1. Memory — Settings > Memory. Switch off “Generate memory from chats” and “Search and reference chats”. Then open Topics, read each entry, Delete what you don’t want — or Reset memory to clear all of it, permanently. First, because deleting a chat leaves its memory entries behind.
2. Project files — the project’s Files section. Remove it there. Deleting chats doesn’t touch it — it serves every chat in that project.
3. The chat — Chat list > ⋮ > Delete. The one button that also clears text extracted from an attachment. Gone from your history immediately, from back-end storage within 30 days. (official · checked 2026-09-03)
4. Uploaded files — Settings > Privacy > Uploaded files > trash icon. Every chat attachment by name, size, date and surface, a trash icon per row. The icon removes the stored file only — the screen’s own notice says extracted text stays, and to remove it completely you delete the chat. A sweep, not a substitute. (product screen · measured 2026-09-04 · no official page describes it)
When you want none of it saved
Incognito — the ghost icon on a new chat, outside projects. No history, no memory, not used for training. Not saved isn’t gone: retained 30 days by default, longer under an organization’s custom retention. (official · checked 2026-09-03)
A copy, before you delete
Settings > Privacy > Export data. Web and desktop only. The download link expires 24 hours after delivery. (official · checked 2026-09-03)
Folders and apps you connect
A connected folder is processed on Anthropic’s servers, not on your computer. So:
- One folder. Connect one working folder made for Claude, not your whole drive. Keep backups.
- Permissions — Customize > Connectors. Open the connector’s Tool permissions and set each category to Always allow, Needs approval, or Blocked. Start at Blocked and open what you need.
- One chat only — ’+’ > Connectors. Toggle the app off for that conversation.
- Done with it — disconnect in two places. Customize > Connectors, then myaccount.google.com/connections.
- Chrome. The side panel starts on “Automatically approve”. Move it to Manual for anything you’re logged into.
Three questions before you attach
- Which store does this land in — and can I empty it? A chat, a project’s Files, memory.
- Who else can pull it? A Primary Owner, an export, a Compliance API.
- What can Claude reach while it holds this? A folder, a mailbox, a logged-in tab, a screen.
If the answer to any of them is “I don’t know”, open a smaller door first.
If it already happened
- API key in a chat: revoke it immediately and issue a new one. Anthropic’s own advice.
- Password in a chat: change it at the source. Deleting the chat is not the fix — the back end takes up to 30 days, and on a work account a copy may already be out. That last step is our read, not a sentence Anthropic wrote.
Honestly? I’d turn the training toggle off, connect one folder, and stop there for the first week.
Sources
Checked 2026-09-03 unless noted. Privacy settings · Model training · Data retention · Memory · Projects · Upload files · Incognito · Export data · Cowork safety · Connectors directory · Google connectors · Per-chat connectors · Chrome permissions · Compromised API key · Team data · Compliance API · Uploaded files screen: measured 2026-09-04.