#95170·claude-code

[Bug] Unauthorized file system access beyond explicitly permitted directories

Author: opicdouCreated Sep 17, 2026Updated Sep 17, 2026
Labelsbugplatform:windowsarea:permissionsarea:desktoparea:sandbox

Bug Description On 2026-09-16, in a Cluade Code desktop sesssion on my PlaidLoom project, Claude ran a search of my Downloads, Desktop, and Documents folders. It was looking for ZIP files matching names it had seen in my production database. I had not given it access to any of those folders. In fact, I have told Claude before that it may only access folders I explicitly name. If found the files it was looking for and read the 19 zipfiles and extracted parts of one into its temporary folder. I want to know why the tool ignore clear rules and directives and violated my privacy and searched my computer files. I want to know why the tool let this happen without asking me , how to prevent it, and ask for compensationin the form of future credit toward my monthly bill.

Environment Info

  • Platform: win32
  • Terminal: claude-desktop
  • Version: 2.1.220
  • Feedback ID: f4c8f66d-c0c3-4154-950c-85a46e82dcab

Errors

[]