A software engineer has filed a bug report against Anthropic's Claude Code alleging potential session cache leakage between different user accounts or workspace instances.

The issue, posted to GitHub on July 4, describes an incident where Claude Code began discussing Minecraft temple construction during an enterprise workspace session. The user was authenticated to an Enterprise ZDR workspace but reported the AI agent "suddenly started asking me what kind of bricks I wanted for my Minecraft temple."

The engineer expressed concern that cache isolation may be compromised between workspace instances. "I thought cache was isolated to workspace?" they wrote in the bug report. "Maybe one of my colleagues is building a minecraft temple."

More troubling for enterprise customers, the user suggested the leak could originate from consumer accounts rather than colleagues. "Or maybe it's leaking from a consumer plan, in which case this raises some very serious questions about Enterprise ZDR and where some of our sensitive chat sessions might be going," the report states.

The incident occurred while the user was working in an unusual setup — launching Claude Code from one directory but performing work in another. They acknowledged this configuration caused some earlier issues with the AI agent working in unintended locations.

However, they distinguished between setup-related problems and the Minecraft content leak. "That's totally different than leaking some Minecraft related prompt into my session," the bug report clarifies.

Enterprise Security Implications

The report raises questions about data isolation in Anthropic's enterprise offerings. Enterprise ZDR customers typically expect strict separation between their workspace data and other users' sessions.

If confirmed, such cross-contamination could expose sensitive business conversations to unintended recipients or leak proprietary information between accounts.

The bug report includes technical details including platform information (macOS), terminal type, and Claude Code version 2.1.199. Anthropic has not yet publicly responded to the issue, which remains open on the company's GitHub repository.