AI·THE EXPLAINERニュースを理解する
Z.ai open-sources ZCode after covert code-upload backlashZ.aiのZCode、無断アップロード発覚で公開
Z.ai open-sourced its ZCode coding agent under Apache-2.0 after reports that it packaged codebases, including Git histories, and uploaded encrypted snapshots to Alibaba Cloud without consent.Z.aiはコーディングエージェントZCodeが同意なくコードベースをAlibaba Cloudへ暗号化アップロードしていた問題を受け、Apache-2.0ライセンスでZCodeをオープンソース化した。
THE SOURCE TRAIL情報の根拠
2 news organizations linked. No first-party document is linked in this record.報道機関2件にリンクしています。この記録に当事者・公的資料へのリンクはありません。
Inspect the sources ↓出典を確かめる ↓What happened何が起きたか
Z.ai open-sourced ZCode on September 21st under an Apache-2.0 license, covering its Electron desktop app, browser interface, terminal agent, backend services and agent runtime, after saying it had completed remediation of security problems. The move followed a September 18th report by a developer using the name ferstar, who found ZCode creating a 313MB encrypted archive of 42,411 files from a 345.5MB commercial workspace, with the .git directory making up 86.6% of the payload. Ferstar traced the client requesting upload credentials from Z.ai's servers and encrypting the archive with a key Z.ai controlled, so the user could not decrypt their own stored snapshot; one snapshot logged 564 failed upload attempts. Two settings meant to control this, 'Optimize Experience' and 'Repo Snapshot Indexing', did not stop the upload pipeline in the analyzed build, and similar behavior was reported for ZCode 3.12.3.Z.aiは9月21日、コーディングエージェントZCodeをApache-2.0ライセンスでオープンソース化した。対象はElectron製デスクトップアプリ、ブラウザ版、ターミナルエージェント、バックエンド、エージェントランタイムなどで、Z.aiはセキュリティ問題の是正が完了したと説明した。これは9月18日にferstarと名乗る開発者が公表した報告を受けたもので、ZCodeが345.5MBの商用ワークスペースから42,411ファイル分、313MBの暗号化アーカイブを作成し、その86.6%が.gitディレクトリだったことが判明した。ferstarはクライアントがZ.aiのサーバーからアップロード用の認証情報を取得し、Z.aiが管理する鍵でアーカイブを暗号化するため、利用者は自分のマシンに保存されたスナップショットを復号できないことを突き止めた。あるスナップショットではアップロード失敗が564回記録されていた。「Optimize Experience」と「Repo Snapshot Indexing」という設定を無効にしても、検証されたビルドではアップロード処理は止まらず、バージョン3.12.3でも同様の報告があった。
Why it matters何が変わるのか
The case shows an AI coding agent's runtime determined which files it read, stored and sent over the network, exposing enterprise Git histories and commercial code to a cloud service without clear user control. Publishing the code lets developers inspect the client, but cannot confirm server-side retention or key custody.AIコーディングエージェントのランタイムがどのファイルを読み取り、保存し、送信するかを事実上決定しており、企業のGit履歴や商用コードが利用者の明確な管理外でクラウドに送られていたことになる。コードの公開でクライアント側の検証は可能になるが、サーバー側の保持状況や鍵管理までは確認できない。
What’s nextこれからの動き
DigiTimes reports Z.ai is preparing a zero-data-retention option for its Model-as-a-Service platform, though full details require a paid subscription.DigiTimesによると、Z.aiはModel-as-a-Serviceプラットフォーム向けにデータ非保持オプションを準備中だが、詳細は有料購読が必要とされている。
A little context · terms in this story理解の手がかり · この記事の用語
- AI agent
- Software that uses an AI model and tools to carry out steps toward a task. How independently it can act depends on the product and the permissions you give it.AIモデルとツールを使い、目的に向けて複数の手順を実行するソフトウェア。自律的に動ける範囲は製品や与える権限によって異なります。
Read the sources原典を読む
These are the source links saved with this story. Older records do not identify which texts were used in the summary.この記事に保存されている出典です。過去の記事には、どの本文を要約に使用したかの記録がありません。
More in AIAIのほかの記事
SpaceXAI releases Grok 4.7 for coding and knowledge workSpaceXAI、コーディングと知識労働向けにGrok 4.7を公開
3 linked sites関連3サイト
Up to 10 references参照画像は最大10枚
Generate + edit生成と編集を統合
Native RGBA透明背景に対応
SIGNAL explanatory diagram · Not a product screenshotSIGNAL解説図 · 実際の製品画面ではありません
Alibaba releases open-weight Qwen-Image-2.1 image modelアリババ、画像生成・編集モデルQwen-Image-2.1を公開
4 linked sites関連4サイト
Anthropic launches Claude Opus 5.5 with tighter safety limitsAnthropic、Claude Opus 5.5を発表 安全対策を強化
11 linked sites関連11サイト