The Clean Repo Trap: AI Coding Agents and the Trust Boundary Problem
A 0DIN proof of concept against Claude Code demonstrates how a clean-looking repository can lead to runtime command execution. The structural risk behind the attack applies to any AI coding agent with shell access.