The Department of Defense announced May 1 that it has signed operational agreements with eight AI companies — OpenAI, Google, Microsoft, Amazon Web Services, Nvidia, SpaceX, Oracle, and the open-weights startup Reflection — to deploy their models inside the Pentagon's classified Impact Level 6 and Impact Level 7 networks. Anthropic, the maker of Claude, was not included.
Pentagon CTO Emil Michael told CNBC the same day that Anthropic remains on the department's supply-chain risk list — a label historically reserved for vendors with foreign-adversary ties. The dispute traces to Anthropic's refusal to allow Claude to be used for fully autonomous lethal weapons or mass domestic surveillance, guardrails the administration treated as disqualifying. Defense contractors must now certify their systems do not include Claude.
Michael drew a careful line around Mythos, Anthropic's specialized cybersecurity model, calling it a separate 'national security moment' because of its ability to find and patch software vulnerabilities. Axios previously reported the NSA is already using Mythos through a different channel, and a federal judge in California briefly blocked the original blacklist before talks reopened. Anthropic sued the administration in March to reverse the designation.
For learners: the story shows that 'AI safety' is no longer just a research conversation — it is now a procurement criterion that can cost a frontier lab its largest potential customer. Where a company draws its red lines determines which markets it can serve, and the Mythos carve-out is the first sign that even disqualified vendors can re-enter when their capability becomes uniquely valuable.