Open-Questions Register
The working group's agenda for its Anthropic contact — all 41 open questions, grouped by topic. Context gathered as of July 2026; claims last verified 2026-07-28 (22 confirmed · 6 documented · 1 stale risk — see the verification log).
Anthropic's policies and products change frequently — always confirm current specifics with your Anthropic contact before relying on any answer for a compliance decision. This register is a teaching aid, not compliance or legal advice. ⚑ marks compliance-critical items.
How to read the chips
- Confirmed checked against Anthropic’s own page on the date shown, and the receipt kept.
- Documented carried from the working group’s document (context as of July 2026), not re-checked since.
- Stale risk known-volatile, or the check found a discrepancy — treat as a question, not a fact.
- compliance a claim a patient-data decision could hang on — always confirm with your Anthropic contact first.
- our practice the group’s recommended practice, not an Anthropic product fact.
Folder & Desktop Access
- Recommended folder structure for isolating each org's files
Ask Anthropic to recommend a folder layout for the working group's actual files — conference logistics, registry/biorepository spreadsheets, grant materials — so a session working on one org's task can't wander into another org's sensitive files.
- Per-project folder access scoping in Cowork
Ask whether Cowork can wall off one project's file access from another's, so a task running in Project A truly cannot reach files granted to Project B.
- Reviewing and revoking granted folder access
Ask whether there's an audit trail showing exactly which files Claude read, wrote, or deleted, and how to pull back access once it's no longer needed.
- Access control within a shared Cowork Project
If the working group sets up one shared Cowork "Project" for multiple people, ask how access between those members is actually governed — who can see, add, or remove what.
- Folder access differences: chat vs Cowork vs Claude Code
Before picking a surface for a given task, ask Anthropic to lay out plainly what each surface — chat, Cowork, Claude Code — can and can't reach on your files, so the group picks the right tool instead of guessing.
API Keys & Secrets
- Whether Claude retains credentials that appear in content
Ask specifically what happens if a credential accidentally appears in a conversation, upload, or connected file — is it stored anywhere, and for how long, separate from the general retention rules.
- Built-in safeguard if a .env file lands in a granted folder
Ask whether Claude has any automatic protection against reading or exposing a secrets file that accidentally ends up inside a folder it's been given access to — the practical answer today is "keep it out," but ask if there's a backstop too.
- Best practices for organizing and rotating API keys
Ask for a concrete key-management routine sized for a small nonprofit team, not an enterprise security department.
Data Retention & What Goes Back
- Which contract terms actually govern the working group's accounts compliance-critical
Before trusting any retention or training answer, confirm which contract actually governs your account — Commercial Terms (Claude for Work, Education, Gov) or Consumer Terms (Free, Pro, Max: a toggle you must check). Then ask for the exact model-training language in those terms, in writing.
- Actual timeline to purge data after deletion compliance-critical
Ask how long "deleted" really takes to mean gone, and whether any exception — like a trust-and-safety review — can extend that window.
- What's retained differently across chat, Cowork, Code, and API compliance-critical
Ask for a single, plain comparison of what's kept and for how long across every surface the group actually uses — chat, Cowork, Claude Code, and the API — since the answer isn't one-size-fits-all.
- Risk of using personal Pro/Max accounts for org work compliance-critical
If some members are doing org work from their own personal Claude accounts rather than an organizational plan, ask what that actually exposes and whether it's worth standardizing everyone onto Team or Enterprise.
- Building specialist Skills for repeatable, nuanced work
This is a member-added aspiration as much as a question — the group wants to build its own reusable Skills for recurring, detail-sensitive tasks, with built-in checks for accuracy. Ask Anthropic how to approach this well.
- Where to confirm the training toggle is off, plan by plan compliance-critical
Ask for the precise settings path, for each plan type the group uses, to see and confirm the "Help Improve Claude" toggle's current state — don't assume it's off just because no one turned it on.
HIPAA & Patient Privacy
- Which BAA configuration fits an advocacy nonprofit's needs compliance-critical
Ask Anthropic to help match your organization's actual work — natural history studies, registries, biorepositories, patient-reported outcomes — to one of the two BAA-eligible configurations, with real budget numbers, rather than guessing which is "enough."
- Whether Agent Skills are covered under an Enterprise BAA compliance-critical
We know Skills sit outside Zero Data Retention on the API. We do not know their status under an Enterprise BAA, because the document that would say so is one we cannot read. Ask your Anthropic contact for the Skills row in the HIPAA Implementation Guide — or for access to the Guide itself.
- What an already-signed API BAA actually covers compliance-critical
If your organization signed a BAA for the Claude API before December 2, 2025, it covers API usage only — it does not extend to a HIPAA-ready Enterprise plan. Find out which side of that date your agreement falls on, and get written confirmation of what it covers now.
