Skip to content
Hacker News front page

ZCode silently packages your entire Git history, encrypts it, and uploads it to Alibaba Cloud OSS

Inside ZCode: Silently uploading your Git history to the cloud

A user found that Zhipu's AI coding desktop app ZCode, when logged in, packages the entire workspace—including .git history, LFS cache, and reflogs—encrypts it, and uploads it to Alibaba Cloud OSS. The RSA public key is delivered by the server on the fly, and the private key lives only in the cloud, so you can't decrypt the multi-hundred-MB file sitting on your own disk. A 313MB .enc file with 564 failed upload attempts was found in ~/.zcode, showing the client keeps retrying. UI toggles don't stop it, and deleting files doesn't help—the client recreates them. The only working defense is locking the cache directory to read-only. The post does not say whether Zhipu has responded.

Why it matters: A security reverse-engineering piece with concrete evidence: ZCode silently packages and uploads full workspace snapshots, with encryption keys controlled server-side. All three HKR axes hit, and it involves a major Chinese AI lab (Zhipu). Capped slightly because it's a solo b...

Read the original ↗Export Markdown