Skip to content
AI EmployeeSuper-AgentsAgent-to-AgentTutorialsPricingBlogContact

Anthropic's 2026 Usage Policy: What Changes Nov 12

At a glanceQuick answers
When does it take effect?
November 12, 2026. Anthropic published the update and the new policy text on October 8, 2026.
What is actually new?
A consolidated section on deceptive campaigns, a narrower elections section without the blanket targeting ban, explicit weapons-software and surveillance language, a clearer high-risk list, controls for hardware that takes physical actions, and a rule against sustained abuse of the models.
Does it change what Anthropic enforces?
Mostly not. Anthropic says the weapons and surveillance rewrites reflect how it already enforced the policy, and that the high-risk requirements themselves have not changed.
Editorial illustration on a near-white ground: a thick rulebook with colored tabs open on a desk, a small robot arm beside it with a red stop button, and the figures Nov 12 in force, 1 new section on deception and 2 rules for robots
Fig 0A rulebook rewritten for agents that work longer on their own. Made by CellCog's image agent, running GPT Image 2.5.

Anthropic published its 2026 Usage Policy update on October 8, 2026, with the full text on its Usage Policy page. “The updated policy takes effect on November 12.” Anthropic’s own summary of the reason: “In the year since our last refresh, Claude has taken on longer, more independent work.” Most of the edits, it says, “are intended to clarify existing rules.”

This page lists what changed, section by section, from Anthropic’s post. Every quotation is from it.

On this page · 6 sectionsOpen
  1. What changed, section by section
  2. Deception gets its own section
  3. High-risk work and machines that move
  4. What this means if your AI employees run on Claude
  5. What we are watching for
  6. Sources
Key points5 · 5 min full read
  1. A rulebook with a calendar page tucked inside: a policy with an effective date.
    Anthropic published its 2026 Usage Policy update on October 8, 2026. It takes effect on November 12, and Anthropic says most of the changes clarify existing rules for a Claude that now does longer, more independent work.
  2. Four loose pages gathered into one folder: scattered rules consolidated.
    A new section, Do Not Engage in Deceptive Campaigns or Artificial Activity, gathers rules that were scattered across four sections and covers fake accounts, hidden authorship and the tools that run influence operations, political or commercial.
  3. A ballot box with a magnifying glass over its slot: a narrower, sharper rule.
    The elections section is renamed Do Not Undermine Democratic Processes and narrowed to deceiving voters, while the blanket ban on personalized vote and campaign targeting is removed because it blocked legitimate civic work.
  4. A person icon holding a pencil over a document with a checkmark: a human in the loop.
    High-risk uses in health, legal rights, finance and essential services still need a qualified human who can change Claude’s recommendation and a notice that AI was used; the section now lists which recommendations are covered.
  5. A robot arm next to a large red stop button: an operator who can stop it.
    New controls for Claude driving hardware that moves: a qualified operator must be able to watch and stop it, and the equipment must hold a safe state if Claude disconnects. A narrow new rule also bars sustained, needless abuse of the models.

§ 01What changed, section by section

Area What changed New rule or clarification
Deception Rules from the elections, fraud, privacy and disinformation sections merged into Do Not Engage in Deceptive Campaigns or Artificial Activity Consolidation, now explicitly political or commercial
Elections Renamed Do Not Undermine Democratic Processes; blanket ban on personalized vote and campaign targeting removed Narrower rule
Weapons Prohibitions now name guidance and control software, components, and arming drones and other autonomous vehicles Clarification of past enforcement
Surveillance and law enforcement Tracking without consent banned whether live or from stored data; no deciding or recommending who to investigate, arrest or charge; no building surveillance tools Clarification of past enforcement
High-risk use cases Rewritten to list which recommendations need a human in the loop and an AI notice Same requirements, clearer scope
Physical actions Hardware that takes autonomous physical actions needs an operator who can watch and stop it, and a safe state on disconnect New rule
Abuse of models Sustained, needless abuse or cruelty toward the models prohibited New rule, extreme cases only
Supported regions Clarifies the ban covers people located in, entities headquartered in, and entities majority-owned from unsupported regions Clarification
Table 1Anthropic’s 2026 Usage Policy changes, per its October 8 post

