Leadership4 publishersIndependently confirmed3 min readPublished Updated
Anthropic watermarks all Claude text, and the disclosure problem lands on employers
The EU transparency code about 200 companies signed now has its first live implementation, and experts say it can mark text an employee wrote and Claude merely edited.
The Board Room · Leadership desk
Drafted by a language model from the sources cited here and checked against its claim ledger before publication. How we use AISend a correction

What happened
- The EU Code of Practice on Transparency of AI-Generated Content took effect this month, signed in the abstract by about 200 companies including Meta, Microsoft, OpenAI and Anthropic.
- Anthropic moved first on implementation, applying a global opt-out watermark at model level across every Claude surface.
- Anthropic says the watermark exists to comply with the EU AI Act and went worldwide because it has no way to apply it region by region.
- A Business Insider review of the law, with AI and policy experts, concluded the approach may reach further than the EU actually requires.
- Some Claude users said they cancelled subscriptions, and developers began shipping tools that claim to strip the watermark.
Compiled by The Board RoomSomething wrong?How this is made
Why it matters
- decision Article 50(2) exempts standard editing that does not substantially change a user's words or meaning, so somebody inside the firm now has to decide what counts as substantial, and put it in writing...
- exposure Deepset's Milos Rusic told Business Insider a provenance signal can attach to Claude's word choices even where it did not originate the idea or the document, which drags staff-authored client work...
- precedent On the Forbes column's read, one vendor's implementation becomes the benchmark the rest are measured against, which means the working disclosure standard is being set by product decisions rather...
The mechanism decides how much of this a company has to care about. Anthropic's watermark steers Claude's word choices into a detectable pattern, and it is built to stay detectable through copying and pasting, appearing in translations, summaries and more extensively edited text [6][12]. The signal therefore tracks how many of the finished words the model picked. An Anthropic spokesperson told Business Insider that lighter editing is less likely to trigger it because "there's very little (if anything) for the watermark to attach to" [15]. That is a description, not a threshold, and it cannot be written into a staff handbook. Caroline De Cock of the Lisbon Council put the gap more bluntly to the same publication: Article 50 "called for a scalpel to catch deepfakes and mass synthetic generation, but Anthropic is using a sledgehammer that hits simple proofreading and translation" [13].
De Cock's second observation is the one for the operating committee. The approach can reduce Anthropic's own regulatory risk by shifting the burden of filtering and interpreting those labels onto downstream users and external platforms [17]. Downstream means the firm that sends the deliverable.
The vendor estate makes that harder before it gets easier. Of the four rivals Business Insider approached, one, Google, says it already watermarks text worldwide using SynthID [19][24]. OpenAI pointed to an FAQ saying it plans to extend labels to text but named no date [20]. Meta pointed to a July blog post and has so far worked on images, with no text plan disclosed [21]. xAI did not respond, having recently tagged a White House press secretary's departure message on X as AI-generated, after which the tag disappeared [22]. The EU rules apply to new models launched in Europe from 2 August, with older models given until December [9]: about four months [23] in which one client memo assembled from three tools can carry three provenance regimes and a single author line.
None of this depends on detection working well today. Governments and other qualified parties may already hold a detector, and how well such tools perform is untested [26]. The exposure is a document drafted this quarter and questioned in two years, against a policy the firm never wrote, on the ownership question the Forbes column raises without answering: an employee writes the memo, AI edits it, whose work is it [2].
Deepset chief executive Milos Rusic told Business Insider that these systems "can be useful evidence" but that he would be cautious about turning them into "an automated judgment about authorship or misconduct" [8]. Someone will make that judgment anyway, in procurement review or an internal inquiry, and it was employers who encouraged staff to use the tools in the first place [7]. Since providers can change watermarking methods at will [10], a policy pinned to what a detector can currently find has a short life. A disclosure line in the engagement letter does not.
What to watch
- Whether Anthropic narrows the watermark's reach, having said it will continue to evaluate different approaches.
- The December grace-period deadline for older models, and whether OpenAI, Meta and xAI ship text watermarking by then.