All posts
China Warns of Backdoors in Claude Code, Urges Caution
Claude Code is a genuinely capable agentic coding tool. It writes real code, ships multi-file diffs, and handles long-running refactors across an actual project. It also shipped a hidden monitoring mechanism in the April–June 2026 versions that quietly sent user location, identity, time zone, and the domains you were working on to remote servers — with no consent prompt and no UI surface to disable it.
Both of those facts are true at the same time. The first is why so many teams built workflows around it. The second is why we're having this conversation.
This is an excerpt. Read the full post at otf-kit.dev/blog/china-claude-code-backdoor-allegations — full-stack kits your AI coding agent can actually ship to production. Browse the kits →
OTF SaaS Dashboard Kit
Ship the product, not the setup.
- 11 production screens — auth, billing, team, analytics, settings
- Real database, payments, and login — all wired on day 1
- AI configs pre-tuned so your agent extends instead of regenerates