Anthropic 推出 Enterprise Frontier Safeguards(EFS):零数据保留与跨会话滥用检测兼得

内容摘要
Anthropic近日推出了名为Enterprise Frontier Safeguards(EFS)的新架构,旨在满足企业对零数据保留(ZDR)和滥用检测的双重需求。EFS将监控数据存储在客户控制的云基础设施中,而检测功能则由Anthropic负责。此举旨在确保客户的数据安全,同时满足监管要求。EFS目前尚处于部署阶段,预计将在今年秋季全面推出。以下是EFS的几个关键要点: 1. 数据存储在客户控制的云基础设施中,确保数据安全。 2. 检测功能由Anthropic负责,无需客户参与。 3. 客户可以自主选择是否启用EFS功能。 4. EFS旨在满足企业对ZDR和滥用检测的双重需求。 5. EFS的推出将有助于企业更好地应对数据安全和监管挑战。
Anthropic近日推出了名为Enterprise Frontier Safeguards(EFS)的新架构,旨在满足企业对零数据保留(ZDR)和滥用检测的双重需求。EFS将监控数据存储在客户控制的云基础设施中,而检测功能则由Anthropic负责。此举旨在确保客户的数据安全,同时满足监管要求。EFS目前尚处于部署阶段,预计将在今年秋季全面推出。以下是EFS的几个关键要点:

1. 数据存储在客户控制的云基础设施中,确保数据安全。
2. 检测功能由Anthropic负责,无需客户参与。
3. 客户可以自主选择是否启用EFS功能。
4. EFS旨在满足企业对ZDR和滥用检测的双重需求。
5. EFS的推出将有助于企业更好地应对数据安全和监管挑战。

Enterprise AI buyers have been stuck between two things they both need. Regulated teams need a zero data retention (ZDR) guarantee, so no prompt or agent transcript sits on a vendor’s servers. Security teams need misuse detection, which historically required the vendor to hold that same data long enough to correlate it.

This week, Anthropic announced Enterprise Frontier Safeguards (EFS), an architecture that tries to give both. EFS stores monitoring data in cloud infrastructure the customer controls, not Anthropic’s. Detection stays with Anthropic. Custody, keys, and human review stay with the customer.

Is it deployable today? Not yet. EFS rolls out in phases with the goal of broad availability later this fall, and access is request-based. Until it ships, eligible customers can run Claude Fable 5 and Fable 5.1 under ZDR.

The technical problem EFS is solving

Anthropic’s stated reason for retention is detection quality, not training data. The company introduced 30-day data retention starting with Fable 5, and says plainly that it has never trained on enterprise data without explicit permission.

The argument for holding data is narrow and worth restating. The most sophisticated misuse Anthropic has observed spreads across many tasks, sessions, and accounts, including cases involving stolen or misappropriated enterprise credentials. Running an automated classifier on each interaction and instantly discarding it cannot catch that shape of attack. Correlation needs a window. Anthropic has documented this pattern in its own espionage disruption work.

Regulated customers understood the security logic and still could not adopt it. So Anthropic moved the window rather than removing it.

What EFS actually changes

Anthropic built EFS with more than 100 customers across financial services, healthcare, manufacturing, telecom, law, retail, and the public sector, together with AWS, Google Cloud, and Microsoft Azure. Contributors included the Analysis and Resilience Center for Systemic Risk, whose membership includes CISOs at Goldman Sachs, Morgan Stanley, Citi, Bank of America, and Wells Fargo, plus teams at Comcast, KPMG, Mastercard, Salesforce, and Visa. Anthropic says the design conversations covered a quarter of the Fortune 100 and every US global systemically important bank.

Three design decisions came out of that process:

  • Storage moves to the customer: Activity data used for monitoring can live in the customer’s own cloud account, under their encryption keys, access policies, and audit logging. Enterprises told Anthropic that onboarding another trusted data vendor triggers customer notifications and contract updates, so the architecture avoids creating one.
  • Review moves to the customer: When monitoring detects a pattern worth attention, the signal goes directly to the customer. Anthropic’s position is that automated review handles the scan; a person still adds value confirming real misuse and clearing false positives, and in regulated environments that person must be cleared for privileged legal material, non-public information, or drug-safety reports. EFS runs automated safety monitoring with no Anthropic human review required.
  • Detection stays with Anthropic: Automated systems analyze a rolling window of traffic for serious misuse, specifically attempts to build offensive cyber or biological capability and signs of stolen or leaked credentials.

Where this sits in the model roadmap

EFS is one of three enterprise concessions shipped alongside Claude Fable 5.1 and Mythos 5.1. The other two are pricing and precision. Fable 5.1 cut cache reads by 75% to $0.25 per million tokens, which works out to roughly 25% lower cost on typical workloads and up to about 45% on highly agentic ones. Its cybersecurity safeguards now produce around 60% fewer interventions per Claude Code session than Fable 5’s, partly because Fable 5.1 is permitted to identify software vulnerabilities without developing exploits for them.

Key Takeaways

  • EFS pairs ZDR-equivalent privacy with automated detection that spans sessions and accounts.
  • Activity data lands in the customer’s own S3, Azure Blob, or Google Cloud Storage bucket.
  • Flags route to the customer; no Anthropic human review is required.
  • Customer-owned storage, customer-managed keys, and automated review are each opt-in.
  • Anthropic charges nothing for EFS; the customer’s cloud provider bills storage and egress.

Check out Technical details here. Also, feel free to follow us on Twitter and don’t forget to join our 150k+ML SubReddit and Subscribe to our Newsletter. Wait! are you on telegram? now you can join us on telegram as well.

原始发布方:MarkTechPost(RSS)

原文时间:2026-09-02 15:38:18 +08:00

阅读原文 · 数据来源:AIHOT

提示

本文用于信息整理与经验分享。第三方订阅、支付及账号服务可能调整,实际规则、价格和可用性请以下单页面及服务方最新说明为准。

咨询 GPT 充值咨询充值