product updateAnthropic

Anthropic's Claude Code leak exposes Tamagotchi pet and always-on agent features

TL;DR

A source code leak in Anthropic's Claude Code 2.1.88 update exposed more than 512,000 lines of TypeScript, revealing unreleased features including a Tamagotchi-like pet interface and a KAIROS feature for background agent automation. Anthropic confirmed the leak was caused by a packaging error, not a security breach, and has since fixed the issue.

2 min read
0

Anthropic's Claude Code Leak Exposes 512,000 Lines Including Unreleased Features

Anthropic's Claude Code 2.1.88 update accidentally included a source map file containing its full TypeScript codebase—more than 512,000 lines of code—which users quickly discovered and copied to public GitHub repositories. The leak has since amassed over 50,000 forks.

What the Leak Revealed

Users analyzing the code have identified several unreleased features:

Tamagotchi-style pet interface: A virtual pet that "sits beside your input box and reacts to your coding," according to Reddit users who reviewed the code.

KAIROS feature: Described as an "always-on background agent" capable of executing tasks autonomously on a user's behalf without explicit prompts.

Internal architecture details: The leak exposed Anthropic's memory architecture, AI bot instructions, and comments from developers. One engineer's note acknowledged that "memoization here increases complexity by a lot, and im not sure it really improves performance."

Anthropic's Response

Anthropric spokesperson Christopher Nulty stated: "Earlier today, a Claude Code release included some internal source code. No sensitive customer data or credentials were involved or exposed. This was a release packaging issue caused by human error, not a security breach. We're rolling out measures to prevent this from happening again."

The company fixed the issue shortly after discovery, but the code had already been mirrored publicly.

Security and Operational Impact

Arun Chandrasekhar, an AI analyst at Gartner, told The Verge that while the leak poses "risks such as providing bad actors with possible outlets to bypass guardrails," its long-term impact may be limited. He framed it as "a call for action for Anthropic to invest more in processes and tools for better operational maturity."

The leak does not appear to include API keys, credentials, or customer data—distinguishing it from a full security breach. However, it provides potential attackers with detailed knowledge of Claude Code's internals, including security controls and implementation details.

Context: Claude Code's Evolution

Anthropric launched Claude Code in February 2025 as an AI-powered coding assistant. The tool gained significant traction after Anthropic added agentic capabilities, allowing it to perform tasks autonomously. The company also released Cowork, a platform that integrates Claude Code with computer control capabilities.

What This Means

The leak accelerates public visibility of Anthropic's upcoming features by months, potentially influencing competitor roadmaps and user expectations. The Tamagotchi pet and KAIROS agent features suggest Anthropic is moving toward more interactive and autonomous coding assistance. However, the incident highlights operational vulnerabilities in deployment processes at major AI labs—a concern that extends beyond Anthropic to the entire industry. Organizations handling sensitive AI development will likely scrutinize their build and release pipelines more carefully.

Related Articles

model release

Anthropic Releases Claude Sonnet 5.5, Now Powering Free Tier on Claude.ai

Anthropic released Claude Sonnet 5.5, claiming it runs 30%+ faster and costs up to 30% less than Sonnet 5 while beating it on benchmarks, at the same price. The model now powers the free tier on claude.ai, giving Anthropic a notably stronger free offering than OpenAI's ChatGPT.

model release

Anthropic Releases Claude Sonnet 5.5: 30% Faster, 30% Cheaper Than Sonnet 5

Anthropic has released Claude Sonnet 5.5, the second model in its Claude 5.5 family following last week's Opus 5.5. The model runs more than 30% faster and costs up to 30% less for most work while keeping Sonnet 5's per-token pricing.

changelog

Anthropic Python SDK 1.9.0 Adds Reference to Unreleased 'claude-sonnet-5-5' Model ID

Anthropic's anthropic-sdk-python v1.9.0 release adds a reference to an unannounced 'claude-sonnet-5-5' model ID, a new between_tools thinking type, and the ability to run tool calls while a reply streams. No pricing, context window, or benchmark data for the model has been disclosed.

model release

Anthropic Launches Claude Sonnet 5.5, Claims 30% Faster Performance at Lower Cost Than Predecessor

Anthropic has released Sonnet 5.5, the latest version of its mid-tier Claude model, claiming 30% faster performance and significantly lower token costs than its predecessor. The company says the model now outperforms Opus 5.5 on agentic coding tasks and carries cyber capabilities comparable to Opus 5.

Comments

Loading...