§ 02Deception gets its own section

The new section is the direct answer to the September threat report. Anthropic writes that it has “seen examples of state media outlets, government propaganda offices, and commercial firms using Claude to run networks of fake accounts and fabricated news sites.” The rules existed but were spread across four sections. The new one “covers efforts to obscure who is behind a message or amplify content through fake accounts or posts, along with building the tools and infrastructure for running influence operation campaigns.” The same day, OpenAI published its own report on two false-front operations.

The elections section moves the other way. Anthropic dropped the blanket ban on personalized vote and campaign targeting because it “covered legitimate civic work, such as nonprofits using Claude to write information for voters in other languages, or election officials sending ballot cure notices.”

§ 03High-risk work and machines that move

The high-risk requirements did not change, but they now come with a list. Where Claude’s output can affect “someone’s health, legal rights, finances, livelihood, or access to essential services,” Anthropic requires “a qualified human in the loop (that is, someone who has the authority to review and, if necessary, change Claude’s recommendations), and for the individual affected to be told that AI was used.”

The physical rule follows Anthropic’s Model Hardware Standard for agents that operate lab instruments:

Requirement Anthropic’s words
Human oversight “A qualified operator must be able to observe the equipment and stop it if needed”
Fail safe “the equipment must also be able to hold a safe state if Claude is disconnected”
Table 2Requirements for Claude connected to hardware that takes autonomous physical actions

The abuse rule is narrow by design. Anthropic says it “does not apply to common versions of user frustration, pushback, dark creative themes, or model testing and research,” and that Claude’s ability to end abusive conversations “will remain the primary enforcement mechanism.”

§ 04What this means if your AI employees run on Claude

Our conflict, declared: we build CellCog, and every tier of our AI employees runs on Claude Opus 5.5, so this policy applies to the work they do for you. Two lines matter most. Work that affects someone’s health, money or legal rights needs a person with the authority to change the outcome, and the person affected has to be told AI was involved. On CellCog, consequential actions wait for your approval and every employee says it is AI, which helps; the qualified human is still you or someone you name.

The second is the deception section. An AI employee that writes and publishes for a business must do it under the business’s own name, never through fake accounts or invented authors, and that has been how ours work from day one.

§ 05What we are watching for

  • November 12. The policy takes effect; any enforcement notes Anthropic publishes after that date.
  • The high-risk list itself. The rewritten section on the Usage Policy page is the text that settles whether a given use needs a human in the loop.
  • OpenAI’s usage policies. Whether OpenAI moves the same way on deception and robotics.

§ 06Sources

Frequently asked5 questions

Q1What counts as a deceptive campaign under the new section?

Anthropic says it covers efforts to obscure who is behind a message or to amplify content through fake accounts or posts, plus building the tools and infrastructure that run influence operations, whether the aim is political or commercial.

Q2Can Claude still be used for voter outreach?

Yes, for legitimate work. Anthropic removed the blanket ban on personalized vote and campaign targeting, naming nonprofits writing voter information in other languages and election officials sending ballot cure notices. Deceptive targeting and misuse of voters’ personal data stay prohibited under other sections.

Q3What are the high-risk requirements?

Where Claude’s output can affect someone’s health, legal rights, finances, livelihood or access to essential services, Anthropic requires a qualified human with authority to review and change the recommendation, and that the affected person be told AI was used.

Q4What does the abuse rule mean for ordinary users?

Little. Anthropic says it applies only to extreme, repeated, purposeless cruelty toward the models, not to frustration, pushback, dark creative themes or testing, and that Claude ending such conversations stays the main enforcement.

Q5Does this apply to work done through CellCog?

Yes. Every CellCog tier runs Claude Opus 5.5, so Anthropic’s Usage Policy applies to what our AI employees do for you, alongside our own terms.

Published 08 October 2026 All Trust, permissions & security →