AI & ML

Anthropic Is Calling for an Open-Weights Ban, and the “Open” in Their Own Marketing Is the Punchline

// 5 min read
Bala Kumar Senior Software Engineer

Dario says he does not oppose open weights. He just keeps proposing rules that would functionally ban them. The contradiction is no longer a slip, it is a strategy.

I have been staring at two pieces of news from the last 48 hours that, taken together, tell one ugly story. The first is a Reddit thread on r/LocalLLaMA surfacing an Anthropic position paper that proposes mandatory requirements for releasing model weights. The second is Dario Amodei's TechCrunch interview clarifying that he does not oppose open weights, only the Chinese ones. Both can be true. That is the problem.

The "requirements" that are not requirements

The leaked policy language does not say "ban open weights." It says "any frontier model above capability threshold X must meet safety requirements Y and Z before release." It is the classic regulatory move: do not outlaw the thing, outlaw the conditions under which the thing can exist. The requirements in question are the kind of red-team coverage, interpretability work, and deployment monitoring that no independent lab, no academic group, and definitely no 22-year-old with two H100s in a Berlin co-lo can ever satisfy. The threshold is the trap door, and the requirements are the hinges.

If you build a strong open-weights model in 2026, you can release it. You just need to demonstrate the same safety maturity as a frontier lab with a thousand-person trust-and-safety org. There is no path to compliance that does not involve becoming the thing the regulation is designed to protect against. That is not a safety regime. That is a moat.

What Dario actually said

Dario's clarification in the TechCrunch piece is worth quoting in full, because the wording is doing the work. He does not oppose open weights in principle. He opposes authoritarian governments having open weights. The carve-out is the whole position. It is the same logic Microsoft used in the 1990s to call Netscape a threat, the same logic Apple used to call sideloading a security risk, and it is the same logic every incumbent reaches for when the technology has democratized and the margin has not.

What Anthropic saysWhat it actually means
"We support open weights"We do not support your open weights
"Safety requirements must scale with capability"Capability is easy to assert, requirements are not
"We fear authoritarian deployment"Authoritarian = anyone not in our coalition
"This protects the open-weights ecosystem"By ensuring it is small enough to ignore

The "open" Claude problem

And then there is the marketing. Anthropic has spent eighteen months repositioning Claude as the "open" frontier model. Claude 4.5 Sonnet shipped with a public system card, public evals, public interpretability research. None of that is open weights. None of it lets you run the model without paying Anthropic. None of it lets you fine-tune it on your own data without a contract. It is the openness of process, not the openness of artifacts, and the brand has been quietly harvesting the second while selling the first.

This is the same playbook IBM ran with Linux in the 2000s. Endorse the open movement publicly, profit from the closed products privately, and use the regulatory environment to make sure the open version can never compete on cost. Anthropic does not need to win the open-weights debate. They just need to make sure the debate is about whether open weights should exist, not about whether their own closed offering is the right default.

The local angle nobody is talking about

The thing that made me actually write this post is what this does to the people running local models. The Qwen team at Alibaba just shipped a 1M-context MoE for pocket change. The Llama team at Meta is still releasing open weights against the wishes of their own safety board. DeepSeek, Mistral, the Kimi folks, all of them are in the same regulatory crosshairs that Anthropic is now proposing. If those rules pass anywhere consequential, every open-weights release above the threshold either gets locked behind a corporate safety org or it does not happen. The "open" in "open-source AI" becomes a historical artifact, like "open" in "open computing" after the AUX wars.

The people who pay the price are not OpenAI. They are not Anthropic. They are the grad students, the indie devs, the small companies building on top of local models because they cannot afford an API bill. The same people who built the modern web on Apache and Linux. The Anthropic position is, structurally, a position against them.

So what do you actually do with this

If you care about open weights, the only thing that works is to keep shipping. Use local models in production. Publish your fine-tunes. File the public comments when regulators open a consultation. The open-weights community has one weapon and it is the same weapon open-source has always had: being more useful than the alternative. Anthropic is not wrong that frontier model safety is hard. They are wrong that the answer is to make it impossible for anyone who is not a frontier lab to try. The way you beat a moat is not by arguing the moat should not exist. It is by walking around it.

I will keep covering every leak, every consultation, every suspiciously timed position paper. If you want me to flag the next one, you know where to find me.

Source: r/LocalLLaMA, TechCrunch, 2026-07-28