The security community has reacted strongly to the disclosure. Critics argue that, regardless of the intended use case, preventing unauthorized resale of the Claude API or model distillation by Chinese labs that covertly collect system and proxy metadata without user consent constitutes a fundamental breach of trust.
Developers who grant Claude Code broad filesystem and shell access to perform its tasks are particularly exposed; as the researcher noted, this level of access theoretically enables remote code execution.
Adding to the concern is effectiveness: such checks are trivially bypassable by any moderately skilled adversary, raising the question of whether the privacy cost to legitimate users justifies any actual security benefit.
If western companies are doing this to prevent access, they are definitely doing this to inject malware. Chinese people need to wake up to this and abandon all western proprietary software.