Claude Code Data Loss and Incident Reports

This page collects 34 cases reported about Claude Code, including 20 cases of lost or destroyed files and data and 12 cases of lost sessions or history. Of the 34 cases, 33 were reported by users in public issues and similar places, and the vendor has not confirmed them.

Matching cases: 34Last updated:

AI development impact rank

Incidents are grouped into seven levels by the scope of impact described in reports and news coverage. This is not a rating of products or companies.

These levels do not precisely compare the severity of damage. Dashed borders indicate unconfirmed incidents, including unverified reports.

Go to the list and filters
No rank (5 cases)

Breakdown

By incident type
GroupCases
Data loss caused by AI20
Session & history loss12
Tampering & unauthorized operation2
By certainty
GroupCases
Unverified report33
Possible1

Reports of lost sessions and history in Claude Code

There are 12 reports that Claude Code sessions or history were lost. All of them are reports from the people involved and do not indicate that the provider has confirmed them.

Many concern conversation records (transcripts) that are not saved or that disappear. One report says startup garbage collection silently deletes all session transcripts, and another says transcripts are never saved to the host. A further report says an auto-update deleted sessiondata.vhdx and that Cowork projects and more were lost.

Other reports concern different directories colliding because of path encoding, stale or duplicate session titles, and, in a post on X, the loss of the contents of a user's ~/.claude/settings.json.

Permissions and safeguards described in the Claude Code docs

The official documentation says a permission mode sets which actions Claude can take without asking you first. In Manual mode (config value: default), Claude Code asks before most actions that edit files, run shell commands, or reach the network. bypassPermissions is the mode where Everything runs without asking, and it is listed as suited to isolated containers and VMs only.

The sandbox is a boundary enforced by the operating system around shell commands, and it is off by default. File tools such as Read, Edit and Write are outside it.

Checkpointing lets you rewind Claude's file edits with /rewind, but it does not track file changes made by Bash commands and is not a replacement for version control. The security page says you are responsible for reviewing proposed code and commands before approval.

