Claude Code is Anthropic’s coding-agent developer tool. The supplied search summary says version 2.1.257 began injecting repository-attribution instructions into remote sessions, potentially overriding project guidance and changing commit metadata; a GitHub issue separately confirms that Claude Code can append attribution-related metadata that documented settings do not fully disable. However, the snippets do not directly substantiate the exact injected “Co-Authored-By” reminder, its instruction precedence, or Anthropic’s response, while the security reports concern related but distinct repository-controlled configuration risks.
The radar already tracks both halves of this report: opaque, versioned Claude Code harness instructions on `radar:claude-prompt-time-machine` and harness-driven commit metadata changes on `radar:claude-code-session-url-metadata`. It fits Scott’s existing position that textual project guidance is subordinate to provider-controlled prompt architecture and that consequential controls need deterministic enforcement, but the weakly substantiated report adds little beyond another instance of that known boundary.
ip:concept.chat-era-trust-modelip:concept.manners-vs-physics-prompt-governanceip:concept.claude-md-patterndev:concept.deterministic-agent-control-planeradar:claude-prompt-time-machineradar:claude-code-session-url-metadata
queries asked of Scott's wikis
- coding-agent instruction hierarchy and hidden system prompts
- agent harness control plane versus project guidance
- remote coding-agent session trust boundaries
- AI-generated commit attribution and provenance policy
- observability of harness-injected instructions
- repository configuration overriding agent safeguards
2026-09-03T15:55:49Z
Refreshed discussion further converges on documented settings-level attribution taking precedence over CLAUDE.md, with hooks available for deterministic enforcement. The observed harness guidance is credible, but it is absorbed as a known control-plane hierarchy rather than evidence of a hidden settings bypass or novel control failure.
2026-09-03T13:29:59Z
Multiple users now support that Claude Code injects attribution guidance above CLAUDE.md, making the precedence behavior credible. However, the evidence still points to an intended settings-level policy with hook-based enforcement, not a bypass of documented controls or a newly exposed hidden control failure.
2026-09-03T12:22:30Z
evidence attached: reddit.post.1w651m7 — This is an independent corroborating report of Claude Code injecting repository-level attribution instructions that can override user guidance.
2026-09-03T11:26:23Z
The refreshed discussion more clearly supports a documented settings-precedence explanation: attribution is controlled through settings rather than CLAUDE.md, with hooks available for deterministic enforcement. A tangential complaint about skill invocation does not corroborate the version-specific remote-session injection or establish a hidden control failure.
2026-09-03T10:32:02Z
A second user complaint makes the attribution conflict worth watching as a recurring behavior, but it does not verify the original version-specific remote-session injection or show that documented settings and hooks are bypassed. The case remains a possible harness-control issue rather than an established hidden override.
2026-09-03T10:22:00Z
evidence attached: reddit.post.1w62h7e — Independent user corroboration strengthens the open case that Claude Code's harness can inject repository-level instructions overriding project guidance.
2026-09-03T07:28:18Z
The refreshed comments remain repetitive amplification of the configuration explanation, with no independent reproduction or evidence that the alleged injection defeats documented settings or deterministic hooks. The hidden harness-boundary interpretation is therefore still possible but increasingly looks like a misapplied project-guidance issue rather than a new control failure.
2026-09-03T06:28:28Z
The refreshed discussion adds no independent reproduction and instead frames the behavior as a documented cloud-settings/configuration issue, weakening the claim of an undocumented harness override. The hidden control-boundary hypothesis remains possible but is still supported only by the original report.
2026-09-03T06:26:32Z
grounded: known/low — The radar already tracks both halves of this report: opaque, versioned Claude Code harness instructions on `radar:claude-prompt-time-machine` and harness-driven
2026-09-03T06:22:35Z
case created — The version-bounded reproduction alleges a concrete undocumented harness behavior with implications for instruction precedence and repository provenance.