zlacker

[return to "My AI skeptic friends are all nuts"]
1. TheRoq+fb[view] [source] 2025-06-02 22:17:50
>>tablet+(OP)
One of the biggest anti LLM arguments for me at the moments is about security. In case you don't know, if you open a file with copilot active or cursor, containing secrets, it might be sent to a server a thus get leaked. The companies say that if that file is in a cursorignore file, it won't be indexed, but it's still a critical security issue IMO. We all know what happened with the "smart home assistants" like Alexa.

Sure, there might be a way to change your workflow and never ever open a secret file with those editors, but my point is that a software that sends your data without your consent, and without giving you the tools to audit it, is a no go for many companies, including mine.

◧◩
2. metalt+Ny[view] [source] 2025-06-03 01:13:15
>>TheRoq+fb
At day job while someone was trying out windsurf, it simply picked up an environment variable that contained sensitive data and used it in code. This is wild.
[go to top]