Claude Code Is Steganographically Marking Requests
I was inspecting Claude Code for privacy reasons.Most devs give their harnesses ridiculous access. FS, shell, git, browser access, even computer use nowadays. That is the whole point. They need enough context to do useful work.That also means the client itself deserves scrutiny. If a coding agent can read your repo and run commands, the binary that ships it should be boring (ƒor example, pi harness)So I took a look at my local Claude Code (2.1.196) install.Inside the Claude Code binary, there is...
Read more at thereallo.dev