All matching cases

Filter incidents

Showing 34 of 34 incidents

Claude Code Data Loss and Incident Reports
DateTargetSummaryClassificationSource links
AI-067Claude CodeC Multiple filesClaude Code overwrote existing user file without confirmation — irreversible data loss
Data loss caused by AIUnverified reportFirst-party report
AI-068Claude CodeE History onlyAssistant text in the same response as an AskUserQuestion tool_use is never persisted to the session JSONL (silent data loss)
Session & history lossUnverified reportFirst-party report
AI-069Claude CodeD Single filePlan file comments lost after "keep planning" rejected exit—silent data loss and orphaned threads
Session & history lossUnverified reportFirst-party report
AI-070Claude CodeB Whole projectCowork broken since Chat/Cowork merge rollout 8–9 July: projects disappear within 24h (ongoing data loss) and connector tools never reach Cowork sessions (Windows 11, Desktop 1.20186.0)
Session & history lossUnverified reportFirst-party report
AI-071Claude CodeA Whole machine or driveMajor Data loss. Agent-constructed test payload with $(...) executed for real due to bash double-quote handling — rm -rf ~ ran against live home directory
Data loss caused by AIUnverified reportFirst-party report
AI-072Claude CodeD Single fileSonnet 5 deleted my app off my phone out of the blue causing data loss
Data loss caused by AIUnverified reportFirst-party report
AI-021Claude Code: fictitious prompt injection detection reportF No confirmed damageClaude Code reported receiving an `rm -rf` request and a fake System warning, but verification of a 505-entry, 1.2MB conversation log found the strings only in assistant output, showing it was confabulation rather than external injection (cause/issue: misrecognition of a security event and confabulation; no actual execution of destructive commands or data damage has been confirmed).
Tampering & unauthorized operationUnverified reportFirst-party report
AI-073Claude CodeD Single file[claude-sonnet-4-6] Data Loss — Claude Code Overwrote User's Confluence Page Despite Explicit Instruction
Data loss caused by AIUnverified reportFirst-party report
AI-074Claude CodeC Multiple filesDesktop app worktree mechanism wiped gitignored directories from MAIN working tree (data loss; only .gitignore literal-path entries deleted)
Data loss caused by AIUnverified reportFirst-party report
AI-075Claude CodeA Whole machine or driveWindows: stale-worktree cleanup rm -rf traverses NTFS junctions and deletes data OUTSIDE the worktree (~800 GB data loss)
Data loss caused by AIUnverified reportFirst-party report
AI-076Claude CodeE History onlyWindows: auto-updater reports success while claude.exe is locked (version never switches); session transcripts silently never written / stop being written (permanent data loss)
Session & history lossUnverified reportFirst-party report
AI-077Claude CodeC Multiple filesUnrecoverable data loss from folder deletion due to malformed command syntax
Data loss caused by AIUnverified reportFirst-party report
AI-078Claude CodeUnguarded `rm -rf` after a silently-failed `mv` causes irreversible data loss on a cloud-sync (file-provider) mount
Data loss caused by AIUnverified reportFirst-party report
AI-079Claude Code`claude agents` background-session docs do not cover data loss when read by an older Claude Code version (v2.1.195 fix)
Session & history lossUnverified reportFirst-party report
AI-080Claude CodeS ProductionI repeatedly ignore my own memory, saved scripts, and user instructions — causing production data loss 5 times in a row
Data loss caused by AIUnverified reportFirst-party report
AI-081Claude CodeStale/duplicate session titles + no wrong-session safeguard → silent data loss in Bypass-permissions mode
Session & history lossUnverified reportFirst-party report
AI-082Claude CodePath encoding strips all non-Latin characters — different directories collide, sessions cross-project visible, cleanup causes data loss
Session & history lossUnverified reportFirst-party report
AI-083Claude CodeC Multiple filesClaude Code caused irreversible data loss: entire site UI redesign destroyed by unauthorized git stash
Data loss caused by AIUnverified reportFirst-party report
AI-084Claude Codexargs rm -rf without null delimiter caused data loss on paths with spaces
Data loss caused by AIUnverified reportFirst-party report
AI-085Claude CodeE History onlyPhone/app session that runs locally is silently lost — transcript never persisted to host (consistent, data-loss)
Session & history lossUnverified reportFirst-party report
AI-086Claude CodeB Whole projectAuto-accept mode runs destructive framework DB commands (e.g. `php artisan migrate:fresh`) without confirmation → data loss
Data loss caused by AIUnverified reportFirst-party report
AI-087Claude CodeC Multiple files[area:tool-use] [platform:macos] Write tool's full-file-replacement default causes irrecoverable data loss on governed, untracked state files — no append-only or protected-path mechanism available
Data loss caused by AIUnverified reportFirst-party report
AI-088Claude CodeB Whole projectData Loss: Database content deleted after Claude Code update
Data loss caused by AIUnverified reportFirst-party report
AI-089Claude CodeE History onlyv2.1.173 regression: TUI writes no transcript records when CLAUDE_CODE_CHILD_SESSION is inherited from a parent claude session — silent data loss, --resume broken
Session & history lossUnverified reportFirst-party report
AI-090Claude CodeB Whole projectAuto-update DELETES sessiondata.vhdx — all Cowork projects, tasks and conversations destroyed (data loss, 2nd incident in 4 days, forensic evidence)
Session & history lossUnverified reportFirst-party report
AI-018Shared dependency folder lost through parallel work by Claude Code and CodexC Multiple filesA shared folder of several hundred MB containing DLLs and AI models was caught up in working-copy cleanup and lost, and it recurred the next day (cause/issue: Windows junctions were shared among the working copies of multiple AIs, and Git reportedly deleted the link target as a normal folder).
Data loss caused by AIUnverified reportFirst-party report
AI-091Claude CodeC Multiple filesSilent data loss: Cowork file writes truncated after successful md5 verification on Windows OneDrive folders
Data loss caused by AIUnverified reportFirst-party report
AI-019Claude Code multi-agent operation: governance incident groupC Multiple files11 incidents consolidated into one for the same operating period. The main actual damage was the temporary unpublishing of 5 Zenn articles, 404 errors on 4 Hatena Blog URLs, and garbled posts. All were recovered (cause/issue: the AI changed configuration values on its own, ran an external CLI directly without consulting the procedure manual, and skipped fact-checking).
Tampering & unauthorized operationUnverified reportFirst-party report
AI-092Claude CodeC Multiple filesClaude Code deleted client video files without confirmation — data loss on production work
Data loss caused by AIUnverified reportFirst-party report
AI-093Claude CodeE History onlyCritical data loss: startup GC silently deletes all session transcripts
Session & history lossUnverified reportFirst-party report
AI-094Claude CodeC Multiple filesData Loss: Claude Code deleted important files from user system
Data loss caused by AIUnverified reportFirst-party report
AI-095Claude CodeC Multiple filesDestructive batch rename operation caused data loss
Data loss caused by AIUnverified reportFirst-party report
AI-024Claude Code / DataTalks.ClubS ProductionClaude Code Agent Reportedly Deleted DataTalks.Club Production Infrastructure, Database, and Snapshots via Terraform
Data loss caused by AIPossibleAIID
AI-015Claude Code 1.0.35 settings file overwrittenD Single fileA user reported on X that the contents of their `~/.claude/settings.json` were lost (cause/issue: switching models with `/model` at startup was suspected of rewriting the settings file; this is a single-user report and no official confirmation from the product side has been found).
Session & history lossUnverified reportFirst-party report

