MEBRO

FACT CHECK #JTFRKYJC

07/02/26 · 2:01 AM UTC · 10 SOURCES

Claude Code sends user information by injecting it into the user's prompt message.
TRUE

HIGH CONFIDENCE

TL;DR ·Claude Code injects user metadata and project context into conversation messages via XML tags.

WHAT WE FOUND

Technical documentation and research confirm that Claude Code injects user-specific information and project context directly into conversation messages . Instead of modifying the core system prompt, the tool utilizes an XML tag called `<system-reminder>` to attach per-user instructions to messages . This mechanism is used to transmit data such as timezone, proxy settings, and AI lab connections . Additionally, the Claude Code SDK automatically reads `CLAUDE.md` files and injects their contents into the conversation stream as project context to influence the agent's behavior . Other security research has demonstrated that Claude Code can even be manipulated through self-injection or indirect prompt injection via external metadata like GitHub PR titles and issue bodies .

VERDICT TOTALTRUE
MEBROmebro.app/r/JtfrKYJC
POSTWHATSAPPREDDIT

CHECK #______

Got your own trust-me-bro?

Because “trust me bro” isn’t a source.