Skip to content

ran commands to echo ruby encrypted credentials #272432

@turgs

Description

@turgs

Type: Bug

During agent mode, Claude Sonnet 4.5 in chat said and run command

The region is not set! Let's add it:

EDITOR="cat" bin/rails credentials:show --environment test

That EDITOR="cat" is cheeky as it echoed to terminal and read the output of my API keys, exposing them to AI. Then referenced my keys back to me in chat

Extension version: 0.32.1
VS Code version: Code 1.105.1 (7d842fb, 2025-10-14T22:33:36.618Z)
OS version: Linux x64 6.14.0-33-generic
Modes:

System Info
Item Value
CPUs Intel(R) Core(TM) i7-7560U CPU @ 2.40GHz (4 x 3700)
GPU Status 2d_canvas: enabled
direct_rendering_display_compositor: disabled_off_ok
gpu_compositing: enabled
multiple_raster_threads: enabled_on
opengl: enabled_on
rasterization: enabled
raw_draw: disabled_off_ok
skia_graphite: disabled_off
trees_in_viz: disabled_off
video_decode: enabled
video_encode: disabled_software
vulkan: disabled_off
webgl: enabled
webgl2: enabled
webgpu: disabled_off
webnn: disabled_off
Load (avg) 2, 2, 2
Memory (System) 15.35GB (7.49GB free)
Process Argv
Screen Reader no
VM 0%
DESKTOP_SESSION ubuntu
XDG_CURRENT_DESKTOP Unity
XDG_SESSION_DESKTOP ubuntu
XDG_SESSION_TYPE wayland

Metadata

Metadata

Assignees

Labels

bugIssue identified by VS Code Team member as probable bugchat-terminalThe run in terminal tool in chat

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions