear sharing all your details with them. Because, then you wont get Dot or whatever Anthropic comes up with and share all your personal info with it.
          • danpalmer 11 hours ago
            You're not wrong, and it may come down to this in court, but there's a difference between what people think happens, or the reasonable expectations, and what actually happens, and I think it's important to recognise that difference and why it comes about.

            I don't think someone is an idiot for thinking that the information they type into their private Claude account is private. I also don't think people are idiots for thinking their phone is listening to them and giving them targeted advertising based on that. Both are reasonable deductions from their lived experiences. Both are wrong.

    • rimliu 12 hours ago
      Should CEOs of Antrophic and OpenAI be reported too then? They cannot stop saying that AI will destroy humans.
      • Madmallard 10 hours ago
        laws for thee and not for me
    • foolfoolz 12 hours ago
      • danpalmer 12 hours ago
        I think it's a reasonable point to make. Writing things down is a part of "thought" for many, including those who keep diaries/journals. If you write in a private journal you do so with the expectation that is not shared, and that wouldn't seem to break this law (with my naive reading).
        • TheDong 11 hours ago
          I mean, at this point it's pretty well known that all tech services will be hacked by fable, anthropic themselves promised it, so writing your journal in google docs or claude or a txt document on your laptop or such is the same as releasing it publicly yeah?

          If it were written on paper, and only in a room with no phones or cameras so fable couldn't hack it, then I think you wouldn't be sharing it.

      • JumpCrisscross 12 hours ago
        > “written and shared” is illegal all over

        I think it’s valid to ask if tapping something into Claude is legitimately sharing a threat.

        I don’t think it is. I also think the sheriff could have found more-substantial evidence if she was actually planning domestic terrorism.

        That said, if the shooting happened and we were looking at this from before? It’s a tough balance without an easy answer.

        • lores 5 hours ago
          I think the zero-risk approach common nowadays is insanely corrosive to democracy and freedom. If a million people fantasise about shooting the sheriff, and one ever goes on to do it, I don't believe avoiding it warrants creating an apparatus of mass surveillance. After all, if people were really serious about zero murder, the only practical solution would be to lock up everyone. Some (most?) tradeoffs have exponential costs at the limit and we/lawmakers should recognise that.
          • JumpCrisscross 3 hours ago
            > If a million people fantasise about shooting the sheriff

            I think it’s fair to pre-identify folks who fantasise about shooting anyone. It’s a small fraction of the population that looks into logistics versus making offhand comments.

  • Muromec 12 hours ago
    They are good at keeping notes on your criminal conspiracy