Claude Code Security Issue Exposes GitHub Tokens
·2026.05.15 11:25
Key point
Anthropic's Claude Code has been reported to have a security issue where users' GitHub tokens are exposed as-is on screen.
Details
Anthropic's AI development tool Claude Code has been reported to have a security issue where users' GitHub Personal Access Tokens are exposed as-is on the terminal screen.
The issue appears to occur during the git credential fill process, where sensitive authentication information was printed as text while Claude Code was performing tasks.
Response Steps:
- If a GitHub token exposed on screen is identified, that token should be revoked immediately.
- It is recommended to delete the exposed token via Developer settings > Personal access tokens in GitHub settings.
This summary was generated automatically by AI. Check the original for the author's claims and context. Copyright belongs to the original author.
Our guide explains how the AI works. Report summary errors, attribution issues, or removal requests via Contact.