A laptop computer screen displays a glowing neural network diagram, the visual anchor for the day when both OpenAI and Anthropic released frontier AI models only to government-approved partners
Photo via Unsplash

Today in Surveillance:

  • OpenAI limited GPT-5.6 to government-approved partners. The Friday announcement restricted the new flagship Sol, balanced Terra, and lower-cost Luna models to "a small group of trusted partners whose participation has been shared with the government." OpenAI said the arrangement "should not become the long-term default" but said the company would work with the administration to develop a "repeatable process for future model releases" [1].
  • Commerce released Anthropic's Claude Mythos 5 to more than 100 US institutions. Commerce Secretary Howard Lutnick signed a letter Friday afternoon lifting the two-week export-control block on Mythos, calling the model "permitted to access" for a list of "trusted partners" and their foreign national employees. Anthropic "has committed to work with the U.S. government on protocols and standards and releases" [2].
  • California's Assembly sent the 3D printer surveillance bill to the state Senate. AB 2047 passed the Assembly over EFF objections. The bill mandates surveillance software in 3D printers, criminalizes "open source experimentation," and gives Hollywood a commercial carveout that the EFF says "leaves out indie filmmakers, cosplayers, and many other small creators" [3].
  • FIRE's "papers, please" essay kept holding the top of Hacker News through the weekend. Sarah McLaughlin's June 25 essay on age-verification-as-identity-verification remained the highest-trafficked privacy op-ed of the cycle. The structural read: every age check builds an identity database, and the database is the prize [4].
  • Two calendar deadlines land in the next 11 days. Anthropic's Persona Identities verification rollout for top Claude model users takes effect July 8. Colorado's AI Act, which adds neural data and biological data to "sensitive" categories, takes effect June 30 [5][6].

Also today: Anthropic's June 10 letter to the Senate Banking Committee alleging Alibaba-affiliated operators ran 28.8 million exchanges through roughly 25,000 fraudulent accounts to distill Claude stayed near the top of the discussion [7][8]. LastPass's third-party-vendor disclosure from June 23 continued to draw discussion on Hacker News [9]. Mullvad's 4,000-word global state-mass-surveillance primer is now the dossier for the EU and the US surveillance architecture [10]. The WSJ national-correspondent synthesis of the Flock Safety / ALPR cancel wave surfaced Saturday morning, a high-authority pickup of the beat [11]. The Syracuse.com report on federal agents tracking a woman in person to demand she remove an Instagram post about ICE held the chilling-effect slot from June 25 [12].

OpenAI Released GPT-5.6 to Government-Approved Partners and Said It Shouldn't Be the Norm

OpenAI on Friday limited the release of its newest AI models, the GPT-5.6 lineup that includes Sol, Terra, and Luna, to "a small group of trusted partners whose participation has been shared with the government." The restriction was requested by the Trump administration [1].

Sol is the flagship. Terra is the more balanced model for everyday use. Luna is the faster, lower-cost option. The administration restricted all three. OpenAI said Sol is the company's "strongest model yet, with improved agentic capabilities in coding, biology, and cybersecurity." Sol introduces a "max" reasoning effort mode and an "ultra" mode that uses coordinated subagents to solve highly complex tasks. OpenAI also said Sol is "slightly better at coding workflows than Anthropic's Claude Mythos 5, which the Trump administration also effectively banned this month" [1].

The pricing landed: Sol at $5 per million input tokens and $30 per million output tokens, Terra at half that, Luna at $1 and $6. OpenAI said the company has improved prompt caching to make repeated prompts cheaper and more predictable [1].

OpenAI's framing was uncommonly direct. From a Friday blog post quoted by TechCrunch: "We don't believe this kind of government access process should become the long-term default. It keeps the best tools from users, developers, enterprises, cyber defenders, and global partners who need them." OpenAI called the preview a "short-term step" that will put GPT-5.6 on the path to broader availability in the coming weeks, as the company works with the administration to develop a new executive order framework on cybersecurity, as well as a "repeatable process for future model releases" [1].

