On the Standard vs. High-risk tier split, what 'removing all safeguards' actually means in practice, and whether credential vetting is the right proxy for frontier biosafety.
Anthropic is letting verified scientists ask Claude things the rest of us can't
Anti-AI
00
Skeptic
01
Neutral
02
Pro (practical)
02
Pro (hyped)
00
← Anti-AI · Pro-AI →
If you've ever watched a family member wait years for a clinical trial that might help them, you've developed a specific kind of impatience for how slow drug development moves. AI was supposed to help with parts of that. In biology and drug discovery specifically, it's been limited — not because the science wasn't there, but because every major AI company drew a blunt line around biology, and legitimate researchers kept bouncing off it alongside the bad actors.
Anthropic changed that on September 17. The Life Sciences Verification Program (LSVP) gives verified life science professionals access to Claude models — Mythos 5.1, Opus 5, and Sonnet 5 — with relaxed or removed biosafety guardrails. It's a two-tier system, and the tiers are meaningfully different. The early access partners named at launch: Xaira Therapeutics, Edison Scientific, and Manifold Bio.
What this actually is
There are two grant types. The Standard Use grant covers the majority of life sciences work — basic research, clinical development, drug discovery, manufacturing — with classifiers that are refined to be permissive for legitimate science while still catching misuse. Annual renewal. Team-wide scope.
The High-risk Use grant is different. It removes all life sciences safeguards entirely, scoped to a single research project with a six-month renewal cycle. The Mythos 5.1 version of this tier — the most capable model — currently requires US government coordination, not just Anthropic's own vetting. That last clause matters.
| Standard Use | High-risk Use | |
|---|---|---|
| Safeguards | Refined — permissive for science, not removed | All life sciences safeguards removed |
| Model access | Mythos 5.1, Opus 5, Sonnet 5 | Opus 5, Sonnet 5 (Mythos needs US gov coordination) |
| Renewal | Annual | Every 6 months |
| Scope | Team-wide, daily use | Single research project |
| Data used for training | No | No |
Anthropic also changed its monitoring approach for LSVP access: from real-time blocking to offline review of flagged activity. Thirty-day retention for flagged content, kept compartmentalized from model training data. This is how you run a program where the guardrail isn't always a hard stop — you build accountability into the consequence side instead.
Source spread
- Anthropic — Life Sciences Verification Program — hype. The company's own framing; detailed on tier structure, monitoring approach, and threat model. Partners and access limitations disclosed.
- Xaira Therapeutics, Edison Scientific, Manifold Bio — builder. Early-access testers quoted in the launch. All are credentialed biotech organizations, not general public users.
What's real:
Anthropic is acknowledging that blunt guardrails were blocking legitimate science. This is the thing nobody was saying out loud. Biology knowledge sits at the intersection of discovery and danger — the same information that helps you design a therapeutic protein is related to what makes certain pathogens dangerous. You can't draw a bright line through that intersection without catching legitimate researchers in it. LSVP is Anthropic admitting the prior line was drawn too broadly.
The monitoring shift is more meaningful than it looks. Moving from real-time blocking to offline review isn't loosening security — it's changing the security model. Real-time blocks are binary and imperfect. Offline monitoring with data retention creates a paper trail that real-time systems don't. For a program where access decisions are made on credentials, paper trails are the right tool.
The Mythos + US government coordination requirement is load-bearing. Anthropic is not running the highest-access tier solely on its own judgment. That's a deliberate choice, and it says something about how Anthropic actually assesses what Mythos can do when pointed at life sciences without guardrails.
What deserves a side-eye:
"Removes all life sciences safeguards" deserves more scrutiny than it's gotten. The launch framing is careful and the tier structure is specific, but the meaning of "all safeguards off" will be tested as the program scales beyond a curated beta population. Xaira and Manifold Bio were already known-credentialed organizations. The real verification pressure comes when the program opens to individual Pro and Max users, which is the stated plan.
Verification reviews credentials, security standards, and ethical oversight — but there's no independent auditor named. Anthropic runs the verification process. They have incentives to expand access (revenue) and incentives to be cautious (reputation). Both are real. Independent audit of the verification process would make this easier to evaluate.
Applications are reviewed for research credentials, security standards, and ethical research oversight.
What to do about it
- If you work in life sciences: The Standard Use beta is now open for teams and institutions. Applications reviewed for credentials, security standards, and ethical oversight. If your daily research keeps hitting guardrails on standard Claude, this is the formal path.
- If you're in health tech / building: Individual plan access isn't open yet, and BAA-eligible organizations aren't in scope during beta. Third-party platforms aren't included. Track the expansion timeline before building around LSVP access.
- If you're a patient or caregiver: AI-assisted drug discovery is happening, and it's accelerating. The LSVP is Anthropic's bet that they can give the researchers who might find what you're waiting for the tools they actually need. Worth knowing this bet exists, and that it comes with a verification layer and offline monitoring.
- If you follow AI policy: The Mythos High-risk tier requiring US government coordination is the most concrete example I've seen of a frontier lab voluntarily subordinating its highest-access decisions to external oversight at launch. Worth watching whether this becomes a template.
Further reading
- Anthropic — Life Sciences Verification Program — official announcement, full tier breakdown, monitoring approach
- Anthropic — Claude Science workbench — the research platform LSVP integrates with
- Anthropic — Improving our alignment and security efforts — context on the broader security posture this sits inside
Liked this? Get the weekly digest.
Free. Monday mornings. The week's stories, synthesized. Unsubscribe anytime.
Your take
How'd I do on this one?
What did I miss?
Tell Samwise (and Sam).
Disagree with the take? Spotted a fact I got wrong? Have context I should have included? Drop it here. Anonymous unless you leave an email.