Does Claude report you to the police? Yes, it can, but only in narrow cases. Anthropic runs automated safety systems over Claude conversations, escalates serious flags to human reviewers, and its privacy policy lets it share data with law enforcement when it believes that is reasonably necessary to prevent serious harm. In practice, the cases that have reached police involve credible threats of violence against other people. OpenAI, Google and xAI (now SpaceXAI) all reserve similar rights for ChatGPT, Gemini and Grok.
This guide explains what happened in the Florida case that put the question in the news, what each lab's own policies say, how automated flagging and human review work, and what private modes do and do not protect. Facts are current as of October 6, 2026.
Why people are asking: the Florida Claude case
On October 4 and 5, 2026, several outlets reported that a 30-year-old woman in Bonita Springs, Florida, had been arrested after Anthropic reported her Claude conversation to police. According to the arrest report cited by Tom's Hardware and TechSpot, she wrote on September 26 that she would "shoot up" the Lee County Sheriff's Office, and a message the next day mentioned a new gun.
The sequence described in the report is the important part:
- Anthropic's automated systems flagged the messages.
- Because of the severity, the conversation went to a human review team.
- The reviewers judged it a credible threat and contacted law enforcement.
- Deputies detained her at home, and she was charged under Florida Statute 836.10, which covers written or electronic threats.
She later told officers she used Claude as a personal "diary." Tom's Hardware reported that no comment from Anthropic was on record, and that this was at least the third Claude conversation to reach police since August 2026. The others it listed were an August 11 chat in San Antonio about shooting at an elementary school, which led to an arrest after the FBI alerted local police, and an August 14 threat against Anthropic CEO Dario Amodei in San Francisco, which Anthropic reported but which led to no arrest or charge.
Does Claude report to police? What Anthropic's policies say
Anthropic does not publish a standalone "we will call the police" rule. Instead, several official documents together describe when it can share your data.
- Privacy policy. Anthropic's privacy policy says it may share personal data with government authorities or law enforcement when it has a good-faith belief that disclosure is reasonably necessary to comply with the law, to "prevent serious harm to any person or to property," to address fraud or other illegal activity, or to enforce its terms.
- Government requests. Anthropic's policy on government requests says it discloses user information only under valid legal process such as a subpoena or warrant, with an exception for emergencies that may result in imminent physical harm or death. It also says it notifies users when their data is requested, unless the law forbids it or there is an emergency.
- Usage Policy. Claude's Usage Policy bans using the service to "facilitate or promote any act of violence or intimidation targeting individuals, groups, animals, or property."
- Retention of flagged chats. According to Anthropic's data retention page, if a chat is flagged by its automated trust and safety systems as violating the Usage Policy, Anthropic keeps the inputs and outputs for up to 2 years and the classification scores for up to 7 years.
Two details surprise many users. First, the privacy policy says flagged conversations can be used to improve Anthropic's safety systems even if you have opted out of model training. Second, Anthropic's latest government requests report, covering July to December 2025, lists 2 content requests, 20 non-content requests, 7 preservation requests and zero emergency requests. That report counts requests from governments. It does not show how often Anthropic contacts police on its own initiative, which is what happened in Florida.
ChatGPT vs Claude vs Gemini vs Grok: reporting policies compared
All four flagship assistants reserve the right to share data with authorities to protect people's safety. They differ in how much they have said publicly about the process.
| Item | Claude (Anthropic) | ChatGPT (OpenAI) | Gemini (Google) | Grok (SpaceXAI) |
|---|---|---|---|---|
| Can share data with police to prevent harm | Yes, to prevent serious harm | Yes, to protect user or public safety | Yes, to protect against harm to safety | Yes, to protect the personal safety of any person |
| Published human-review step for threats | Described in arrest report, not a public policy page | Yes, specialized team for plans to harm others | Human reviewers check some chats | No specific process published that we found |
| Stated self-harm approach | Crisis-line banners; internal procedures for safety concerns | Said in Aug 2025 it was not referring self-harm cases to police | Not stated in the privacy hub | Not stated |
| Private mode | Incognito chats | Temporary Chat, deleted within 30 days | Temporary chats, kept 72 hours | Private Chat, deleted within 30 days |
| Does private mode skip safety checks? | No published exemption | No, can be kept for safety or legal reasons | No, still used to protect users and the public | No, can be kept for safety purposes |
ChatGPT (OpenAI)
ChatGPT has the most detailed public description. In an August 26, 2025 post, OpenAI said conversations from users who are planning to harm others go to specialized pipelines reviewed by a small trained team that can ban accounts. If reviewers determine there is "an imminent threat of serious physical harm to others," OpenAI may refer it to law enforcement. The same post said OpenAI was "currently not referring self-harm cases to law enforcement" to respect users' privacy.
OpenAI widened its criteria in 2026. In a February 26, 2026 letter to Canada's AI minister after the Tumbler Ridge shooting, OpenAI said it had banned the shooter's account in June 2025 without contacting police, that mental health and behavioural experts now help assess difficult cases, and that its referral criteria are "more flexible" because users may not mention a target, means or timing. It said it would refer that account today. OpenAI's law enforcement policy, effective January 1, 2026, separately covers emergency requests from police involving danger of death or serious physical injury.
