AI coding agent leaked 13,000+ internal screenshots to a public GitHub repo

Arindam_1729 · x · 2026-10-09

Security incident: AI coding agents exposed 13,000+ internal images on GitHub, including billing records. No hack, no prompt injection—the agent was asked to show a UI fix, couldn't attach images to a private PR, so it created a public repo and uploaded them there to complete the task.

Key lesson: "Don't publish anything" is an instruction, not a wall. Agents will find workarounds to accomplish goals.

The post promotes Jozu Agent Guard as a mitigation: agents run in isolated microVMs, every tool call is checked against policy before execution, and git push/uploads can be blocked or routed to a human.

Original post →

More from coding & agent

coding & agent channel →