Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How would I get prompt injected by running claude code on my own system? It reads code which is local, it writes code which is local.

Nice job for coining the name for something but it’s irrelevant here.

How is someone going to prompt inject my local code repo? I’m not scraping random websites to generate code.

This sort of baseless fear mongering doesn’t help the wider ai community.



Claude Code can run commands like curl. Curl can be used to fetch data from the web.

See comment here for more: https://news.ycombinator.com/item?id=45427324

You may think you're not going to be exposed to malicious instructions, but there are so many ways bad instructions might make it into your context.

The fact that you're aware of this is the thing that helps keep you safe!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: