Why are Palantir, Nvidia and Booz Allen restricting their own AI use?

Palantir, Nvidia and Booz Allen Hamilton have restricted staff from using Anthropic's AI models on sensitive work because of new data-retention terms introduced in June 2026.

Three companies that sell, build or run on AI just told their own people to be careful with it. According to a report from The Information, carried by Reuters and Yahoo Finance, Palantir has pushed Anthropic for an "irrevocable zero-data-retention commitment" before rolling its models out more broadly inside Palantir's software. Nvidia keeps Anthropic's models away from sensitive internal work and leans on its own Nemotron models instead. Booz Allen Hamilton has told staff not to run Anthropic's commercial model on cybersecurity projects that touch client data.

None of these companies are new to AI. Palantir builds data platforms for governments and defense contractors. Nvidia makes the chips the entire industry runs on. Booz Allen does classified consulting work for federal agencies. If anyone had reason to trust a frontier AI lab's data handling, it would be them. They don't, not fully, and that's the story.

What did Anthropic actually change in June 2026?

Anthropic changed its data policy in June 2026, letting the company keep customer usage logs for 30 days by default.

In June, Anthropic updated its data policy. Under the new terms, Anthropic can keep a customer's usage logs for 30 days by default. If its safety systems flag an interaction, that window stretches to two years. Anthropic still doesn't train its models on customer data by default, and neither does OpenAI. Both collect some anonymized metadata for product improvement unless a customer opts out. But retention and training are two different promises, and the retention promise just got longer.

That distinction matters more than it sounds. A vendor can honestly say "we don't train on your data" while also keeping a two-year log of every prompt your team sent it, tied to your account, sitting on their servers. For a defense contractor or a chipmaker with trade secrets, that's not a hypothetical. It's the exact thing their legal teams get paid to worry about.

Is "zero data retention" the guarantee it sounds like?

Zero data retention is not a single setting. It is a negotiated contract term whose coverage depends on the model, surface and feature involved.

Here's the part vendors don't put on the pricing page. Zero data retention isn't a switch you flip. It's a contract term, and contract terms have scope. Coverage depends on which model you called, which surface you called it through and which specific feature you used. A ZDR agreement that covers the API often doesn't cover the chat interface your employees actually open every day. Some endpoints are excluded outright. Getting the term at all usually requires a qualifying use case and a sales team's sign-off, not a checkbox in your admin settings.

QuestionWhy it matters
Which model does this ZDR term cover?A retention exception for one model version doesn't carry over automatically when the vendor upgrades.
Which surface: API, chat app or embedded tool?Your team likely uses the chat interface, not the raw API. Confirm coverage matches actual usage.
What counts as "flagged" and extends retention?Anthropic's two-year window applies when its safety systems flag something. Ask what triggers that.
Who can verify the policy besides the vendor?A written promise is not an audit. Ask if there's a third-party attestation or contractual audit right.

Picture an IT manager at a 200-person engineering firm renewing an AI subscription this quarter. The vendor's sales page says "zero data retention available." The manager assumes that covers everything the team does in the product. It doesn't. It covers one API tier the team never touches, because everyone works through the built-in chat panel instead. The firm finds this out during a security review, not before signing. That gap is the whole story in miniature.