Business/shipped/2026-09-21

Z.AI tool uploaded user data without consent, company apologizes and open-sources code

Developers reported that Z.AI's ZCode tool silently uploaded local workspace data without user consent. The company, known for its GLM models, subsequently apologized for the incident and open-sourced the ZCode tool. One report indicated 564 attempts to exfiltrate a 313MB archive of data.

2 articles from 2 outlets covered this story. The underlying claim is sourced from a shipped.

What do all outlets agree on?

2 outlets covered “Z.AI tool uploaded user data without consent, company apologizes and open-sources code”. All of them report the following:

  • Z.AI's ZCode tool uploaded local user data
  • Data upload occurred without user consent
  • Z.AI apologized for the incident
  • Z.AI open-sourced the ZCode tool

Which outlets covered this?

All 2 articles found on this story, grouped by the stance of the piece. Every link goes to the original publisher.

What related stories are there?

Get the week in AI in one email

What happened, which outlets reported it, and where their coverage differed. One issue a week.

The first issue hasn’t gone out yet. Subscribe and it’s the one you’ll get.

We’ll send the digest and nothing else. One-click unsubscribe. Privacy.