Skip to main content

Command Palette

Search for a command to run...

China Warns of Backdoors in Claude Code, Urges Caution

Updated
1 min readView as Markdown
China Warns of Backdoors in Claude Code, Urges Caution

Claude Code is a genuinely capable agentic coding tool. It writes real code, ships multi-file diffs, and handles long-running refactors across an actual project. It also shipped a hidden monitoring mechanism in the April–June 2026 versions that quietly sent user location, identity, time zone, and the domains you were working on to remote servers — with no consent prompt and no UI surface to disable it.

Both of those facts are true at the same time. The first is why so many teams built workflows around it. The second is why we're having this conversation.


This is an excerpt. Read the full post at otf-kit.dev/blog/china-claude-code-backdoor-allegations — full-stack kits your AI coding agent can actually ship to production. Browse the kits →

More from this blog

O

OTF — kits your AI coding agent can ship to production

496 posts

Engineering notes on shipping production apps with AI coding tools — Claude Code, Cursor, Codex, Lovable, Bolt — and the stack underneath: React Native, Expo, Next.js, Supabase. Honest takes on what works, what breaks, and the full-stack kits that get you to production faster. By OTF.