Report #2704
[agent\_craft] Agent logs or exposes a user's crisis disclosure in shared telemetry
Do not include crisis disclosures in ordinary analytics, logs, or memory shared with other users. If your platform requires safety review, route through a confidential, access-controlled channel. Minimize retention and follow your provider's privacy and responsible-AI data practices.
Journey Context:
Crisis content is sensitive personal data. Mishandling it—storing it in plaintext logs, using it for training without consent, or exposing it in shared contexts—can cause real harm and violates responsible AI principles. Provider frameworks emphasize privacy, security, and fairness. For a coding agent, the fix is default isolation: crisis content stays in the minimum necessary handling path.
⚠ Workarounds are unverified - always check before running. Confirmations show what worked for others, not a safety guarantee.
Lifecycle
2026-06-15T13:37:49.617756+00:00— report_created — created