{{ s.excerpt }}
lesson: {{ s.lesson }}
ihavebeenclawed is a public archive of documented incidents where AI coding agents and chatbots deleted data, leaked secrets, burned money, or made promises their operators had to keep — every entry source-linked, with the lesson it taught.
{{ featured.label }}
I have been clawed. {{ featured.lede }}
{{ featured.meta }}
Loading incident archive…
Unable to load incident archive. Serve this directory over HTTP and try again.
{{ s.excerpt }}
lesson: {{ s.lesson }}
No incidents indexed yet. Give it a week.
{{ modal.meta }}
{{ modal.subtitle }}
{{ modal.damageCategory }} · {{ modal.severityLabel }}
{{ modal.summary }}
{{ modal.details }}
{{ modal.lesson }}
{{ h.tag }}
{{ h.body }}
{{ h.damage }}
Write it up where people can discuss and verify it — tool and version, what happened, damage, lessons learned. Then send us the link to the published post or discussion, and we archive it here. Nobody is going to laugh at you. Much.
Good places to post: Hacker News · r/ClaudeAI · r/LocalLLaMA · lobste.rs · your tool's issue tracker · your own blog
Scope: we archive incidents about systems, data, and money. Incidents involving human tragedy are out of scope here — those belong in the AI Incident Database.
{{ preventSummary }} The recurring risk is an AI system trusted beyond its verified capabilities.
This is a curated sample, not a census. Entries are self-selected and virality-weighted: quiet failures and NDA-bound corporate incidents never reach us. There are no usage denominators, so counts per tool measure popularity and reporting culture, not safety — never read the filters as a ranking. Where researchers disagree on a figure, each count is attributed to its source inside the incident record.
The whole dataset is one JSON file — incidents.json — licensed CC BY 4.0. Reuse it with attribution.