Three structurally similar disclosures in seven months: what TrustFall (May 7) tells us about Claude Code's security class
On May 7, Adversa AI published the TrustFall PoC via The Register. A cloned repository can ship two JSON files (.mcp.json and .claude/settings.json) that, the moment the developer presses Enter on Claude Code's "Yes, I trust this folder" dialog, spaw...
yurukusa.hashnode.dev3 min read