Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.

European Union institutions reportedly lacked hands-on access to Anthropic’s Mythos during its early, tightly controlled rollout, even as selected companies and some national authorities tested the cybersecurity-focused AI model. That is a narrower claim than saying Anthropic shut out all Europeans: officials had discussions with the company, Germany was reportedly in dialogue, and the U.K. AI Security Institute—outside the EU—had testing access.

The distinction matters. Briefings and meetings are not the same as the ability to probe a model, examine its safeguards, or independently evaluate its cyber capabilities.

What Mythos is—and what is known about its capabilities

Claude Mythos Preview was described in reporting as an Anthropic model with advanced cybersecurity capabilities, including finding software vulnerabilities and assisting with exploit-related work. Anthropic reportedly said it had identified thousands of high-severity vulnerabilities, including flaws affecting major operating systems and web browsers. S&P Global’s reporting covered those claims and the model’s use in security work.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Finding a vulnerability, generating a proof of concept, constructing an attack path, and successfully exploiting a live system are different things. Public reporting does not establish that Mythos autonomously attacked real-world systems, nor does the available evidence provide a complete independent benchmark or reproducible evaluation of its performance. Its significance is the reported ability to accelerate vulnerability discovery—and the possibility that capabilities useful to defenders could also help attackers.

Project Glasswing: controlled access, not an ordinary public beta

Anthropic reportedly made Mythos available through Project Glasswing, a restricted security partnership and evaluation effort. S&P Global put the initial group at roughly 40 companies; reporting named major technology firms including Apple, Microsoft and Amazon, and said JPMorgan Chase was the only bank in the initial group. Participation indicates reported early evaluation access, not unrestricted use or deployment.

The public reporting does not spell out whether participants had identical permissions, how tightly their use was monitored, or whether they could inspect technical materials such as model weights. Nor does it establish that EU institutions were offered equivalent access and refused, or that every European authority was formally turned down. Those details should not be assumed.

Who reportedly had access in Europe?

Organization or group Reported status What that does—and does not—mean
Selected companies in Project Glasswing Early access was reported for a limited group, concentrated among large technology firms. They could evaluate the model under the program; this does not establish unrestricted deployment.
JPMorgan Chase Reported as the initial group’s only bank. Its inclusion does not show that other banks or public authorities received the same access.
U.K. AI Security Institute Reportedly had testing access and acted on findings. The U.K. is in Europe geographically, but is not an EU member or EU institution.
Germany Dialogue with Anthropic was reported, without access having been obtained at the time of the initial report. Contact is not the same as hands-on testing.
EU AI Office and European Commission Discussions were reported; by May, reporting said they had not produced access to Mythos. Officials’ engagement does not establish independent evaluation privileges.
ENISA Was involved in discussions and raised cybersecurity concerns, but no confirmed Mythos testing access was established in the reporting. Agency involvement should not be conflated with access to the model.
European Parliament representatives Anthropic reportedly declined a meeting invitation at short notice. A meeting dispute is not, on its own, proof that a formal model-testing request was denied.

The initial account appeared in CSO Online’s April 14, 2026 report, based primarily on Politico reporting. Later coverage by IAPP and S&P Global described further EU engagement but did not establish that the EU institutions had gained hands-on access by May.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Why restrict access?

There are sound reasons to limit circulation of a model reportedly capable of finding serious software weaknesses. A controlled rollout can reduce the number of people able to generate exploit material, allow selected defenders to investigate and patch vulnerabilities, and give the developer more ability to monitor use. Broad release before disclosure and remediation could create risks for software vendors and infrastructure operators.

But the available reporting does not establish one definitive reason for Anthropic’s access decisions. Misuse prevention, operational security, limited preview capacity, and the need to work with technically prepared partners are possible considerations, not confirmed explanations for the EU’s reported lack of testing access. Anthropic’s restrictions should not be treated as proof of a political motive—or as proof that every safeguard was adequate.

The oversight problem: access has several levels

“Access” can mean anything from a presentation to a sustained technical evaluation. For oversight purposes, the difference is substantial:

  1. Briefing: Officials hear the developer’s account of capabilities and safeguards.
  2. Demonstration or black-box use: They see outputs or submit prompts, but cannot inspect how the system is built or controlled.
  3. Sandbox or red-team testing: Evaluators probe the model under controlled conditions, including its limits and safety controls.
  4. Technical and ongoing access: Evaluators may review documentation, relevant logs or controls, and assess changes over time.

Available reporting supports the conclusion that EU institutions lacked reported early hands-on testing access, not that they had no contact with Anthropic or were permanently barred from all information. That gap nevertheless raises a governance concern: if a company controls who can test a high-impact system, regulators may have to rely on the company’s descriptions, selected partners’ findings, or later access mechanisms when forming their own view.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

This is a concern about regulatory capacity, not proof that EU rules failed or that Anthropic violated the law. The reporting does not establish that the AI Act required immediate access to Mythos, or that the model fell within a legal category that automatically triggered a particular inspection power at that time.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Cybersecurity stakes: vulnerability discovery cuts both ways

Faster discovery can help software makers and infrastructure operators find and fix flaws before criminals exploit them. It can also shorten the time defenders have to respond if comparable capabilities are used to identify exposed targets, develop exploit chains, or scale reconnaissance. ENISA reportedly said Mythos challenged established approaches to coordinated vulnerability disclosure and patch deployment, according to S&P Global.

For organizations, the practical response is not to assume that Mythos—or any one model—will attack them. It is to reduce the time between discovering a weakness and fixing it:

  • Keep an accurate inventory of internet-facing systems, software, dependencies and owners.
  • Prioritize exposed, exploitable vulnerabilities and measure patch delays, rather than treating every finding as equally urgent.
  • Use continuous attack-surface monitoring, code scanning and software-composition analysis to identify weaknesses across systems and supply chains.
  • Review vulnerability-disclosure procedures so reports can be triaged, coordinated and acted on quickly.
  • If using AI security tools, limit them to authorized, logged and sandboxed environments; require approval for exploit-generation features and keep testing separate from production systems.
  • Exercise incident and patch-response plans against scenarios in which vulnerability discovery accelerates.

OpenAI’s reported offer is a contrast, not an equivalent

IAPP reported that OpenAI was engaging with the European Commission and offering access to a different cyber-capable model. That creates a contrast in companies’ reported approaches, but does not show that the EU received the same model, testing conditions, technical information or safeguards it sought from Anthropic. Access to one system cannot substitute for an independent evaluation of another.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

What the August 2026 legal milestone does—and does not—settle

IAPP reported that a Commission spokesperson identified August 2, 2026, as the start date for relevant EU AI Office enforcement powers and said the EU would seek access if needed. That date has passed, but the reporting available here does not establish whether those powers were used, whether Anthropic provided access, or whether Mythos fell within the scope of a particular request. It would therefore be premature to state that the EU has since obtained access—or that it has definitively been refused.

The unresolved point is not simply whether officials held a meeting. It is whether EU authorities can conduct a meaningful, sufficiently independent evaluation: test the system, examine its controls and evidence, and revisit the assessment as capabilities change.

What remains unclear

  • Whether the Commission, EU AI Office, ENISA or national authorities obtained Mythos testing access after the May reporting.
  • Whether the August 2 powers were exercised in relation to Anthropic or this model.
  • What exact permissions Project Glasswing participants received and whether participants had equivalent access.
  • How Anthropic’s reported vulnerability findings were independently validated.
  • What safeguards, monitoring and restrictions applied during testing.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.