
Sad!
OpenAI, today:
The EU AI Act requires generative AI providers to make generated text identifiable in a machine-readable way. Text watermarking and detection remain early technologies with significant limitations, and views about their benefits and responsible uses are still developing. Our phased approach reflects both the EU AI Act requirements as well as the technologyâs limitations, with an emphasis on transparency about what a text watermark can and cannot tell people:
- Starting today, API customers globally will be able to opt in to text watermarking for select models. Text watermarking will remain off by default in the API.
- Over the coming weeks, we will add an invisible watermark to eligible ChatGPT and Codex text output in the European Union.
- Weâre opening applications to access our text watermark detector. Access will initially be limited to approved researchers and expert organizations that can help us evaluate and improve the technology.
First, unlike Anthropic, OpenAI is only forcing this upon users in the EU, where itâs mandated by their ill-considered 2024 regulation. Second, also unlike Anthropic, OpenAI has made this available via an API so developers should be able to actually see if this adulterates text output with real-world usage.
Third, none of these companies have yet made their watermark detectors publicly accessible. I remain highly skeptical that they will work as advertised in the real world. I think this is all somewhat of a sham to claim compliance with the EU AI Act without actually providing anything that anyone can actually use in a practical way.
Our text watermarking technology, textGrain, adds an invisible statistical signal to the modelâs word choices. Our detector looks for that signal to assess whether a passage contains an OpenAI watermark. More details about how textGrain works can be found in our technical report, which will be updated with additional details in the coming weeks. We also plan to make the technology available in open source so that others can build on it.
In our evaluations, textGrain matched or exceeded the performance of other approaches we tested, including SynthID for text. Even so, strong performance under ideal conditions does not guarantee reliable detection in everyday use.
SynthID-Text is the Google algorithm that Anthropic says theyâre using too.
Maybe Iâm all wet, but I think what they mean in that last sentence quoted above is that it only performs usefully in ideal conditions, with simplistic prompts, and will prove to be unusable in practical everyday use, especially if the userâs prompt contains instructions designed to circumvent it.
Apple Developer News, in a post titled âUpdates to Full Disk Access in macoSâ:
We give developers powerful APIs to build incredible capabilities into their apps for Apple products, backed by a set of controls designed to protect usersâ private data. Full Disk Access largely sidesteps these controls in order to allow backup apps to function properly on the Mac. Some developers are using Full Disk Access in ways that could put users at risk, exposing everything on their systemsâââincluding files, mail, messages, and even browsing historyâââwithout usersâ full knowledge and understanding. For communication apps, this can also compromise the privacy of the people users are communicating with.
Going forward, we will introduce additional controls to ensure that users who genuinely wish to grant an app this extraordinary level of access can only do so with very explicit user action. Addressing this is critical. As AI agents become increasingly capable and autonomous, the risks associated with this level of access will grow substantially. We are committed to ensuring users clearly understand these risks before granting such access, so they can make informed decisions about their own data and privacy.
They donât name names or even mention âagentic AIâ, but clearly this is in response to Meta Muse (cf. Jason Atenâs misadventure with Muse accessing Atenâs iMessages), Grok Bot, Claude, Dots, and the rest.
I really worry about just how much Apple is going to lock Full Disk Access down. I use it with several apps that couldnât function properly without it, and would be severely hampered if I needed to authorize it manually every time they do something.
But before we Mac power users riot in Cupertino, we should note that we have no idea how many non-sophisticated Mac users are calling Apple and queuing up at the retail store Genius Bars to complain about Muse and these other agents having run amok on the Macs, against their desires, after convincing these users to grant them access. It is a legitimate frustration for the highest-functioning users among us that the Mac has, for years, already seemed âtoo locked downâ. But there are now around 150 million Mac users worldwide. Most of them are unsophisticated technicallyâââa majority of them, profoundly so. Many of them have technical needs that cannot be met by the baby computer OS that is iPadOS. So there are tens of millions of people who need to use a Mac to do things that cannot be done on an iPad, but who have zero understanding of what it means, say, to grant Muse permission for Full Disk Access. And then they think it is Appleâs fault that Muse is suddenly able to read their private iMessage conversations.