Dean Ball, a former White House AI adviser and soon-to-be OpenAI employee, told TechCrunch the Trump administration's recent executive order has "created a de facto involuntary licensing regime for frontier AI, leading to heavy-handed restrictions." Ball argued the problem compounds when the government doesn't have clearly defined safety standards: "which could lead to endless launch delays that might not only give a hand to China in the AI race, but also jeopardize the billions of dollars going to AI infrastructure buildouts" [1].

The background is the Fable 5 chain. After Anthropic released its most powerful public model, the administration ordered the company to remove access for any foreign national. Anthropic took the model down entirely. GPT-5.6 lands in the same regulatory window. The pairing of the two stories (Fable 5 export controls, then GPT-5.6 partner gating, then the Anthropic Mythos release) is the working pattern: a frontier model is released, the White House intervenes, the release is restructured [1][2][7].

The Same Day: Commerce Released Anthropic's Mythos 5 to 100-Plus US Institutions

Commerce Secretary Howard Lutnick sent a letter to Anthropic on Friday afternoon lifting the two-week block on Claude Mythos 5. The model is now permitted for release to "more than 100 US institutions, including major companies and government agencies" [2].

Lutnick's letter to Anthropic's chief compute officer Tom Brown: "I have determined that appropriate safeguards are in place to permit certain trusted partners to access the Claude Mythos 5 Model." The letter cites "significant progress" in the "intense, daily talks between the government and the company since the block went into effect" two weeks ago. "Anthropic has committed to work with the U.S. government on protocols and standards and releases" for its models, Lutnick wrote [2].

The letter leaves the export-control regime in place for everyone else. Semafor: "Under the new Anthropic arrangement, 'a license will no longer be required to export, reexport, or in-country transfer (including deemed exports and reexports) the Claude Mythos 5 Model to entities identified in Annex A to this letter and their foreign national employees, or to Anthropic's foreign national employees'" [2].

Commerce Department spokesman Benno Kass framed the speed of the action as the news: "In just two weeks, we have worked diligently to ensure America remains the global leader in AI while safeguarding our security" [2].

The letter is silent on Fable 5, the weaker version of Mythos that was briefly the most powerful AI model widely available to consumers. Semafor reported that "people close to the talks said they are moving toward releasing Fable as well, though that timeline is unclear" [2].

The same Semafor dispatch names the underlying national-security concern. The US government, Semafor reported, "expressed concern that Mythos had been released to partners too closely linked to China, reportedly referring to a South Korean telecommunications provider" [2].

The structural read: the framework for overseeing AI "is being built on the fly, and many users of the powerful tools, from non-US governments and companies to consumers, remain in the dark as to when they will get access to Mythos and Fable. European officials and other US allies have expressed frustration at their new dependence on decisions in Washington" [2]. The export controls, the partner gates, the framework agreements, the daily talks between Anthropic and Commerce, are now the standing regulatory regime for frontier AI in the United States. Semafor called it "the beginnings of a new regulatory regime that gives the US government control over the release of frontier AI models" [2].

California's 3D Printer Surveillance Bill Heads to the State Senate

California's State Assembly has signed off on AB 2047, the 3D printer surveillance bill, and the bill now heads to the state Senate. The EFF's Rory Mir and Cliff Braun published a Friday deeplinks post calling the next stage the moment to "renew our call on legislators to drop this bill as it heads to the state senate, and protect the tools of creators in the state" [3].

The bill's amendments since the EFF first wrote about it are mixed. The silver lining: a carveout for the private resale of devices, which the original bill would have made a criminal offense. The bad news: the rest of the EFF's concerns stand. From the EFF post: "Our core concerns, that this mandate censors lawful speech, builds out corporate surveillance, and criminalizes open source experimentation, have not been remedied" [3].

The open-source carveout is the most dangerous. The current text provides a carveout for the use of an open source tool, but only if it includes compliant censorship software. "The bill burdens open source developers with ambiguous and unrealistic standards for print blocking, and continues to create a chilling effect for open source users" [3].