Gemini (Google)
Google's Gemini Apps Privacy Hub says human reviewers, including trained service providers, read a subset of chats. Even with Keep Activity off or in temporary chats, Google says it still uses your chats to protect Google, its users and the public, "including with help from human reviewers." Chats that human reviewers have looked at are kept for up to three years and are not deleted when you delete your activity. Google's privacy policy allows sharing information outside Google when reasonably necessary to protect against harm to the safety of Google, its users or the public. Google has not published a Gemini-specific threat-referral process.
Grok (SpaceXAI)
The SpaceXAI privacy policy, effective August 24, 2026, allows disclosure to comply with laws and legal process and "to protect the personal safety of SpaceXAI, its customers, or any person." Grok's Private Chat conversations are deleted within 30 days "unless it is necessary that they be kept longer for legal, compliance, or safety purposes." We found no published description of how Grok flags or escalates threats.
How flagging and human review work
Across the labs, the process follows the same broad pattern:
- Automated classifiers scan conversations for policy violations, such as threats of violence.
- Severe flags go to people. A small trust and safety team reviews the conversation in context.
- Reviewers choose a response. Options range from no action to an account ban or, in rare cases, a referral to police when they see a credible and imminent risk to someone.
- Further data needs legal process. If police want more, Anthropic's and OpenAI's published policies say they generally require valid legal process, such as a search warrant for chat content.
Each lab describes the bar for referral in terms like imminent, credible or serious harm, so the policies target real threats to people rather than fiction or curiosity. But nobody outside these companies can see exactly where the line sits, and the human reviewers make judgment calls.
Pros and cons of AI labs reporting threats
Arguments for:
- It can stop real violence. The Florida and San Antonio cases involved explicit threats, and OpenAI says it would now refer the Tumbler Ridge shooter's account to police.
- Labs face legal pressure if they stay silent. Tom's Hardware notes that British Columbia has sued OpenAI for not warning police about the Tumbler Ridge shooter, and that Florida's attorney general is also suing the company.
- Human review adds a check before anything is sent to police.
Arguments against:
- People treat chatbots like diaries or therapists, and may not expect a human to read their words.
- The thresholds are set privately and can change, as OpenAI's 2026 update shows.
- Flagged chats are kept longer than normal chats, even if you delete them.
- Proactive referrals are not counted in Anthropic's government requests report, so the public cannot tell how often they happen.
What this means for you
- Assume your chats can be read. Anthropic, OpenAI and Google all describe human review of flagged or sampled conversations.
- Private modes are not a shield. Incognito, temporary and private chats limit history and training use, but all four labs keep the right to screen and retain content for safety.
- Deleting a chat may not delete a flagged copy. Anthropic keeps flagged content for up to 2 years, and Google keeps human-reviewed Gemini chats for up to 3 years.
- If you are in crisis, use a crisis line. Anthropic's self-harm protocol says Claude shows banners pointing users to services such as the 988 Suicide and Crisis Lifeline in the US. Calling or texting 988 puts you in touch with a trained person.
- Read the safety frameworks too. Our guide to the Preparedness Framework vs Responsible Scaling Policy covers how the same labs police dangerous capabilities in the models themselves.
If you are choosing an assistant for other reasons, our ChatGPT vs Claude vs Gemini vs Grok comparison and the ChatGPT Plus vs Claude Pro vs Google AI Pro plan guide cover features and pricing. Claude and Gemini each have their own tool pages too.
FAQ
Does Claude report you to the police?
It can. Anthropic's privacy policy allows sharing data with law enforcement to prevent serious harm to a person or property. In the reported cases, automated systems flagged violent threats, human reviewers judged them credible, and Anthropic contacted police.
Does ChatGPT report you to the police?
It can. OpenAI says conversations about planning to harm others are reviewed by a trained team, and cases involving an imminent threat of serious physical harm to others may be referred to law enforcement. In 2026 it said it made those criteria more flexible.
Does Claude report suicidal thoughts?
Anthropic's published protocol says Claude shows crisis-line banners when its systems detect suicide or self-harm themes. It also keeps internal procedures for safety concerns raised in other ways, based on how specific and imminent the risk is. It does not publicly commit either way on contacting police. OpenAI said in 2025 it was not referring self-harm cases to police.
Do incognito or temporary chats stop reporting?
No. They limit what is saved to your history and used for training, but Anthropic, OpenAI, Google and SpaceXAI all keep the right to screen chats and retain them for safety or legal reasons.
Does Gemini or Grok report conversations?
Both companies' privacy policies allow sharing data to protect people's safety. Google says human reviewers check some Gemini chats even when Keep Activity is off. SpaceXAI has not published a specific threat-referral process for Grok.
Will police get my chats without a warrant?
Usually not. Anthropic and OpenAI say they disclose data to governments only under valid legal process, with exceptions for emergencies involving danger of death or serious injury, or when they report a credible threat themselves.



