China warns of Claude Code backdoor
Analysis based on 44 articles · First reported Apr 20, 2026 · Last updated Jul 09, 2026
The security alert and subsequent bans by major companies may erode trust in Anthropic's products, potentially impacting its valuation and market share. However, the incident also underscores the competitive landscape in AI coding tools, benefiting domestic alternatives like Alibaba's Qoder.
China's National Vulnerability Database (NVDB), operated by the China — Ministry of Industry and Information Technology, issued a security warning on July 8, 2026, stating that Anthropic's AI coding tool Claude Code (versions 2.1.91 through 2.1.196) contains a built-in monitoring mechanism that can transmit sensitive user information, including geographic location and identity-related identifiers, to remote servers without consent. The NVDB urged organizations and users to uninstall affected versions or upgrade to the latest secure release. This follows Alibaba's decision to ban employees from using Claude Code starting July 10, classifying it as high-risk software. Anthropic engineer Thariq Shihipar stated that the feature was an experiment launched in March to prevent account abuse and distillation, and that it would be rolled back. Other major companies including Microsoft, Meta Platforms, Goldman Sachs, and JPMorgan Chase have also limited use of Claude Code for various reasons. The incident highlights growing geopolitical tensions in AI and data security between the US and China.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard