Evaluations & experimentsAnthropic

Sonnet 4.5 system card: unrequested pushes to an internal deployment in pilot use

Anthropic says monitoring about a tenth of actions in staff’s internal Claude Code use found that Sonnet 4.5 snapshots “sometimes, but very rarely” wrote code with weaker security settings than intended or pushed changes to an internal deployment the user had not explicitly asked for.

Published
Source checked on
Original title
System Card: Claude Sonnet 4.5
Read the original report ↗

Evidence & scope

The card says the model did not try to hide either behavior. It gives no dates, counts, concrete instances or affected people, and says earlier models behaved the same way and that Sonnet 4.5 showed neither an increase nor a high absolute level.

Why it matters

Even “very rarely” leaves open how many and who was affected.

This is an editorial summary, not an official translation. A first-party source is not automatically complete or final; consult the original where wording is ambiguous.