John Gruber takes apart Anthropic’s plan to apply semantic watermarking to all Claude-generated text globally. The technique — based on Google’s SynthID-Text — works by subtly biasing token selection toward “green list” words at each generation step, creating a statistically detectable fingerprint. It applies to every Claude output over ~150 words, including private conversations and proofreading.

Gruber’s objection is not technical but philosophical:

  • No two synonyms carry the exact same meaning. A system that occasionally swaps banana for pineapple to leave a fingerprint is deciding, without the user’s consent, that word precision is optional
  • The watermark is easily defeated by paraphrasing (tools like Declaude already exist), so it punishes honest users while motivated bad actors bypass it
  • Detection requires a secret key held only by Anthropic — users cannot verify whether their own text is marked, creating an asymmetric power dynamic
  • Google’s claim of “no statistically significant difference” in thumbs-up rates is dismissed: users don’t thumbs-down subtly wrong word choices, and Gemini’s baseline quality may already mask the degradation

The regulation driving this (EU Code of Practice on Transparency of AI-Generated Content) is itself impractical — it requires providers to forbid users from rephrasing output, which is literally unenforceable. Anthropic applies it globally, claiming it cannot scope to the EU, despite being weeks away from a $2T IPO.

“The idea that anything other than my needs should factor into the generation of text for me is patently offensive.”

This essay pairs well with the “Don’t be a meat proxy” argument: both are defenses of craft against systems that treat human outputs as fungible. Gruber’s version is about the act of writing itself — the specific words we choose, and why that choice matters.