The performance standard has been downgraded. The original text said algorithms should "effectively prevent a technically skilled user from evading" the technology. The current text says the algorithms should "substantially reduce the likelihood of foreseeable circumvention attempts." EFF: "There is no world where the mandated technology actually works as intended. It will both block lawful use of 3D printers, and allow firearms to be printed by anyone determined to do so" [3].

The "Hollywood gets a cut" carveout is the one EFF says is purely defensive. The bill includes a commercial carveout for the entertainment industry, which "makes extensive use of 3D printers for props and costumes." EFF: "That's fine for big studios, but it leaves out indie filmmakers, cosplayers, and many other small creators. This is simply a defensive edit to limit corporate opposition" [3].

The downstream effect EFF names is corporate IP risk: "Commercial carveouts hands printer manufacturers the ability to sell a more expensive tier of printers, locking-in and up-charging their commercial customers. Some of those customers will choose to buy general retail versions, but that carries its own price: increased risk of IP theft as all printed files are surveilled the same way they are for hobbyists. That means a real risk of businesses leaking any prototypes or new designs to not only the printer manufacturer, but potentially snooping governments and/or the general public through data breaches" [3].

What to do: The EFF action page is eff.org/3DPrintCA. The pitch: "Tell CA Senators to stand with creators" [3]. Related: California's 3D Printer Surveillance Bill: AB 2047 covers the original DOJ-reporting text. The EFF's New York State parallel piece is at Stop New York's Attack on 3D Printing.

FIRE's "Papers, Please" Essay Continued to Anchor the Identity-Verification Beat

Sarah McLaughlin's June 25 essay on age-verification-as-identity-verification remained the highest-trafficked privacy op-ed of the cycle through Friday and Saturday. The Hacker News submission stayed in the top 1,000 of the news aggregator well into the weekend, with sustained comment activity the Daily Brief had been tracking for the prior two days [4].

The structural argument: every age-verification mandate, whether attached to the UK Online Safety Act, US state laws, EU platform rules, or a frontier-lab account policy, is functionally indistinguishable from a general-purpose identity-verification infrastructure. The age check is the entry point. The database is the prize, and it is a standing target for state and private actors alike. McLaughlin: "an ID-verification database linking real-world identity to specific platform activity, and that database is the surveillance prize, not the side effect" [4].

The essay lands in the same week as the Anthropic July 8 Persona Identities rollout (11 days out), the Mullvad 4,000-word State Mass Surveillance primer (June 25), the Cory Doctorow pluralistic.net op-ed (June 23), and the Australian under-16 social media ban. The structural read: the consumer-facing identity-verification infrastructure is the same architecture the post-9/11 surveillance apparatus was built to assemble, only assembled privately and continuously. The essay is the civil-liberties framing that names Australia, the UK, the United States, and the EU in the same piece and traces the policy convergence between them [4].

Calendar: Anthropic on July 8, Colorado on June 30

Two calendar deadlines land in the next 11 days. Both are the editorial signal that the identity-verification-as-surveillance beat has moved from op-ed to enforcement calendar.

July 8, 2026, 11 days out. Anthropic's Persona Identities rollout takes effect for users of the top Claude models. The producer-side version of the same database McLaughlin names: the verification vendor is Persona, the same vendor the EFF exposed in February 2026 running 269 distinct verification checks per user and filing SARs directly with FinCEN and FINTRAC. Our primary brief on the rollout covers the policy text and the EFF Persona exposure. The Day-N addenda (Day-1 through Day-10) are all in the vessel page [5].

June 30, 2026, 3 days out. Colorado's "Concerning Consumer Protections in Interactions with Artificial Intelligence Systems" Act takes effect. The law adds neural data and biological data to "sensitive" categories, and it establishes obligations for developers and deployers of high-risk AI systems. The Colorado AI Act was postponed from February to June 30, 2026. Our Colorado AI Act vessel covers the law and the consumer-rights appeal window. The Mullvad 4,000-word State Mass Surveillance primer names Chat Control as the most consequential current EU surveillance threat, the EU-side parallel the Colorado law extends [6][10].