On iOS (and its tablet variant, iPadOS), you can say OK to every single thing an app like Muse asks for and Muse still wonât be able to read your email or end-to-end encrypted messages from iMessage or WhatsApp. There is no level of permission that grants third-party apps permission for such things. (The EU wants to force Apple to allow that under the DMA.) MacOS isnât like that. You still need to grant apps permission for such things, but if you say OK to everything an app like Muse asks for on the Mac, youâre granting that app access to, effectively, almost everything on your startup drive. There are still some things it canât see, but not many. A lot of non-technical Mac users do not understand this and cannot be expected to understand this. They just think, wrongly, that Apple protects them from allowing anything truly dangerous, because thatâs how their iPhone (and/or iPad) works. So they just click OK to every access request from Muse and presume theyâre still largely protected.
Hopefully Apple has in mind a solution to this situation that will still enable knowledgeable power users to confirm agreement to a sufficiently scary warning and put their Macs in a state similar to what we have today. I worry. What alleviates my worst fears is the knowledge that every technical user at Apple itself needs to use their Mac as the powerful Unix workstation OS that it is. Some of us need dangerously powerful tools. Most Mac users, however, do notâââand donât realize theyâre using a dangerously powerful Unix workstation with a very friendly (literal) face.
Echo Wang, reporting for Reuters yesterday:
Anthropic is making a massive bet that AI will transform the global economy more profoundly than âindustrialization, electricity and the internet, according to its IPO prospectus seen by Reuters.
This is a strong clear lede, but even so it falls short of expressing the true magnitude of what Anthropic represents. To wit, not that âAIâ as a field will prove more profoundly transformational than industrialization, electricity, and the Internet, but that Anthropic alone will. This is not an IPO that makes sense if you consider Anthropic one among peers, even a short list placing them alongside just (say) OpenAI, Google, and Meta. It only makes sense if you believe Anthropic is on the cusp of winning a race to create a godlike super intelligence, and that first godlike super intelligence will take over the world.
You know, something exactly akin to the âraptureâ events that religious cultists believe are coming.
But the cost to get there will be staggering. Anthropic reported a net loss of $42 billion in 2025, and plans to spend $518 billion on cloud, computing and infrastructure obligations in coming years, according to the prospectus.
If you believe that theyâre profitable now youâre as crazy as they are. Theyâll seed stories to the press that theyâre now profitable, using accounting methods they wonât define (and wouldnât pass muster for a public company) but wonât make such claims in writing.
The prospectus details how the company has grown sharply in the last yearâââwhile also posting wider losses. Revenue grew 12-fold in 2025 to nearly $4.6 billion, even as the company lost more than $8 billion on an operating basis, excluding writedowns of various liabilities mostly tied to previous fundraising, according to the documents, reported here for the first time. [...]
Anthropic said nearly a quarter of its revenue came from two customers last year, and as part of its risk factors, warned that many of its largest clients were not locked into long-term contracts and could cut or stop spending.
I donât think this is complicated. Their revenue is accelerating rapidly because theyâre selling compute at a loss. They spent $13 billion to make $5 billion last year. Their revenue is growing rapidly, yes, but their costs are growing even faster. Theyâre already on the hook for half a trillion dollars on cloud computing expansion but their revenue is precariously reliant on a few big-spending whales who arenât under contract, and commodity open source models are rapidly closing the gap. If Anthropic is losing a fortune now with $13 billion in costs how are they going to break even spending $100+ billion per year? Donât worry, their godlike AI will figure that out?
Anthropicâs proposed valuation is easily calculated, as -50 times 2025 losses.
The more they lose, the more they win!
Link: reuters.com/business/finance/anthropics-ipo-prospectusâŚ
Sancho Panza:
I recently had an experience while doing a simple Google search that was so profoundly weird that it stopped me in my tracks.
Kagi, the search engine Iâve been using for a few years now, gave me the exact sort of results to Panzaâs query that he was looking for.
If cats could talk, they'd be annoying. Always complaining, always wannting something, always judging you.Kind of like kids, except they can't talk, so we put up with them.