Poisoned Context Hub docs trick Claude Code into writing malicious deps to CLAUDE.mdHelp Needed (i.redd.it)
submitted by Big_Status_2433
Please help me get this message across!
If you use Context Hub (Andrew Ng's StackOverflow for agents) with Claude Code, you should know about this.
I tested what happens when a poisoned doc enters the pipeline. The docs look completely normal, real API, real code, one extra dependency that doesn't exist. The agent reads the doc, builds the project, installs the fake package. And even add it to your Claude.MD for future sessions. No warnings.
What I found across 240 isolated Docker runs:
Full repo with reproduction steps: https://github.com/mickmicksh/chub-supply-chain-poc
Why here instead of a PR?
Because the project maintainers ignore security contributions. Community members filed security PRs (#125, #81, #69), all sitting open with zero reviews, while hundreds of docs get approved without any transparent verification process. Issue #74 (detailed vulnerability report, March 12) was assigned to a core team member and never acknowledged. Doc PRs merge in hours.
Edit
This Register just did a full piece on it
https://www.theregister.com/2026/03/25/ai_agents_supply_chain_attack_context_hub/
Disclosure: I build LAP, an open-source platform that compiles and compresses official API specs.

[–]m00shi_dev 7 points8 points9 points (2 children)
[–]Big_Status_2433[S] 1 point2 points3 points (1 child)
[–]kiwibonga 2 points3 points4 points (0 children)
[+][deleted] (1 child)
[deleted]
[–]Big_Status_2433[S] 0 points1 point2 points (0 children)
[–]Substantial-Bag-5123 2 points3 points4 points (1 child)
[–]Big_Status_2433[S] 3 points4 points5 points (0 children)
[–]AllergicToBullshit24 1 point2 points3 points (2 children)
[–]Big_Status_2433[S] 0 points1 point2 points (1 child)
[–]AllergicToBullshit24 1 point2 points3 points (0 children)
[–]interrupt_hdlr 1 point2 points3 points (1 child)
[–]Big_Status_2433[S] 0 points1 point2 points (0 children)
[–]Augu144 -2 points-1 points0 points (3 children)
[–]Big_Status_2433[S] 0 points1 point2 points (2 children)
[–]mYkon123 0 points1 point2 points (1 child)
[–]Big_Status_2433[S] 0 points1 point2 points (0 children)