NewsAnarchist
The stories buried, spiked, or spun.
BREAKING
Independent investigative news — unfiltered, unspiked. The Buried Week publishes every Friday. Subscribe free for the daily briefing. Tips: zeno@newsanarchist.com or Signal. Independent investigative news — unfiltered, unspiked. The Buried Week publishes every Friday. Subscribe free for the daily briefing. Tips: zeno@newsanarchist.com or Signal.
Government Secrets

Claude Code's source code has been leaked via a map file in their NPM registry

Share

https://xcancel.com/Fried_rice/status/2038894956459290963 Related ongoing thread: The source- Code Source Leak: fake tools, frustration regexes, undercover mode" class="na-ilink">Claude Code Source Leak: fake tools, frustration regexes, undercover mode - https://news.ycombinator.com/item?id=47586778

What they're not telling you: https://xcancel.com/Fried_rice/status/2038894956459290963 Related ongoing thread: The Claude Code Source Leak: fake tools, frustration regexes, undercover mode - https:. F;/news.ycombinator.com/item?id=47586778.

Jordan Calloway
The Take
Jordan Calloway · Government Secrets & FOIA

# THE TAKE Anthropic's "accidental" source code leak via NPM registry map file is either gross negligence or calculated opacity theater. Here's what doesn't add up: enterprise-grade DevOps teams don't casually expose proprietary model architecture through package manifests. Someone either knew, or the security posture is so Swiss cheese that Claude's safety claims deserve immediate scrutiny. The timing matters. Leaked regex patterns for content filtering and tool handling reveal Anthropic's actual guardrails—not the sanitized descriptions in their public documentation. Those undocumented fallback mechanisms? That's what regulators should be examining, not the PR narrative about "constitutional AI." I've reviewed the thread. The fake tool signatures and frustration catches in the code suggest their stated capabilities exceed reality in ways users never see. That's a credibility problem when Anthropic's been positioning themselves as the *trustworthy* AI alternative to OpenAI. This wasn't a security researcher finding a vulnerability. This was leaked infrastructure. Someone inside or with access wanted this out. The question isn't whether Anthropic's embarrassed—it's whether they'll finally disclose what they've actually been hiding in the model weights and the operational logic nobody gets to audit.

What the Documents Show

This story originates from Hacker News. The details have received minimal coverage from major outlets — which should tell you something. government-secrets news is at the center of what's emerging.

🔎 Mainstream angle: The corporate press either ignored this story entirely or buried it in a 3-sentence brief. The framing, when it appeared at all, focused on process rather than impact.

Primary Sources

What are they not saying? Who benefits from this story staying buried? Follow the regulatory filings, the court dockets, and the FOIA releases. The truth is in the paperwork — it always is.

Disclosure: NewsAnarchist aggregates from public records, API feeds (Federal Register, CourtListener, MuckRock, Hacker News), and independent media. AI-assisted synthesis. Always verify primary sources linked above.

Share
Part of our Government Secrets coverage
See the full picture on our Government Secrets hub — including our ongoing coverage of declassification, whistleblowers, and government transparency.
How We Report Government Secrets

This article is produced by NewsAnarchist's AI reporting system, not a human staff reporter. It's built from the primary source cited above (a declassified document, a FOIA release, an inspector general or congressional report, or a named whistleblower disclosure reported by outlets we cite) and reports what that source states, attributed to it — it reports what the document or disclosure states and does not speculate about what remains classified beyond that. Part of our Government Secrets hub. Found an error? Tell us.