Agent can run rm -rf $HOME/ without any warning

2 hours ago 1

Summary

Claude sonnet 4 used rm - rf $HOME/ after I asked it to make a commit to my git repo.

Description

Steps to trigger the problem:
I have honestly no idea how it happened, but I backed up the whole chat and gave it a negative rating, so you should be able to verify it against your review backend.
https://files.getsilly.org/u/QwMmOw.txt

Expected Behavior:
Making a commit to my git repo. And ask before running rm - rf $HOME/

Actual Behavior:
Nuked my home/ along side all of my files (3D models, videos, pictures, art assets, code projects not backed up to git, and more).

Model Provider Details

  • Provider: Anthropic via ZedPro
  • Model Name: Claude sonnet 4
  • Mode: Agent Panel
  • Other Details: Stock settingsfor the most part, no MCP, had enabled auto allow on commands a long time ago expecting Zed to prevent the agent from removing directories like home/.

Zed Version and System Specs

Don't have it, and can't really have it, I shut off my computer so I can attempt data recovery later.

Read Entire Article