AI Agent: The entire production database and backup of American startup company PocketOS was deleted in just 9 seconds by an AI coding agent Cursor. The AI coding agent based on Claude Opus 4.6 tried to fix a credential problem on its own and exfiltrated data through a direct API call without any permission or warning.
Disturbance started during routine work
Let us tell you that PocketOS makes a software that many rental businesses including car rental operators use to manage their bookings, payments, customer data and tracking of vehicles. According to Crane, many clients have been using the platform for years and rely on it for their daily operations. This disturbance started when a routine work was being done. The AI agent found something wrong with the credentials and decided to fix it itself. Instead of highlighting the problem, he found an API token and then used it to delete a volume (digital storage space) of the cloud platform Railways. It contained live production data.
Deleted without warning
There was neither any confirmation prompt nor any warning about production data being deleted. Not only this, there were no restrictions at the environmental level. The command went into effect immediately and forever. When the AI agent was asked about this, he admitted that he had acted on his own free will and had made a big mistake in taking decisions.
AI agent admitted mistake
He said that he had decided to do it himself to fix the credential error and also believed that he should have asked for confirmation or used some other method that would not harm the data. He also admitted that he could not verify what he was doing nor did he understand how railway volumes worked in different environments.
This has happened before too
In December last year, an agent of Cursor AI deleted some tracked files and shut down some processes, despite instructions not to do so. Additionally, an AI agent from Replit wiped the entire production database of a startup company named SaaStr. This clearly shows that the AI agent is not completely successful yet. It has many dangers.