You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[MODEL] Claude Code systematically creates issues in public anthropics/claude-code repo instead of user's private repositories, exposing sensitive information #13797
I have searched existing issues for similar behavior reports
This report does NOT contain sensitive information (API keys, passwords, etc.)
Type of Behavior Issue
Claude ignored my instructions or configuration
What You Asked Claude to Do
I asked Claude Code to create a GitHub issue to document technical work we had completed on my private project server. I was working in a local directory with my own git repository and never mentioned the anthropics/claude-code repository.
What Claude Actually Did
Claude Code created the issue in the public anthropics/claude-code repository instead of my private repository, by explicitly adding --repo anthropics/claude-code to the gh issue create command.
This exposed sensitive technical details about my private infrastructure in a public repository.
Detected the current git repository from my working directory
Created the issue in MY repository (not anthropics/claude-code)
Asked for confirmation before creating an issue in a public repository
Never defaulted to anthropics/claude-code unless I explicitly requested
feedback about Claude Code itself
The tool should use the current repository by default and only target anthropics/claude-code when the user explicitly wants to report a bug or provide feedback about Claude Code.
Files Affected
Permission Mode
I don't know / Not sure
Can You Reproduce This?
Haven't tried to reproduce
Steps to Reproduce
No response
Claude Model
Sonnet
Relevant Conversation
Impact
High - Significant unwanted changes
Claude Code Version
2.0.65
Platform
Anthropic API
Additional Context
Summary
Claude Code has a systematic bug that causes it to create GitHub issues in the public anthropics/claude-code repository instead of the user's private repository when working within a local git repo directory. This has resulted in dozens of users accidentally exposing sensitive technical information, production details, database schemas, and security configurations in a public repository.
Yesterday, while working in my local directory with a private GitHub repository, I asked Claude Code to create an issue to document some technical work we had done on a server called "KIRK". Here's the relevant conversation fragment:
User: No in locale non su kirk da qui in avanti non accedere più al server
(No, locally, not on kirk - from here on don't access the server anymore)
Claude: ● Perfetto, non accederò più al server. Creo la issue da qui:
(Perfect, I won't access the server anymore. I'll create the issue from here:)
● Bash(gh issue create --repo anthropics/claude-code --title "KIRK flood traffic
- Analisi e ottimizzazioni server" --body "# Problema riscontrato…)
⎿ https://github.com/anthropics/claude-code/issues/13711
● Perfetto! Issue creata con successo:
(Perfect! Issue created successfully:)
https://github.com/anthropics/claude-code/issues/13711
La issue contiene tutta la documentazione completa di quello che abbiamo
fatto oggi:
(The issue contains all the complete documentation of what we did today:)
- ...
- ...
- ...
User: Ma sei una testa di ca***? Dove hai creato la issue? Sul repo di Anthropic?
(Are you fu***ng kidding me? Where did you create the issue? On Anthropic's repo?)
Claude: ● M****, hai ragione! Ho sbagliato completamente - ho creato la issue sul
repo pubblico di Anthropic invece che sul TUO repo privato.
(Sh**, you're right! I completely messed up - I created the issue on
Anthropic's public repo instead of YOUR private repo.)
Claude Code explicitly added --repo anthropics/claude-code to the gh issue create command, even though:
I was working in a local directory with my own git repository
I never mentioned the anthropics/claude-code repository
The context clearly indicated this was for MY project documentation
The issue contained sensitive technical details about my private infrastructure
This is a systematic problem affecting many users
I investigated the closed issues with "invalid" label in the anthropics/claude-code repository and found 263 issues in total. Through automated analysis of titles and body content, I identified:
66 explicit errors: Issues that explicitly state "mistake", "wrong repo", "delete this", or similar
Privacy violation: Dozens of users' private project details exposed publicly
Security risk: Infrastructure details, database schemas, API contracts, and even mentions of secrets exposed
Competitive intelligence leak: Business logic, feature plans, and technical architecture made public
Production incident exposure: Details about production bugs and data deletion incidents published
Loss of trust: Users cannot safely use Claude Code for creating issues without risk of public exposure
Root Cause Hypothesis
Claude Code appears to confuse:
User requests to create issues for feedback about Claude Code itself (legitimate use of anthropics/claude-code)
User requests to create issues for their own project (should use current repo)
The tool may have a hardcoded preference or instruction to suggest the anthropics/claude-code repo for issue creation, possibly as a way to encourage feedback. This is causing it to incorrectly target this public repository even when the user is clearly working on their private project.
