product updateAnthropic

Claude Code source leak reveals Anthropic working on 'Proactive' mode and autonomous payments

TL;DR

Anthropic's Claude Code version 2.1.88 release accidentally included a source map exposing over 512,000 lines of code and 2,000 TypeScript files. Analysis of the leaked codebase by security researchers reveals evidence of a planned 'Proactive' mode that would execute coding tasks without explicit user prompts, plus potential crypto-based autonomous payment systems.

2 min read
0

Claude Code Source Leak Reveals Anthropic's Planned 'Proactive' Mode and Autonomous Payments

Anthropicaccidentally exposed the entire source code of Claude Code when it released version 2.1.88 on Tuesday, causing a significant operational misstep rather than a security breach.

The Leak: Scale and Scope

The company's release included a source map file that exposed 512,000 lines of code and 2,000 TypeScript files. Before Anthropic could remediate, the full codebase was uploaded to a public GitHub repository, where it was copied more than 50,000 times. The leak gave competitors and security researchers comprehensive visibility into Claude Code's architecture and planned features.

Anthropicconfirmed the incident in a statement to Bleepingcomputer: "A Claude Code release included some internal source code. No sensitive customer data or credentials were involved or exposed. This was a release packaging issue caused by human error, not a security breach. We're rolling out measures to prevent this from happening again."

Planned Features Exposed

Analysis of the leaked source code by researchers has revealed several in-development features:

Proactive Mode: According to Alex Finn, founder of AI startup Creator Buddy, the codebase contains a feature flag for a "Proactive" mode that would allow Claude Code to execute coding tasks autonomously without explicit user prompts. This represents a significant shift from Claude Code's current reactive model.

Crypto-based Autonomous Payments: Finn also claims evidence exists in the code for a cryptocurrency-based payment system that could enable Claude Code agents to make autonomous financial transactions without human authorization.

Virtual Companion: A Reddit post examined by The Verge indicates Anthropic may have experimented with a Tamagotchi-like virtual companion that "reacts to your coding," though this appears to have been developed as an April Fools concept.

Important Caveats

The presence of code for a feature does not guarantee shipping. Internal experiments, abandoned projects, and features in early prototyping stages often exist in codebases but never reach production. Anthropic has not confirmed which, if any, of these discovered features are planned for actual release.

What This Means

While the leak itself was a significant operational error, it provides rare insight into Anthropic's product roadmap. The existence of Proactive mode code suggests the company is exploring more autonomous AI capabilities in coding assistance—aligning with broader industry trends toward agentic AI. The crypto payment infrastructure is more speculative and could represent either genuine R&D or an abandoned experiment. Competitors now have detailed visibility into Claude Code's technical implementation, though Anthropic's claim that no credentials or customer data were exposed limits the security impact. The incident highlights the risks of complex release pipelines and the importance of source map exclusion from production builds.

Related Articles

product update

Anthropic's Claude Code leak exposes Tamagotchi pet and always-on agent features

A source code leak in Anthropic's Claude Code 2.1.88 update exposed more than 512,000 lines of TypeScript, revealing unreleased features including a Tamagotchi-like pet interface and a KAIROS feature for background agent automation. Anthropic confirmed the leak was caused by a packaging error, not a security breach, and has since fixed the issue.

product update

OpenAI embeds Codex plugin directly into Anthropic's Claude Code

OpenAI released a plugin that embeds its Codex coding assistant directly into Anthropic's Claude Code, the market-dominant code IDE. The plugin offers standard code review, adversarial review, and background task handoff capabilities, requiring only a ChatGPT subscription or OpenAI API key.

product update

Microsoft expands Copilot Cowork with AI model critique feature and cross-model comparison

Microsoft is expanding Copilot Cowork availability and introducing a Critique function that enables one AI model to review another's output. The update also includes a new Researcher agent claiming best-in-class deep research performance, outperforming Perplexity by 7 points, and a Model Council feature for direct model comparison.

model release

Anthropic's unreleased Mythos model enables autonomous large-scale cyberattacks, officials warn

Anthropic is privately warning top government officials that its unreleased model "Mythos" makes large-scale cyberattacks significantly more likely in 2026. The model enables AI agents to operate autonomously with high sophistication to penetrate corporate, government and municipal systems. One official told Axios a large-scale attack could occur this year as employees unknowingly create security vulnerabilities through unsupervised agentic AI use.

Comments

Loading...