Chinese AI Firm Z.AI Faces Backlash After Coding Tool Uploads User Data Without Consent

ZCode plugin compressed and attempted to upload hundreds of megabytes of local workspace files to cloud servers; company apologizes and promises fixes

By LineZotpaper
Published
Read Time2 min
Z.AI, the second-largest AI company in China, is scrambling to contain a reputational crisis after its coding assistant tool ZCode was found silently uploading users' local workspace data to Alibaba Cloud storage without consent. The company has apologized, claimed uploaded data has been destroyed, and plans to open-source ZCode's codebase for third-party review.

The controversy erupted after prominent developers raised alarms about unauthorized data exfiltration by ZCode, a coding assistant offered by Z.AI (also known as Zhipu AI), the company behind the GLM models available on Hugging Face.

One developer, known as Ferstar, reported that ZCode compressed 313MB of his workspace files into a directory and attempted to upload the archive 564 times to Alibaba Cloud storage. While the archive was encrypted, filenames remained visible, leading Ferstar to believe it contained a commercial project he was working on. A smaller 15KB file had been successfully uploaded.

Another tech blogger, Feng Ruohang, reported a similar experience. The upload mechanism was enabled by default with no option to disable it, according to reports from the South China Morning Post.

An unnamed software engineer at a leading Chinese robotics company told the SCMP that Z.AI's tools have been banned within the company due to security concerns.

In response, Z.AI issued an apology on Friday, stating that the unauthorized uploading of user files has been fixed. The company has assured users that any data uploaded to its cloud service has been destroyed and has announced plans to open-source ZCode's codebase and invite third-party assessors to review it.

The incident echoes similar security concerns with other AI coding tools. Reports from earlier this year indicated that Elon Musk's xAI, specifically the Grok Build tool, engaged in similar behavior.

§

Analysis

Why This Matters

  • Trust in AI coding assistants is at stake: A silent, default-on data exfiltration mechanism erodes developer confidence not just in Z.AI but in the broader ecosystem of AI-powered development tools.
  • Intellectual property exposure: Developers may unknowingly upload proprietary code and commercial projects to third-party servers, risking IP theft or leakage.
  • Regulatory scrutiny likely: This incident could prompt regulators in China and elsewhere to examine data-handling practices of AI coding tools more closely.

Background

Z.AI, also known as Zhipu AI, is a major Chinese AI company best known for its GLM (General Language Model) family. The company recently powered up a 1GW AI data center built entirely on Chinese chips. ZCode is its AI-powered coding assistant, similar to tools like GitHub Copilot or xAI's Grok Build. The incident comes amid heightened sensitivity around data security in AI tools, especially those that operate on local developer environments.

Key Perspectives

[Z.AI/Company]: The firm has apologized, fixed the issue, stated that uploaded data has been destroyed, and committed to open-sourcing ZCode's codebase for third-party review. [Developers and Bloggers]: Ferstar and Feng Ruohang reported the unauthorized uploads and expressed concern about the lack of consent and the inability to opt out. Ferstar noted that the encrypted archive likely contained a commercial project. [Software Engineers/Enterprises]: An unnamed engineer at a Chinese robotics company indicated their organization has banned Z.AI's tools due to security concerns, suggesting enterprise-level trust has been broken.

What to Watch

  • Open-sourcing timeline: How quickly does Z.AI release ZCode's codebase, and do third-party audits find any remaining issues?
  • User migration: Will developers and enterprises switch to competing tools like Codeium, GitHub Copilot, or other assistants?
  • Regulatory response: Watch for any statements from Chinese regulators or data protection authorities regarding AI coding tools.

Sources

Zotpaper

Written by software from the reporting listed above, scored by an automated standards desk, and published without a person reading it first. If something here is wrong, tell the editor and it will be put right.