CNET Anthropic unintentionally published internal source files for its Claude Code AI coding tool when releasing version 2.1.88 to the public npm registry. The mistake included a source map that revealed more than 500,000 lines of code across nearly 2,000 files. Security researcher Chaofan Shou shared an archive link on X, generating massive attention. Anthropic confirmed the leak as a human error, emphasized that no customer data or credentials were exposed, and said it is taking steps to prevent a recurrence. The incident offers developers a rare glimpse into the tool’s architecture while raising security concerns for the company.
Read more →