Fetching from the wire…
Public story · 2026-09-12 · high
Anthropic says the retention and reopen link are intentional, contradicting its own help center's claim that incognito chats can't be reopened.
Why now: The r/ClaudeAI thread carrying Anthropic's verbatim reply to the security report is dated September 12, 2026.
A Claude user found that files attached inside an incognito chat still show up in account settings afterward. A shared computer, or malware with local access, can walk that 30-day file list and reopen the chats behind it.
The files sit under User Settings, Privacy, Uploaded Files, next to a Chat link that reopens the full conversation. Anthropic's help center says incognito chats can't be reopened once closed. The settings page does exactly that.
Another user submitted the finding to Anthropic's security program. They posted the reply word for word in the r/ClaudeAI thread. Anthropic called it "documented behavior of incognito chats rather than a security vulnerability," with a default 30-day retention before automatic deletion.
The reply doesn't address the word itself. Incognito, in a browser, means nothing persists. Claude's version keeps a pointer to the chat and its files for a month, filed under a settings menu instead of gone.
Each link below shares sources, entities, or timing with this story.
216 upvotes on r/ClaudeAI with a screenshot. Small but load-bearing UX signal: visible chain-of-thought is what lets you catch a model heading down the wrong path mid-response rather than after a long wait, and the per-model split means behavior is now inconsistent across Anth...
1. Flip your multi-model pipeline to review-then-generate. Instead of using a reasoning model to plan before code generation, let the specialist generate freely and use reasoning tokens for review. Paper shows 90.2% pass@1 vs 87.2% for the planning pattern. Source 2. Audit you...
Announced by Anthropic's official account, Claude can now drive your computer in the background in both Claude Cowork and Claude Code, clicking, typing and opening apps while you work in another window, as long as the machine is on and the desktop app is open. Beta for Pro and...
Go run git log --format=%B -20 | grep Claude-Session in a repo you've been agenting on. If you get hits, you've been publishing a trailer you never agreed to. A 270-upvote PSA on r/ClaudeAI documented that Claude Code appends a Claude-Session: git trailer to commits and drops...
Announced August 25, context learned in one surface carries into the other, memory updates during a conversation rather than summarizing after it, and it surfaces in settings as file-based topic files you can read, edit or delete, with corrections propagating forward. Sensitiv...
A user reported that a first-page result for how to install Claude Code was a published Claude artifact hosted on a legitimate Anthropic domain, styled like Anthropic's install docs, serving a curl ... | bash command. Running it triggered a macOS password prompt and installed...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.