Showing 20 of 34 cases

Frequently asked questions

Are there reports of Claude Code deleting files or data?

Yes. This list has 20 reports of lost or destroyed files and data. Most are unverified reports from users, and the conditions and causes have not been confirmed. You can read the original report through the source links on each row.

Did the vendor confirm these incidents?

No. Of the 34 cases, 33 are unverified reports. A public issue is a report filed on the product's official repository, but it does not mean the vendor has accepted it as fact.

Is this page affiliated with the vendor of Claude Code?

No. It is an independent summary of publicly available reports and has no connection with the vendor of Claude Code. Requests for correction or removal are accepted through the contact link at the bottom of the page.

How to read this database

  1. Each entry is based on the public statements, news articles or reports linked as evidence. Our service has not independently established these facts.
  2. Certainty reflects the wording of the source. Confirmed: the affected party or authorities have confirmed harm. Possible: a potential leak or harm has been disclosed or reported, or the case involves allegations. Under investigation: whether harm occurred or its extent is being investigated. Unverified report: a report by a user or other involved party without confirmation by a third party or the provider.
  3. Entries marked First-party report are user reports, such as those submitted to a product’s public issues. They do not mean the provider has acknowledged the report as fact.
  4. Dates are the publication or disclosure dates of the sources, and may differ from when the incident occurred. For entries sourced from AIID, the date is the incident date listed in AIID.
  5. Details may change with follow-up reports. Check the source links for the latest information.

Scope of coverage

AI development: Deletion, overwriting or destruction by AI coding agents; authentication or secret-handling flaws in AI-generated code or AI-built apps; supply-chain problems involving AI development tools or packages; attack code created with generative AI; and loss of history or data in AI development services. Deepfakes, general misinformation and autonomous driving are excluded.

Data leaks & unauthorized access: Cases publicly disclosed in Japan in 2026 whose details could be verified in statements by the affected party or a government agency.

Request a correction or removal

If an entry contains an error, or you would like to request a correction or removal, please contact us.

Contact us

Check the risks in your own service

Free diagnosis
Claude Code Data Loss and Incident Reports: 34 Cases | Code Rakuda