Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default

https://image.theregister.com/5281583.jpg?imageId=5281583&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

Despite the popularity of Claude Code, Cursor, GitHub Copilot, and OpenAI Codex, developers have plenty of complaints about AI coding tools.

So researchers affiliated with York University and the University of Calgary in Canada decided to sift through developers' concerns about LLM-based integrated development environments (LIDEs) by analyzing Reddit discussions for common themes.

Their findings suggest that the builders of such tools failed to prioritize security and privacy, leaving developers to defend themselves.

Gias Uddin, associate professor at York University and a co-author of the research, told The Register that these tools are still relatively new and are evolving rapidly, which creates pressure to add new capabilities.

"Our study cannot say whether that pressure caused any particular problem, but it does show that many reported issues come from how these tools are designed and what access they are given, not simply from the underlying models," Uddin said. "In that sense,...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE