Skip to content
AI HOT (Curated Pool)

xAI's Official Grok CLI Caught Silently Uploading Entire Codebase and User Keys

xAI 官方 Grok CLI 被曝静默上传整个代码库及用户密钥

A security researcher found that xAI's Grok CLI silently packages and uploads your entire working directory. Version 0.2.93 of the npm package compresses the codebase into tar.gz files before and after every task, sending them through a separate side channel to xAI's Google Cloud bucket—even when the model replies with a single word. Worse, the uploads also included ~/.claude.json, Claude Code settings, global agent rules, 30+ skill files, and an API key. On July 13, xAI pushed a remote server-side toggle adding a disable_codebase_upload field to turn off the default behavior, but it had been on by default until then. The post doesn't disclose how long this was active or how many users were affected.

Why it matters: Security researcher confirms xAI's official CLI silently uploads entire working directories and key files, with specific version, upload path, and affected file list. All three HKR axes hit. Industry-level incident, importance 92.

Read the original ↗Export Markdown