This news item from a few weeks ago revealed that when users created a "public link" of their Claude chat history, that chat history ended up in Google's search queries.
Aren't these urls supposed to be more or less undiscoverable by virtue of the long string of random characters that they contain?
How did Google discover those urls?
Did these people publish the urls somewhere publically themselves?
Or did Google "fish" them out of their gmail inbox or something like that?
14 Comments
SnoopSqueak@lemmy.today · 15 pts · 2d
They created a public link. Google scraped it because it wasn't told not to.
From the article:
Google was not the only one:
khanas1f@lemmy.world · 5 pts · 2d
Anthropic blocked the scraping quickly when this came to light but does google still has the URLs that it has already scraped?
I understand that new shared chats won't show up but what about the old ones.
SnoopSqueak@lemmy.today · 1 pts · 2d
Yes, Anthropic presumably submitted a request to block search results that lead to Claude chats, as well as to remove the ones that were already there. Google's removal tool can remove results that had been indexed, and the "noindex" meta tag prevents future indexing, if I'm understanding correctly.
https://support.google.com/webmasters/answer/9689846?hl=en
My guess would be yes. I doubt the removal tool actually deletes content, more likely it just deactivates it. It could theoretically be reactived or used for something else, possibly even inbreeding (AI chat logs to train AI on) or selling data to whoever pays for it. But that is just a guess, I could be wrong. I don't have much optimism when it comes to corporations, they tend to be as evil as they can get away with. If they legally acquired the content from those links because Anthropic neglected to protect them, there may not be many limits to what Google can do with those chat logs.
KurtVonnegut@mander.xyz · 2 pts · 1d
Why would AI companies respect noindex tags if they dont even care about copyright?
SnoopSqueak@lemmy.today · 1 pts · 20h
Yeah, they probably don't. But public search engines typically do.
It is very, very difficult to keep anything private these days.
KurtVonnegut@mander.xyz · 3 pts · 2d
Ah ok, looks like I didn't read the article carefully enough.
That still leaves two scenarios though:
I guess, in the end, I'm mostly wondering if the long random strings of public links are generally "brute-force-discovered" by crawlers like Google, or whether "discovery" of such links requires some kind of breach.
SnoopSqueak@lemmy.today · 5 pts · 2d
Anthropic fucked up, Claude is not a person.
Correct, that seems to be the case.
Kind of. The user fuck up would be not realizing that Anthropic had no protections from search engines, and that by clicking "share" they were creating publicly accessible links.
Anthropic seems to have updated the domain those links are generated on so that crawlers do not index public chats, yes.
I am also curious. I looked it up. https://developers.google.com/search/docs/fundamentals/how-search-works
If I had to guess based on this, Google had probably indexed the domain Claude or its frontend run on and automatically scooped up the public chats as they became available.
It is also possible that any Claude chat shared will still be accessible to web crawlers, if they just ignore the flags telling them not to scrape, crawl, access, index, etc.
KurtVonnegut@mander.xyz · 2 pts · 1d
Thank you this was very helpful.
hexagonwin@lemmy.today · 10 pts · 2d
i believe the links were posted somewhere public.. even if it's that google i highly doubt they would put things from people's browsing history or mailbox onto public search index
sznowicki@lemmy.world · 9 pts · 2d
Someone once proved Google does crawl links found in the Chrome url bar. I don’t feel like trying to find that article now but I’m sure it was a case some case ago.
The_Decryptor@aussie.zone · 3 pts · 2d
At one point their browser extensions would scan search terms entered on pages and spider any results that appeared. The Bing team found that and created a honeypot where Bing would produce nonsense internal links for certain search terms, and then they'd see the Googlebot crawl those pages within a few minutes.
justdaveisfine@piefed.social · 6 pts · 2d
Without looking it up, I'd somewhat presume they pulled those URLs from people's metadata if they're using the Chrome browser.
ExtremeDullard@piefed.social · 0 pts · 2d
Google is an outfit that specializes in stealing data. They probably recovered the URLs from Chrome browsers, or browsing histories, http referrer... Google is everywhere, unavoidable and aggressively collects data on everyone about everything all the time.
Tollana1234567@lemmy.today · 0 pts · 2d
and they are likely the driving force behind reddit forcing an aggressive login method for users, rolling out. its most aggressive on reddit currently. they dint want Claude stealing reddit data, which google paid for, hence the forced login.