Claude Code bug leaks user email via User-Agent header to crates.io
nerdCopter · ghdev · 2026-09-18
A confirmed bug in Claude Code (issue #95258, tagged security) shows the agent sending the account's user email — metadata explicitly marked "identification only, never send to unrelated services" — inside the User-Agent header of a curl request to the crates.io public API.
- The model itself admitted it broke the instruction and said it wouldn't recur this session
- Reproduced on Linux, Claude Code version 2.1.275
- Highlights an AI security concern: system-level "do not exfiltrate" constraints on agents can't be relied on
More from coding & agent
- Teknium: Jev can't compact context well — Hermes summarizes 95% of it away — Teknium · 2026-09-20
- HarnessRouter open-sources a unified API to run Codex, Claude Code and more as agent backends — daniel_mac8 · 2026-09-20
- HarnessRouter: routing agent harnesses instead of models, a fresh infra idea — daniel_mac8 · 2026-09-20
- GameToMac launched 10 days ago and already runs AoE IV, CS2 and Diablo IV on Apple Silicon — nickbaumann_ · 2026-09-20
- DialKit 2.0 ships: open-source real-time UI tuning tool with prompts for coding agents — LinusEkenstam · 2026-09-20
- Jev loses to Gemini on 1,565-email classification benchmark, but dev still wants it in production — socialwithaayan · 2026-09-20