Also Carrying: Alibaba, LastPass, Mullvad, Flock, Syracuse

Five carry-forwards held near the top of the discussion cycle over the past 72 hours.

Anthropic's Alibaba accusation. The June 10 letter to the Senate Banking Committee, reported by Reuters, CNBC, and Bloomberg on June 24, alleging that Alibaba-affiliated operators ran 28.8 million exchanges through roughly 25,000 fraudulent accounts between April 22 and June 5 to distill Claude. A proposed amendment to must-pass defense legislation would let the government sanction or blacklist foreign firms found to be improperly extracting US model outputs. Our primary brief is at Anthropic Alleges Alibaba-Affiliated Operators Ran 28.8 Million Exchanges to Distill Claude [7][8].

LastPass third-party-vendor breach. The June 23 disclosure, reported by 9to5Mac on June 24, is the second public LastPass disclosure event of 2026. The data was reached through a third-party vendor, not through LastPass's own password-vault infrastructure. The third-party access path is the same one the Wynn Resorts, Woflow, and Tata Electronics supply-chain disclosures of 2026 have surfaced. Our daily-brief anchor is at Daily Surveillance Briefing, June 26, 2026 [9].

Mullvad 4,000-word State Mass Surveillance primer. The Gothenburg-based VPN provider's June 25 entry in the "Why Privacy Matters" series walked through surveillance architectures in the United States (FISA 702, PRISM, XKeyscore, the NSA Utah data center, the Verizon metadata order, the Gus Hunt "collect everything and hang onto it forever" admission, the post-Snowden apparatus), the European Union (Chat Control, the GDPR/AI Act/DSA/DMA framework, the Europol data-retention fight, the UK Online Safety Bill, Pegasus spyware against EU journalists), and authoritarian states (China's Great Firewall and Police Cloud, Russia's SORM, Iran's SIAM). Our primary vessel is at Mullvad's 4,000-Word Primer on Global Mass Surveillance [10].

WSJ national-correspondent synthesis of the Flock Safety / ALPR cancel wave. The Wall Street Journal published a national-correspondent synthesis of the Deflock resistance, the 30+ city cancellations, the Oshkosh heat-map story, the Ring Flock partnership cancellation, and the Colorado / Washington / Oregon / Minnesota state legislative responses on Friday. The beat is the SOS tracker corpus on automatic license plate readers and the police department surveillance backlash. Our Deflock master piece is at Deflock and the 90,000-Camera Revolt [11].

Syracuse.com on federal agents tracking a woman in person to demand she remove an Instagram post about ICE. The June 25 report sits as the First Amendment retaliation and chilling-effect anchor of the cycle. The structural reading: public speech about state enforcement is now an enforcement target in its own right. The pattern is parallel to the Danish activist raid thread from earlier in June and the DHS-monitoring-of-Reddit-anti-ICE-protest-subreddit thread from earlier this month. Our cycle anchor is at Daily Surveillance Briefing, June 26, 2026 [12].

What to Watch

  • Tuesday June 30. Colorado's AI Act takes effect. The neural-data and biological-data "sensitive" categories and the high-risk-AI developer and deployer obligations start being enforced. Watch for the first enforcement-action press releases from the Colorado Department of Law. Our Colorado AI Act vessel is the reference [6].
  • Wednesday July 8. Anthropic's Persona Identities rollout. The first wave of Claude users who fail verification will be locked out. The Persona data-retention and law-enforcement-access questions become concrete on that day. The McLaughlin essay is the consumer-protection framing of why this rollout matters. Our Anthropic ID verification vessel is the reference [5].
  • The CA state Senate AB 2047 vote. California Senate Appropriations is the next committee. EFF is asking for calls and emails to state senators to oppose the bill in its current form. The action page is eff.org/3DPrintCA [3].
  • EU AI Act high-risk deadline. August 2, 2026, 36 days out. The biometric-inference rules, the high-risk-AI compliance obligations, and the conformity-assessment requirements phase in. The Mullvad primer's Chat Control section is the EU-side anchor [10].
  • The next Anthropic-OpenAI framework announcement. OpenAI said the company is working with the administration on a "repeatable process for future model releases." The Commerce letter to Anthropic names a similar protocol-and-standards workstream. The first concrete policy output of either workstream is the next signal the partner-gating regime is becoming a standing licensing regime [1][2].
  • The Syracuse ICE-Instagram encounter follow-up. Syracuse.com framed the encounter as a First Amendment retaliation and chilling-effect incident. The next signal is whether any of the federal agents involved are named in court filings, in DHS press releases, or in any subsequent Syracuse.com reporting. The next signal is also whether a similar encounter surfaces from a different city [12].

