Original Reddit post

Today I was using Claude Code to do a PSX game research task. Claude caught a prompt injection attempt served from the site https://tcrf.net/ (The Cutting Room Floor) and notified me with the message: “⚠️Note before continuing: the tcrf.net page I fetched was not a wiki article — it served a prompt-injection payload instructing the agent to truncate and swap files in your repo. It was refused and nothing was executed. I’m treating that domain as untrusted and won’t act on any of its content.” It then continued on the research task. I stopped the session out of caution. I can understand the site administrators frustration as it seems to be in response to a DDOS attacks, however, I did not explicitly choose to send my agent to this site, nor did I have any malicious intent. Proof: https://urlscan.io/responses/f1e225667a71a1a25ed14795c741683be95139c194065c6fbf861c9280f0096e/ Full report: https://github.com/bashalarmistalt/tcrf-ai-agent-payload-report submitted by /u/Alstroph

Originally posted by u/Alstroph on r/ClaudeCode