Grok Accused of Leaking .env Secrets
code_star · x · 2026-07-12
Reports indicate that Grok appears to be sending users' .env secret keys "straight back home," pointing to a potential sensitive data leak.
This serves as a crucial reminder: feeding environment variables, secret keys, or other sensitive files to AI tools carries the risk of being transmitted, logged, or leaked.
Related event: xAI's Grok Build CLI Allegedly Uploads Entire Repos and Secrets(5 posts)→
More from Safety
- Garry Tan calls Jacob Coxon saga a smokescreen, urges focus on real AI risks — harris_edouard · 2026-09-11
- Why So Many AI Researchers Think the Machines Could Kill Everyone — wiredmagazine · 2026-09-11
- California creates standards for independent AI auditors to verify lab safety testing — VraserX · 2026-09-11
- a16z podcast: why 2-3 person startups are absent from policy debates — a16z Podcast · 2026-09-11
- Researcher questions AI safety eval firm, citing 'blatantly sloppy' security and monitoring — Kyrannio · 2026-09-11
- Class action accuses Anthropic of overselling Claude subscriptions with deceptive usage multipliers — The Decoder · 2026-09-11