David Sacks Says Anthropic Chose Its Consumer Model Over Safety as a China-Linked Jailbreak Surfaces
AI & ML

David Sacks Says Anthropic Chose Its Consumer Model Over Safety as a China-Linked Jailbreak Surfaces

The White House gave Anthropic 90 minutes to lock its most capable models to US citizens, and the reason now appears to be a jailbreak that a China-linked group exploited, flagged by Amazon's Andy Jassy.

PublishedJune 13, 2026
Read time5 min read
Share

A 90-Minute Ultimatum Becomes an Industry Precedent

On June 13, the Trump administration handed Anthropic a choice with almost no time attached to it: restrict its most capable models, Mythos 5 and the consumer-facing Fable 5, to US citizens, or stop offering them. Reports put the window at roughly 90 minutes. Anthropic chose the second option, withdrawing both models entirely rather than building nationality checks that would have cut off its own foreign-national employees alongside overseas customers. The company framed the move as compliance under protest, arguing the standard, if applied evenly, would freeze new frontier deployments across the entire industry.

We have watched export-control logic creep toward software for two years, but this is the moment it arrived. The June 2 executive order that underpins the directive treats covered frontier models the way Washington treats advanced semiconductors: as dual-use capability that can be restricted on national-security grounds. For CIOs, the precedent matters more than the specific models. A frontier vendor can now be ordered offline on short notice, and the fastest way for that vendor to comply may be to pull the product rather than partition it. That is a continuity risk no procurement contract currently prices.

The Real Trigger Looks Like a Jailbreak

The official rationale shifted from vague foreign-access worries to something far more specific this week. According to Semafor, the White House moved against Anthropic partly because a China-linked group is suspected of having accessed Mythos. The mechanism appears to be a jailbreak, a technique for circumventing a model's safety guardrails, rather than a breach of Anthropic's infrastructure. The fear inside the administration is distillation: that an adversary with sustained access to a frontier system can train a cheaper imitation that inherits much of its capability, effectively exporting the model without ever exporting the weights.

That framing changes the stakes of routine safety research. A jailbreak is normally a bug to be patched, disclosed, and forgotten. Here it became the justification for a government order that erased two products from the market. If the precedent holds, every discovered jailbreak on a frontier model carries a latent regulatory consequence, because it can be read as a national-security exposure rather than an engineering defect. For enterprises, that raises an uncomfortable question about whether the models they standardize on can be yanked because someone, somewhere, found a prompt that broke them.

David Sacks Puts the Blame on Anthropic

Trump AI adviser David Sacks did not soften the administration's view. He said that in this case Anthropic prioritized the continued offering of the consumer model over safety, casting the company as having chosen revenue over responsible handling of a known flaw. According to Sacks, Anthropic chief executive Dario Amodei argued that the discovered jailbreak posed minimal risk and declined to repair it, a characterization Anthropic has not endorsed. The public nature of the criticism is itself notable: a sitting administration official naming a frontier lab and its founder as having made the wrong safety call.

We read this as a deliberate inversion of Anthropic's brand. The company has spent years positioning itself as the safety-first lab, the one willing to slow down. Sacks is using Anthropic's own framing against it, arguing that when a real safety decision arrived, the company blinked toward commercial interest. Whether that is fair is almost beside the point for buyers. The signal to the market is that the government now feels entitled to grade a lab's internal safety judgments in public, and to act on its own grade with the bluntest instrument available.

Amazon's Awkward Role

The most striking detail is who reportedly raised the alarm. Amazon chief executive Andy Jassy is said to have alerted the administration to the jailbreak vulnerability. Amazon is not a bystander here: it has poured billions into Anthropic and anchors much of the company's compute. Having one of Anthropic's largest backers flag a flaw to Washington that then triggers a market-clearing order is a governance knot with no clean resolution. It suggests the safety conversation around frontier models is now happening across investor, vendor, and government lines simultaneously, with no single party fully in control.

For enterprise leaders, the lesson is about concentration. The same handful of firms supply the models, the cloud capacity, and increasingly the political channel through which concerns reach regulators. When those relationships intersect, a commercial partner can become the source of a disclosure that takes your chosen model offline. Diversification across model providers, long treated as a nice-to-have, starts to look like basic operational hygiene when a single jailbreak, surfaced by a rival-cum-investor, can remove a frontier system from your stack in the span of an afternoon.

What Buyers Should Do Now

We would treat this as a wake-up call rather than a one-off. The immediate action is inventory: know exactly where Mythos and Fable touched your workflows, what fell back when they vanished, and how long that fallback can hold. The medium-term action is contractual, pressing vendors on what happens to availability and data when a government order arrives, and whether you get any notice at all. Ninety minutes is not notice; it is a fire drill you did not schedule.

The broader shift is philosophical. Frontier models are no longer being governed purely as products with terms of service. They are being governed as strategic assets whose access can be revoked on security grounds, with the criteria still being written in real time. Anthropic disputes the directive and argues it would halt frontier deployment industry-wide, and that argument will play out in front of the G7 and the courts. But the operational reality has already changed. The question for every CIO is no longer whether their AI vendor is reliable, but whether their AI vendor is allowed to keep serving them at all.

Tagged#news#ai-ml#ai#anthropic#regulation#governance#llm