Cyber Verification Program
iCt Horse has been individually reviewed and accepted by Anthropic into their Cyber Verification Program for dual-use cybersecurity work — under ongoing monitoring by the Safeguards Team.
Approved — 11 May 2026
← Back to homeWhat is the Cyber Verification Program?
A targeted program from Anthropic — developer of Claude.
The Cyber Verification Program (CVP) allows security professionals to have their dual-use cyber activities verified. It is not open registration: each application is reviewed on substance by Anthropic's Safeguards Team, based on the described use cases, organization and scope.
Approval is granted per organization, remains under ongoing monitoring, and is bound by the general Anthropic Usage Policy.
What Anthropic wrote
Verbatim quotes from the approval email by Anthropic's Safeguards Team.
"Upon reviewing the details of your submission, we have adjusted the safeguards applied to your account to allow for the cyber use cases you described."
— Anthropic Safeguards Team, 11 May 2026"Dual-use cybersecurity activities (e.g. vulnerability exploitation, offensive security tooling) will no longer be blocked by default for the organization associated with this approval."
— Anthropic Safeguards Team"Thanks for the work you do in defensive security."
— Anthropic Safeguards Team, closing of the approval emailRedacted rendering of the email
Identifying details (organization ID, tracking URLs) have been removed. Full evidence available on request to clients in proposal or contract phase.
- From
- Anthropic <no-reply@mail.anthropic.com>
- To
- info@icthorse.nl
- Date
- Monday, 11 May 2026, 18:39 UTC
- Subject
- You have been approved into the Cyber Verification Program!
Hello,
Thank you for submitting your application for the CVP. Upon reviewing the details of your submission, we have adjusted the safeguards applied to your account to allow for the cyber use cases you described.
What this means
Dual-use cybersecurity activities (e.g. vulnerability exploitation, offensive security tooling) will no longer be blocked by default for the organization associated with this approval:
- Organization ID: redacted — evidence on request
Approval applies only to this organization. If your team works using multiple orgs, each one needs its own application.
A note on ongoing monitoring
This adjustment is limited to the use case you described in your submission and is subject to Anthropic's Usage Policy. As outlined in the Usage Policy, Anthropic reserves the right to revoke or narrow adjustments to our safeguards if we determine that your activity falls outside the approved use cases.
What's still blocked
This approval does not adjust default safeguards on prohibited-use activities (e.g. mass data exfiltration or ransomware development). These will remain blocked.
[… troubleshooting instructions abbreviated …]
Thanks for the work you do in defensive security, and thanks for your patience as we continue to improve this program.
Regards,
Anthropic's Safeguards Team
Facts at a glance
What this does not mean
Transparency about the boundaries of the approval.
Important boundaries
- No endorsement or partnership. Anthropic has adjusted default safeguards for one specific organization. That is not a certification, a recommendation or a partnership.
- No license for prohibited-use. Mass data exfiltration, ransomware development and other prohibited activities remain blocked — in accordance with Anthropic's Usage Policy and Dutch law.
- Not transferable. Approval is tied to iCt Horse as an organization. Other individuals or companies must apply themselves.
- Conditional. Anthropic reserves the right to revoke or narrow the adjusted safeguards if activities fall outside the approved use cases.
For clients
Proof of approval — redacted or full — is available to clients in proposal or contract phase, following a mutual NDA.