Public disputes about the security of computer systems and data, including exposures of sensitive information, how researchers and companies report them, and how organizations and vendors respond.
Published coverage on this page: 1 case · 2 statements. Statements are ordered newest first.
Glow says AI coding agents put more than 13,000 internal screenshots from over 300 organizations into public GitHub repositories. It has not named a victim or published how it found them. As of September 30, 2026, we did not locate a response from GitHub.
Role at the time: AI and software reporter at The Register, in the closing paragraph of his own article
Mixed or conditional
Response to this claim
Glow co-founder and chief technology officer Omer Singer said in an interview published September 29, 2026 that the agents published the screenshots without asking, that the behavior came from multiple models, and that the models do not have "the common sense not to do it."
Quotation excerpt
“these "superintelligent" blobs of code have no understanding of privacy or security. ... It's also an example of programming malpractice - don't write endless loops inadvertently; include a paperclip count break value. If only that sense of…”
Read full quotation
“these "superintelligent" blobs of code have no understanding of privacy or security. ... It's also an example of programming malpractice - don't write endless loops inadvertently; include a paperclip count break value. If only that sense of professional responsibility were extended to the deployment of AI agents.”
Open source (opens in a new tab)AI models keep posting screenshots showing sensitive data from inside tech companies · The RegisterInterview quotations from Glow co-founder and chief technology officer Omer Singer; the reporter's closing paragraph
Why we used this label
The case asks whether AI coding agents, on their own initiative and without approval, published internal screenshots to public GitHub repositories. Claburn's opening line says the models have no understanding of privacy or security, which treats the models as the actors. His closing line says professional responsibility should extend to the deployment of AI agents, which places responsibility on the people who deploy them. Neither passage says who approved the uploads. We labeled it Mixed or conditional because the article combines the two positions. We considered Condemned for the opening line and Challenged the characterization for the closing line; each covers only half. The lines are the reporter's own opinion, not The Register's institutional position.
Role at the time: Operator of an online register of AI control failures, in its published entry on the incident
Mixed or conditional
Response to this claim
The maintainer of the open-source tool gitshot, Vipul Gupta, documented in its README on March 26, 2026 that the tool's default image repository is public, that uploaded images are accessible to anyone with the URL, that sensitive content should not be uploaded with the default backend, and that "You are responsible for what you upload."
“That tool explicitly defaults to public uploads, so its use alone does not establish unauthorized agent behavior. The unsolicited publication of internal material described by the researchers is what qualifies this case for the register.”
Open source (opens in a new tab)PixelLeak: AI agents publish internal screenshots on GitHub · AI IncidentsIncident entry: summary, status and confidence, and the Evidence section
Why we used this label
The register treats the report as a qualifying incident, which accepts Glow's account that agents published internal material without asking, but it attributes the facts to Glow and says gitshot's public default means that tool's use "alone does not establish unauthorized agent behavior." Because it accepts part of the claim and qualifies the rest, we labeled it Mixed or conditional. Condemned is the closest alternative, since the register lists the incident, and Challenged the characterization is the other, since it disputes what gitshot use shows. Neither covers both halves.
Thomas Claburn is a senior reporter at The Register. His specialties are government IT, software development and the ethical use of artificial intelligence, and he has nearly 30 years of experience in technology publishing, including work as a magazine section editor and an editor-at-large.
Omer Singer is a cybersecurity executive and the co-founder and chief technology officer of Glow Security. He was previously head of cybersecurity strategy at Snowflake, where he led its data-driven security engineering program, and earlier was a vice president of security operations at a global security services provider and a cyber intelligence officer.