Pentagon Threatens to Blacklist Anthropic Over Military AI Terms

Defense Secretary Pete Hegseth has summoned Anthropic CEO Dario Amodei to the Pentagon on Tuesday, February 24 โ€” and the Anthropic Pentagon military AI standoff that has been building for seven weeks is about to reach its breaking point. A senior Defense official told Axios on February 23: “This is not a friendly meeting. This is a sh*t-or-get-off-the-pot meeting.” The Pentagon is threatening to designate Anthropic โ€” a $380 billion American AI company โ€” a supply chain risk, the same label it normally reserves for Huawei and other foreign adversaries.

But here is the fact the headlines keep missing: Anthropic is already the most militarily integrated AI company in America. Claude is the only frontier AI model running on classified military networks. It was reportedly used in support of the January 3 special operations raid that captured Venezuelan President Nicolas Maduro. The dispute is not about whether Anthropic does military work. It is about whether Anthropic gets to ask how its technology is used.

The ultimatum: Anthropic Pentagon military AI showdown

Hegseth did not invite Amodei. He summoned him. The February 24 meeting will present Anthropic’s CEO with a stark binary: agree to allow Claude for “all lawful purposes” across the military, or face a formal supply chain risk designation that would ripple across the entire defense industrial base.

That label is a regulatory tool designed for foreign adversaries โ€” Chinese telecom firms, sanctioned chipmakers. Applying it to a domestic company valued at $380 billion would be unprecedented. If the designation goes through, every Pentagon contractor would be required to certify it does not use Claude or any Anthropic model in its workflows. Given that Anthropic claims eight of the ten largest U.S. companies use Claude, the compliance cascade would extend far beyond the military.

The $200 million contract Anthropic signed in July 2025 โ€” a two-year Prototype Other Transaction Agreement with the Pentagon’s Chief Digital and Artificial Intelligence Office โ€” is now frozen. An Anthropic spokesperson told Axios the company is “having productive conversations, in good faith.” Defense officials say negotiations have shown no progress.

The safety company on classified networks: Anthropic’s military paradox

As of February 2026, Claude is the only frontier AI model deployed on the military’s fully classified networks, accessible through Palantir’s AI Platform and Amazon’s Top Secret Cloud โ€” a partnership dating to late 2024. The Pentagon’s unclassified GenAI.mil platform tells a different story. Launched in December 2025, it already has over 1.2 million unique users across all military branches. Google’s Gemini, xAI’s Grok, and OpenAI’s ChatGPT all run on GenAI.mil. Anthropic โ€” the only company on classified systems โ€” is absent from the unclassified platform entirely.

The paradox is acute. Anthropic has deeper military access than OpenAI, Google, or xAI combined, but imposes the tightest restrictions on what the military can do with its models. As Fox News national security correspondent Jennifer Griffin noted: “Claude is the only AI model available in the military’s classified systems, and the most capable model for sensitive defense and intelligence work. The Pentagon doesn’t want to lose it.”

That mutual dependence is exactly what makes the February 24 meeting so volatile. The Pentagon cannot easily replace Claude on classified systems, and Anthropic cannot afford to lose its most sensitive government relationship. As we detailed in our earlier coverage of Claude’s military deployment, the company that built its brand on safety also built the deepest military AI integration in America.

Illustration: Anthropic Pentagon military AI standoff

How the Maduro raid turned a contract dispute into a crisis

On January 3, 2026, U.S. special operations forces captured Venezuelan President Nicolas Maduro and his wife in a raid that brought them to the U.S. to face narcotics charges. Claude was reportedly used in support of the operation, deployed through the Palantir partnership on classified networks. People were shot during the raid. This was not a planning exercise.

When Axios and Fox News reported Claude’s involvement on February 13, a senior Anthropic executive contacted a senior Palantir executive to ask whether Claude had been used. That question detonated the relationship. The Palantir executive reported the exchange to the Pentagon because, as a senior official told Axios, “it was raised in such a way to imply that they might disapprove of their software being used, because obviously there was kinetic fire during that raid, people were shot.”

