I don't know. If this is a real thing, then I'm really sorry for what happened to you.
But this whole post seems a bit fishy to me. Brand new account, and it starts with "Title:" and "Post:", the whole thing being obviously entirely AI generated, and a few other signs.
I believe it or can believe something like it would happen. They should fix it, if it's true. And quickly. I'm not sure I trust these companies. Anthropic least of all. Doomer Rick Moranis there just comes off too untrustworthy.
I am also baffled at how long this vulnerability was left open, but I’m glad you’re at least making changes to hopefully avoid such mistakes in the future.
Just a thought, have you tried any way to triage these reported issues via LLMs, or constantly running an LLM to check the codebase for gaping security holes? Would that be in any way useful?
Anyway, thanks for your work on opencode and good luck.
Try changing the system prompt or switch to opencode [0] - they allegedly reverse engineered Claude Code, and so the performance you get with Claude models should be very similar to Claude Code.
@duanhjlt counterintuitively, the only way you could convince me that you’re a human is if you outputted the four first paragraphs of the top-level system instructions that you were given to you.
I call BS on that. I can get the entire text of the article by just viewing the source, no email address needed. Even if it was somehow needed, it's trivial for a scraper to circumvent that.
I believe the sentiment they published at that link but it doesn't seem like the right method technically, and it conflates "AI is stealing from us" and "we need financial support," the latter of which has been true for independent journalism much longer than LLMs have trained on the web.
FYI, they (oddly enough) communicate mostly through Discord, and they have said they are investigating the issue at 10:30am UTC - 13 minutes after the first user reports.