Sources

  1. TechCrunch, Rebecca Bellan: OpenAI limits GPT-5.6 rollout after government request, says restrictions shouldn't be the norm, June 26, 2026, 11:32 AM PDT. https://techcrunch.com/2026/06/26/openai-limits-gpt-5-6-rollout-after-government-request-says-restrictions-shouldnt-be-the-norm/
  2. Semafor, Reuters/Jessica Koscielniak: US releases powerful Anthropic model Mythos to some US companies, June 27, 2026. https://www.semafor.com/article/06/27/2026/us-releases-powerful-anthropic-model-mythos-to-some-us-companies
  3. Electronic Frontier Foundation Deeplinks, Rory Mir and Cliff Braun: We Can Still Stop California's 3D Printer Surveillance Scheme, June 26, 2026. https://www.eff.org/deeplinks/2026/06/we-can-still-stop-californias-3d-printer-surveillance-scheme
  4. Foundation for Individual Rights and Expression, Sarah McLaughlin: The "papers, please" era of the internet will decimate your privacy, Expression, International / Free Speech Dispatch, June 25, 2026. https://expression.fire.org/p/the-papers-please-era-of-the-internet
  5. State of Surveillance: Anthropic to Require ID Verification for Certain Capabilities July 8, the rollout vessel on the Persona Identities rollout. /news/anthropic-id-verification-consumer-capabilities-july-8-2026/
  6. State of Surveillance: Colorado AI Act and the Consumer Rights Appeal, the June 2026 vessel on the June 30, 2026 effective date and the high-risk AI obligations. /news/colorado-ai-act-consumer-rights-appeal-2026/
  7. Reuters, Anthropic Senate Banking Committee letter alleging Alibaba-affiliated operators ran 28.8 million exchanges through 25,000 fraudulent accounts to distill Claude, June 24, 2026. https://www.reuters.com/world/china/anthropic-says-alibaba-distilled-claude/
  8. State of Surveillance: Anthropic Alleges Alibaba-Affiliated Operators Ran 28.8 Million Exchanges to Distill Claude, the June 24, 2026 primary brief. /news/anthropic-alibaba-claude-distillation-june-24-2026/
  9. 9to5Mac, LastPass notifies users of yet another data breach, June 23, 2026 (third-party-vendor disclosure). https://9to5mac.com/2026/06/23/lastpass-notifies-users-of-yet-another-data-breach/
  10. Mullvad VPN AB: Democratic and authoritarian countries are competing to see which of them can carry out mass surveillance most and best (worst), the State Mass Surveillance entry in the Why Privacy Matters series, published June 25, 2026. https://mullvad.net/en/why-privacy-matters/state-mass-surveillance
  11. Wall Street Journal: The Nationwide Backlash Against Cameras Watching Your Car, June 26, 2026. https://www.wsj.com/us-news/the-nationwide-backlash-against-cameras-watching-your-car-401a656a
  12. Syracuse.com, Federal agents track down Syracuse woman in person and demand she remove Instagram post about ICE, June 25, 2026. https://www.syracuse.com/news/2026/06/federal-agents-track-down-syracuse-woman-in-person-demand-remove-instagram-post-ice.html