The crisis was triggered not by Anthropic refusing an order, but by Anthropic asking a question. Within ten days, the Pentagon moved from a formal review (February 16) to the blacklist threat (February 16) to summoning the CEO (February 23). As @aakashgupta observed on X: “Anthropic is now getting punished by the Pentagon for asking whether Claude was used in the Maduro raid.”

Two red lines, one Pentagon demand โ€” what each side actually wants

The Pentagon’s position is straightforward: all four AI labs โ€” Anthropic, OpenAI, Google, and xAI โ€” must allow their models for “all lawful purposes” without vendor-imposed restrictions. Pentagon CTO Emil Michael framed this as a governance question: “What we’re not going to do is let any one company dictate a new set of policies above and beyond what Congress has passed. That is not democratic.”

Anthropic maintains two non-negotiable conditions: Claude cannot be used for mass surveillance of Americans, and Claude cannot power fully autonomous weapons that fire without meaningful human involvement. CEO Dario Amodei laid out the philosophical framework in his essay “The Adolescence of Technology,” published in January 2026: “We should arm democracies with AI, but we should do so carefully and within limits.” He called domestic mass surveillance a “bright red line.”

The other three labs have shown far more flexibility. OpenAI and Google have agreed to “all lawful purposes” language for unclassified work and continue negotiating classified access. xAI has reportedly agreed at all classification levels. Anthropic stands alone. Michael drew a pointed comparison to Google’s 2018 Project Maven withdrawal โ€” where employee revolt killed the contract โ€” and predicted Anthropic will follow the same reversal arc: “I believe and hope that they will cross the Rubicon and say, ‘This is common sense.'”

The comparison is instructive but incomplete. Google walked away from Project Maven voluntarily. Anthropic is not walking away โ€” it is negotiating specific limits on two categories of use. And the public escalation suggests the Pentagon’s real audience is not just Amodei. As we have argued before, Anthropic’s safety positioning has always served a commercial purpose. Emil Michael’s “not democratic” framing is addressed at every AI company CEO watching: accept our terms, or face the same treatment.

The $380 billion brand problem: why both outcomes hurt

The $200 million contract represents roughly 1.4% of Anthropic’s $14 billion annualized revenue. Financially, it is trivial. The supply chain risk designation is not. Anthropic closed its $30 billion Series G at a $380 billion valuation on February 12 โ€” one day before the Maduro raid revelations broke. A foreign-adversary label applied to one of the most valuable private companies in history would force a wholesale reassessment of that valuation.

Amodei faces a lose-lose. If he capitulates, the safety-first positioning that differentiates Anthropic from OpenAI and justifies its premium collapses. Enterprise buyers chose Claude partly because of Anthropic’s safety commitments โ€” dropping those commitments forces every procurement team to ask what exactly they are paying for. If he holds and gets blacklisted, commercial relationships across the defense industrial base take cascading damage as contractors strip Claude from workflows to maintain Pentagon compliance.

The timing is brutal. Anthropic’s $380 billion valuation was sealed with investors who priced in both the safety brand and the government relationships. The February 24 meeting threatens to prove those two assets are mutually exclusive.

What February 24 decides โ€” and what it cannot

If Amodei holds his two red lines and the designation goes through, it would mark the first time the U.S. government has applied a foreign-adversary label to a domestic technology company it simultaneously depends on for classified operations. Nobody has mapped out what happens to the classified systems that currently run only on Claude.

But the Pentagon’s real audience is not Amodei. It is every AI company CEO watching. When your technology becomes infrastructure for the world’s most powerful military, the question of who sets the guardrails no longer belongs to you. Hegseth is establishing that principle on February 24 regardless of the outcome.

By tomorrow afternoon, we will know whether Anthropic modified its usage terms, held the line, or walked out with a blacklist designation formally in motion. NBC News reports the tensions have already reached a boiling point. The harder question is the one no one in that room can answer: if the company that built the deepest military AI integration in America gets labeled a national security threat, what does that tell the next company deciding whether to build for the Pentagon at all?

Get the Daily Pulse

Sharp analysis on what's actually moving in AI. No hype, no filler, no weekly digest.

Get the Daily Pulse

Sharp AI analysis, daily. Two minutes, every morning.

Get the Daily PulseTwo minutes, every morning