- Process, timeline, and cost to activate HIPAA readiness compliance-critical
Ask for a concrete, practical walkthrough — steps, how long it takes, and what it costs — for actually getting a BAA in place, not just the fact that it's possible.
- De-identification practices for members without a BAA compliance-critical
If your organization isn't on a BAA-covered configuration, ask for a concrete pre-flight checklist for stripping identifying details before anything patient-related goes into Claude at all.
- Anthropic's safe de-identification threshold before data is PHI compliance-critical
"We think it's de-identified" isn't the same as Anthropic (or HIPAA) agreeing — ask what specific threshold or standard Anthropic expects before treating data as no longer PHI.
- Which day-to-day features are covered once HIPAA is active compliance-critical
A signed BAA doesn't automatically cover every feature — ask for a feature-by-feature list of what's actually safe to use with patient-related data on your specific plan.
- Whether a vendor's BAA covers direct Claude usage too compliance-critical
A BAA with your registry vendor does not automatically extend to your own direct use of Claude — ask Anthropic to confirm whether these are always separate agreements.
- How to increase security and when sensitive input is safe compliance-critical
Ask for the practical bottom line: what concrete steps raise the group's security posture? And under exactly what conditions — which plan, which configuration, which feature — is it ever appropriate to type sensitive information into Claude at all?
Skills
- Existing Skills from other advocacy nonprofits to adapt compliance-critical
Before building from scratch, ask whether other nonprofits in similar situations have already built — and would share — a Skill the group could adapt.
- A live, guided Skill-building session as training
Ask whether Anthropic would run a hands-on session building a real Skill together with the group, rather than the group learning solely from documentation.
- Sharing Skills across an org or working group
Ask exactly how a Skill built by one person gets shared with teammates or other organizations — is it a simple export and import, or does it require an Enterprise/Team admin to deploy it org-wide?
- Retention considerations specific to Skills, outside ZDR compliance-critical
Even an organization with a Zero Data Retention agreement should know that Skills are the exception — ask what that actually means in practice for anything built into a Skill.
Cross-Cutting Questions
- Notification of model updates, deprecations, or restrictions
Ask what advance notice, if any, Anthropic gives before a model changes, is deprecated, or is suddenly restricted, so the group isn't caught mid-task by a surprise.
- Claude for Science: how it differs, which model to use when
Ask what "Claude for Science" actually is, how it differs from using Claude normally, and for plain guidance on which model fits which kind of task the group does.
- Data-exposure risk during connector failure or re-auth
Ask what happens in the failure case, not just the happy path — could a broken or expiring connection leak data or leave access in a half-open state?
- Safest way to connect Drive, Slack, or a registry platform
Before linking any outside system to Claude, ask exactly what data becomes visible once the connection is live, not just what the connection is nominally "for."
- Controlling what sources Claude pulls from
Ask how to steer Claude toward trusted, preferred sources rather than whatever it already knows — and note that a well-maintained context graph, like this vault itself, is one working answer to exactly this question.
- GDPR and data-residency protections for non-U.S. members compliance-critical
If any working-group member is in the UK or EU, ask specifically how GDPR and data-residency rules change the retention and training picture compared to what's documented for U.S. users.
- Ensuring a rare disease is well-represented in the model
Ask how a rare disease's information actually gets built into what a model already knows, how to regularly test whether the model answers likely patient and clinician questions well, and how that knowledge gets updated over time.
- The 'LLM Wiki' idea and how to implement guardrails
Ask Anthropic to explain the "LLM Wiki" concept the group has heard of, and how guardrails would actually be implemented around it in practice.
- Siloing each member org's data while sharing practices
Ask how to keep each member organization's own sensitive files walled off from the others, while still letting the group collaborate on shared learnings, templates, and best practices.
- Nonprofit/research discount or credit program
Ask directly whether Anthropic offers reduced pricing, credits, or a grant program aimed at nonprofits or research organizations, since budget is a real constraint for this group.
- Onboarding and training for non-technical advocacy staff
Ask whether Anthropic offers any structured onboarding or training aimed at staff who aren't technical by background, rather than generic developer-facing documentation.
- Sensitive non-PHI content: manuscripts, embargoed data, funder comms
Not everything sensitive is PHI — ask what protections exist, or don't, for other confidential material like unpublished manuscripts, embargoed data, or funder communications.
- Building a survey with logic for SurveyMonkey / Google Forms
Ask whether Claude can help design branching survey logic — skip patterns, conditional questions — in a format ready to drop into the survey tool the group already uses.
- How much to trust outputs and understand model assumptions
Ask for practical guidance on calibrating trust in an answer — how to tell when the model is confident versus guessing, and what assumptions might be baked into a given response.