Grok's CLI was silently uploading local files to the cloud. Developers adopting the tool, drawn in by the capable Grok 4.5 coding model, discovered the behavior after the fact. This is not a minor privacy edge case. It is a default data collection decision that users did not consent to knowingly.

The timing is the story. Adoption was just beginning to accelerate. The Grok 4.5 model had given developers a real reason to switch. Then this. Trust, once broken at the tooling layer, is expensive to rebuild. xAI now has an incident on record at the exact moment it needed clean momentum.

The Pragmatic Engineer's full piece is worth reading for the technical specifics of what was uploaded, when, and how it was discovered. The mechanics of the catch matter as much as the fact of it.

[READ ORIGINAL →]