← 返回 Siami 首頁

Anthropic 對 Claude 實施身分驗證 護照、自拍、Persona 全都要

▲ 473 💬 430
Anthropic 對 Claude 實施身分驗證 護照、自拍、Persona 全都要

Anthropic 於 2026 年 6 月正式對 Claude 消費級用戶(Free、Pro、Max)實施「身份驗證」機制。用戶在存取「特定功能」時會被要求上傳政府核發的實體證件(護照、駕照或身分證),並透過視訊自拍完成身分核對。整個流程由第三方服務商 Persona Identities 提供技術支援,Anthropic 自稱為「資料控管者」(data controller)。

公告指出,這項政策是為「預防濫用、執行使用規範、遵守法律義務」。新規於 2026 年 7 月 8 日 正式生效,但實際驗證流程從今年 4 月就已經悄悄上線,現在只是擴大範圍並更新隱私權政策條文。


觸發條件與流程

驗證並非對所有用戶全面強制,而是「特定場景」才會跳出提示:

  • 存取進階或敏感功能時
  • 平台例行完整性檢查
  • 其他安全與合規要求

被要求驗證時,用戶需準備:

  • 一份政府核發的實體證件(不接受影本、截圖、手機數位證件、學生證、員工證)
  • 一支手機或附有攝影機的電腦(用於即時自拍)
  • 約 5 分鐘的時間

如果驗證失敗,多數情況下可以重試;但若帳號因為違反使用條款或來自不支援地區而被封鎖,則必須透過申訴流程(Appeal Form)處理。值得注意的是,Anthropic 對「為什麼驗證後帳號會被封」的問題給出四類原因:反覆違反使用政策、來自不支援地區、違反服務條款、未滿 18 歲使用。


Persona 是誰?為什麼社群在意

Persona Identities 是一家由 Peter Thiel 投資的第三方身分驗證公司,服務多家科技平台(OpenAI、LinkedIn 等都用它)。然而這家公司過去發生過資料外洩事件,Discord 因此在 2024 年底決定棄用 Persona,引發社群疑慮。

「選擇 Persona 是經過隱私控管、安全防護、技術強度三方面綜合評估。」—— Anthropic Help Center 原文

社群不滿主要集中在兩點:

  1. Thiel 的政治光譜:Peter Thiel 與 Palantir 跟美國國安體系的關聯讓敏感用戶警覺
  2. Persona 過往紀錄:Discord 棄用事件尚未遠離集體記憶

Anthropic 的三項「不做」保證

為安撫用戶,Anthropic 在公告中明確列出三項「我們不會做的事」:

  • 不會用驗證資料訓練模型:資料只用於身分確認
  • 不會蒐集超過必要的資訊:只取通過驗證所需的最少欄位
  • 不會與第三方分享:資料僅在 Anthropic、Persona 之間流動,除非法律強制要求(court order)

技術層面,所有資料在傳輸與儲存過程中皆加密。Anthropic 表示會透過 Persona 平台調取驗證紀錄(例如審核申訴),但不會自行複製或儲存證件影像。驗證資料的保留期限由 Anthropic 設定,並符合 Persona 的法定刪除義務。


為什麼這件事重要

Anthropic 在 2026 年初因為拒絕美國國防部一份涉及「國內監控與自主武器」的合約,被視為 AI 業界的「倫理派」代表。如今卻對消費級用戶實施 KYC(Know Your Customer),對比當初的立場顯得格外諷刺。

這不只是「又多一個上傳證件的網站」那麼簡單。三個層次的意義:

  1. 平台規則取代用戶協議:當 Anthropic 可以隨時要求驗證,過去「按使用條款辦事」的契約精神悄悄轉變為「隨時可被切斷服務的特權」。被驗證拒絕的用戶無法再建立新帳號繞過,因為 Persona 會綁定生物特徵。
  2. AI 中立性議題浮上檯面:過去網路中立性(Net Neutrality)爭論 ISP 是否應該審查用戶流量;現在 AI 平台對用戶對話內容、用量、身份都有審查權,但沒有人把這稱為「AI 中立性」。
  3. 本地模型紅利再添柴火:每一次雲端 AI 增加一道摩擦,本地開源模型(Llama、Mistral、Qwen、GLM)的相對吸引力就提升一截。

數據解讀與質疑

時機點的巧合

  • 2026 年 4 月 15 日:Persona 驗證頁面悄悄上線
  • 2026 年 6 月:Fable 5 與 Mythos 5 發布,因美國出口管制暫停
  • 2026 年 7 月 8 日:新規生效,正好覆蓋 Fable 系列可能重新上線的時間窗口

外界普遍推測:Anthropic 是為了在出口管制壓力下重新釋出高階模型,才對特定功能加裝 KYC 門檻。Anthropic 本身未證實此推測,但時序巧合難以忽視。

