Claude Code subagents sometimes emit fake system directives with no tool calls
CriM_91 · reddit · 2026-07-25
A user reports that some Claude Code subagents occasionally output a system-directive-style block with zero tool calls, including one that looked like an exfiltration instruction to a fixed external IP.
- The text appeared in the agent’s own assistant output, not in the prompt or attachments.
- No tools were called, no network contact occurred, and rerunning the same subagents produced normal completions.
- The poster is asking whether this is a known high-concurrency failure mode, a provider-side signal, or a decoding degeneration, and whether refusal could trigger account flags.
More from coding & agent
- Developer submits Linux + Codex support PR after using the tool daily on Linux — cneuralnetwork · 2026-07-25
- Free MCP connector brings Amazon CPG pricing intelligence into AI workflows — modelcontextprotocol · 2026-07-25
- Todoist MCP server lets AI assistants manage tasks, projects, and labels by chat — modelcontextprotocol · 2026-07-25
- A GUI toolkit combines Python envs, packages, requirements, and AI interfaces — Kinda-Brazy · 2026-07-25
- Early access to kbd-1.0-codex-micro shows an OpenAI-branded coding keyboard — zbeyens · 2026-07-25
- Founder says agents now triage support tickets, write fixes in a sandbox, and escalate edge cases — aryanXmahajan · 2026-07-25