

So, thereās a kind of security investigation called ādorkingā, where you use handy public search tools to find particularly careless software misconfigurations that get indexed by eg. google. One too, for that sort of searching it github code search.
Turns out that a) claude chat logs get automatically saved to a file under .claude/logs and b) quite a lot of people donāt actually check what theyāre adding to source control, and you can actually search github for that sort of thing with a path: code search query (though you probably need to be signed in to github first, it isnāt completely open).
I didnāt find anything even remotely interesting (and watching peopleās private project manager fantasy roleplay isnāt something I enjoy), but viss says theyāve found credentials, which is fun.


Ahh, i knew there was a recent catastrophe involving people handing credentials and confidential information to third parties without a single thought or qualm, but couldnāt for the life of me remember what it was. Thanks!