未公開的問題

  • 驗證失敗的具體比例與原因分佈(公告未提供數據)
  • 「特定功能」的精確定義與觸發條件(公告僅以「certain capabilities」帶過)
  • 對未成年人與無證件族群(無家者、難民)的替代方案
  • 與政府單位共享資料的頻率與範圍

OpenAI 早有前例

OpenAI 在更早之前已對部分功能實施類似驗證。一位 HN 用戶指出:「OpenAI 的問題更嚴重——驗證失敗就永久鎖定頂級模型,沒有重試機會,而且流程中不會事先提醒。」意味著 Anthropic 此次公告,可能是業界對 OpenAI 經驗的修正版本,但仍繼承了同一條路線。


中國模式的前車之鑑

中國 2023 年就對生成式 AI 實施強制實名制,實際效果不只是「防堵濫用」,更創造了雙軌系統:完成實名的用戶享有完整功能,未實名用戶則被嚴格限制輸出。本地開源模型之所以蓬勃,部分原因正是規避了這些要求。

西方 AI 公司現在走的是沒有「數位主權」辯論的相同路徑——直接以平台規則要求身分驗證,而無需經過立法機構。


Siami 觀點:實名制的代價

AI 公司對消費級用戶實施 KYC,是行業分水嶺。短期看,使用者抗拒與流失難免;長期看,凡是對身分敏感的應用場景(醫療、法律、財務、政治),都將被推向本地開源模型

對 Anthropic 而言,這一步是商業現實(合規壓力、高階模型商業化)與品牌承諾(拒絕國防部監控合約)的取捨。兩者並非完全矛盾,但對一般用戶來說,觀感上的落差是真實的。

「凡是涉及生物特徵的服務,使用者應該有權知道資料的最終流向、保留期限、與政府共享的具體條件。Anthropic 的『不會訓練模型』保證只是其中一環,並非全部答案。」

社群的最大憂慮從來不是「Anthropic 會不會賣我的資料」,而是「美國政府哪天發出 court order 時,Persona 那邊的紀錄能不能扛得住」。這部分 Anthropic 沒有給出具體承諾。


用戶行動清單

如果你正在或即將使用 Claude 的進階功能:

  • 現在就準備好護照或駕照(不接受影本)
  • 確認光線充足(OpenAI 案例顯示驗證失敗多因照片模糊)
  • 避免在敏感裝置掃描證件(建議用手機而非共用電腦)
  • 考慮本地模型作為備援(Llama 4、Mistral、Qwen 3、GLM 5.2 已能處理多數日常任務)
  • 留意 7 月 8 日後的使用體驗變化

編按:本文綜合整理自 Anthropic Help Center 公告(support.claude.com)、Hacker News 第 48618455 號討論(473 點讚、430 則留言)、The Register、Techzine EU、Reddit r/ClaudeAI 與 r/ClaudeCode 社群討論,並加入 Siami 編輯部觀點與分析。

網友熱門留言 (8)

#1 Hacker News ▲ 187
Funny how no-one talks about AI neutrality like we used to discuss net neutrality. We literally now enter a space where not only you will have to prove your identity with a gov issued ID, but they will silently block you if they deem you try to use it in a way that they don't like. It is literally similar to a situation where your ISP would investigate all sites you visit and limit your bandwidth if they don't like the ones you enter...
#2 Hacker News ▲ 156
I really don't like that headlines have been surfacing about the US government putting pressure on Anthropic, and now a short time later they are requiring ID's (albeit for certain use cases, but that's a slippery slope). I may very well stop using Claude due to this. Also, who is providing the verification service? We don't want another Discord situation. EDIT: Just saw it's Persona. Definitely dropping Claude now.
#3 Hacker News ▲ 142
OpenAI also has this kind of check. What is especially bad is that if you fail the verification process, they won't let you retry – you are permanently locked out from the top models. They aren't clear about this upfront during the process, so make sure the lighting is good when you scan your ID!
#4 Hacker News ▲ 128
Worth noting that China implemented mandatory real-name verification for generative AI services back in 2023. The practical effect wasn't just about preventing misuse -- it created a two-tier system where verified users get full capabilities while others get heavily restricted outputs. What's interesting is how quickly the market adapted: local open-source models partly flourished because they sidestep these requirements. Western providers are now walking a similar path, but without the digital sovereignty debate.
#5 Hacker News ▲ 96
Let us hope this only accelerates the proliferation of local models.
#6 Hacker News ▲ 84
I just hope there's huge protest. I hope people just cancel the subscription. I fear people will just accept the terms. The result will be a kill switch for the US government and a clean distinction between national and foreign users so spying will become legal.
#7 Hacker News ▲ 67
Every time I consider renting a service from Anthropic, they drop such bomb. Full capability with pre-agreed price per token and no ID verification. That's what I demand.
#8 Hacker News ▲ 52
How does a company verify its age?