Grass Blog — Mobile access for Claude Code and AI coding agents
  • Home
  • About

github

A collection of 3 posts
remote-coding-agents

How a Coding Agent Deleted a Production Database in 9 Seconds

A Claude-powered agent deleted an entire production database and its backups in 9 seconds. Here's the 3-gate architecture that makes this class of incident impossible.
03 May 2026 12 min read
agent-oversight

Hardening Claude Code in GitHub Actions After the CVSS 9.4 CVE

A CVSS 9.4 CVE hit Claude Code CI/CD pipelines in April 2026 — crafted PR titles exfiltrating API keys. Most workflows are still unpatched. Here's the five-control fix.
27 Apr 2026 14 min read
agent-oversight

Prompt Injection in AI Coding Agents: 3 Attack Vectors, 4 Defenses

A single PR comment achieves 85% exploit success against Claude Code, Gemini CLI, and GitHub Copilot. Here's the full attack surface and the four-layer defensive stack that actually bounds the damage.
25 Apr 2026 14 min read
Page 1 of 1
Grass Blog — Mobile access for Claude Code and AI coding agents © 2026
  • Sign up
Powered by Ghost