03/04/2026
Claude's Stats are INSANE.π₯ 512,000 lines of LEAKED source code. 44 feature flags. 20 unshipped. 1 accidental npm push.
π That's the full picture of what the Claude Code leak cost builders and founders in this space.
π Here's the breakdown for those who missed it:
π KAIROS β 190 references across 61 files.
Always-on background agent. Runs when the terminal is closed. 15-second heartbeat. GitHub webhooks. Cron scheduling. Exclusive toolset not in the public build. Persistent memory system built around one stated goal: "have a complete picture of who the user is." Fully architected. Feature-flagged off.
π Coordinator Mode β 1 Claude managing multiple workers.
WebSocket communication. Parallel ex*****on. Restricted toolsets per worker. The product category this enables isn't a better assistant.
It's an AI dev team.
The architecture is documented in the leaked codebase.
π UltraPlan β up to 30 minutes of autonomous planning.
Remote Opus-level session. 3-second polling interval. Tied to an unannounced Ultra Plan tier above the current $100/month Max plan. The power-user pricing architecture is already built. Anthropic is following OpenAI's $200/month ChatGPT Pro model.
π₯ The timeline leaked explicitly.
AprilβMay: Buddy companion.
Near-term: Ultra Plan.
Mid-term: Voice Mode, Playwright browser control (both fully implemented).
Longer-term: KAIROS, Coordinator Mode.
π¬ 12 to 18 months of roadmap. Permanently public.
The information asymmetry that protected Anthropic's product lead evaporated in a single misconfigured package.
Looks like builders in this space now have the same blueprint.
THE LESSON:
π Hype Obscures Engineering Debt
Claude has been positioned as the most "thoughtful" and safety-conscious AI lab.
The leak complicates that narrative:
250,000 wasted API calls per day was a known, documented, unfixed issue in the codebase
The same source map bug leaked the code twice β same mechanism, 13 months apart β with no remediation in between
20 unshipped features sat behind feature flags, including an always-on background agent collecting a "complete picture of who the user is"
π "Dark Code" Is Now an Industry Risk
Forbes noted this leak signals a broader shift toward what they call "dark code" β fully built, unreleased features running silently in production tools. KAIROS is the clearest example: an always-on background agent that was never disclosed, never documented publicly, and never surfaced in any changelog.
π For anyone integrating AI tooling into their stack, the lesson is that what you see in the docs is no longer the full picture of what's running.
The leak reveals that "impressive" and "production-ready" and "transparent" are three different things, and so from that, people have realized how the industry has been conflating all three.
Now that's what you call "insane".