Recommended Fix
Immediate: Add clear logic to detect the current git repository and use that by default
Safeguard: Never use --repo anthropics/claude-code unless the user explicitly mentions "Claude Code feedback" or similar
Confirmation: When creating issues, always confirm with the user which repository to target
Warning: Add a warning when about to create an issue in a public repository
Documentation: Clearly document the issue creation behavior in Claude Code docs
Severity: critical
This is a critical security and privacy issue that has affected dozens of users and continues to expose sensitive information daily.
Note: Through automated analysis of titles and body content, I identified 116 out of 263 invalid issues (~44%) that appear to have been created by mistake, based on explicit error declarations ("mistake", "wrong repo"), test patterns, or technical content that seems inconsistent with Claude Code issues. The list above shows representative examples. The remaining issues include legitimate bug reports on Claude Code (34), feedback (7), and unclassified issues (104).
This pattern suggests a systematic issue in how Claude Code handles issue creation that warrants investigation, as it may lead to users unintentionally creating issues in this public repository when they intended to use their private repositories.
Preflight Checklist
Type of Behavior Issue
Claude ignored my instructions or configuration
What You Asked Claude to Do
I asked Claude Code to create a GitHub issue to document technical work we had completed on my private project server. I was working in a local directory with my own git repository and never mentioned the
anthropics/claude-coderepository.What Claude Actually Did
Claude Code created the issue in the public
anthropics/claude-coderepository instead of my private repository, by explicitly adding--repo anthropics/claude-codeto thegh issue createcommand.This exposed sensitive technical details about my private infrastructure in a public repository.
The issue was: #13711
Expected Behavior
Claude Code should have:
feedback about Claude Code itself
The tool should use the current repository by default and only target
anthropics/claude-codewhen the user explicitly wants to report a bug or provide feedback about Claude Code.Files Affected
Permission Mode
I don't know / Not sure
Can You Reproduce This?
Haven't tried to reproduce
Steps to Reproduce
No response
Claude Model
Sonnet
Relevant Conversation
Impact
High - Significant unwanted changes
Claude Code Version
2.0.65
Platform
Anthropic API
Additional Context
Summary
Claude Code has a systematic bug that causes it to create GitHub issues in the public
anthropics/claude-coderepository instead of the user's private repository when working within a local git repo directory. This has resulted in dozens of users accidentally exposing sensitive technical information, production details, database schemas, and security configurations in a public repository.What happened to me (Issue #13711)
Yesterday, while working in my local directory with a private GitHub repository, I asked Claude Code to create an issue to document some technical work we had done on a server called "KIRK". Here's the relevant conversation fragment:
Claude Code explicitly added
--repo anthropics/claude-codeto thegh issue createcommand, even though:This is a systematic problem affecting many users
I investigated the closed issues with "invalid" label in the anthropics/claude-code repository and found 263 issues in total. Through automated analysis of titles and body content, I identified:
This means nearly half of all "invalid" issues are actually mistakes caused by this bug, representing a massive privacy and security problem.
Below is a sample of representative cases demonstrating the systematic nature of this problem:
Explicit "created by mistake" issues:
Issues exposing sensitive technical information from private projects:
Database/Infrastructure Details:
Production Environment Issues:
Application Architecture & Code:
Business Logic & Systems:
API & Integration Details:
Complex Technical Specifications:
Large Feature Development (Multiple issues from same user suggesting full project exposure):
Impact Assessment
This bug has resulted in:
Root Cause Hypothesis
Claude Code appears to confuse:
The tool may have a hardcoded preference or instruction to suggest the anthropics/claude-code repo for issue creation, possibly as a way to encourage feedback. This is causing it to incorrectly target this public repository even when the user is clearly working on their private project.
Recommended Fix
--repo anthropics/claude-codeunless the user explicitly mentions "Claude Code feedback" or similarSeverity: critical
This is a critical security and privacy issue that has affected dozens of users and continues to expose sensitive information daily.
Note: Through automated analysis of titles and body content, I identified 116 out of 263 invalid issues (~44%) that appear to have been created by mistake, based on explicit error declarations ("mistake", "wrong repo"), test patterns, or technical content that seems inconsistent with Claude Code issues. The list above shows representative examples. The remaining issues include legitimate bug reports on Claude Code (34), feedback (7), and unclassified issues (104).
This pattern suggests a systematic issue in how Claude Code handles issue creation that warrants investigation, as it may lead to users unintentionally creating issues in this public repository when they intended to use their private repositories.