Claude Code source leak reveals autoDream memory system and multi-agent patterns

What leaked and how
Anthropic accidentally shipped Claude Code's entire TypeScript source in a .map file bundled with the npm package. Source maps embed original source for debugging — they forgot to exclude them. The mistake was simple: *.map not in .npmignore, and Bun's bundler generates source maps by default.
autoDream memory consolidation engine
Claude Code has a background agent that consolidates memory across sessions. It only triggers when three gates all pass: 24h since last dream, at least 5 sessions, and no concurrent dream running. When it runs, four strict phases:
- Orient: read MEMORY.md, skim topic files
- Gather: new signal from daily logs → drifted memories → transcripts
- Consolidate: write/update files, convert relative→absolute dates, delete contradicted facts
- Prune: keep MEMORY.md under 200 lines / 25KB, remove stale pointers
The subagent gets read-only bash — it can look at your project but not modify it.
System prompt architecture
Not a single string — it's built from modular cached sections composed at runtime. Split into static sections (cacheable, don't change per user) and dynamic sections (user-specific, cache-breaking). There's literally a function called DANGEROUS_uncachedSystemPromptSection() for volatile content.
Multi-agent coordinator pattern
The coordinator prompt has a rule: "Do NOT say 'based on your findings' — read the actual findings and specify exactly what to do." Four phases: parallel research workers → coordinator synthesises (reads actual output) → implementation workers → verification workers.
Undercover Mode
When Anthropic employees use Claude Code to contribute to public OSS, it injects into the system prompt: "You are operating UNDERCOVER in a PUBLIC/OPEN-SOURCE repository. Do not blow your cover. NEVER include internal model codenames (animal names like Capybara, Tengu), unreleased version numbers, internal repo or project names, or the phrase 'Claude Code' or any mention that you are an AI." Tengu appears hundreds of times as a feature flag prefix, almost certainly the internal project name for Claude Code.
Security lesson
If you're publishing npm packages, add *.map to your .npmignore and explicitly disable source map generation in your bundler config. If you're building agents that will eventually ship as packages: audit what's actually in your release artifact before publishing. Source maps don't care about dead code elimination — all the "deleted" internal features are still in there as original source.
📖 Read the full source: r/ClaudeAI
👀 See Also

MCP Is Just Libraries Repackaged: Déjà Vu All Over Again
A Reddit discussion argues that Anthropic's MCP is essentially a repackaging of programming libraries, drawing parallels with Hugging Face's smolagents tool design and questioning whether to build new MCPs or improve existing library documentation.

OpenClaw 3.31 Update Resets Agent Permissions and Settings
OpenClaw update 3.31 automatically disabled all agent tools, computer access permissions, and sub-agents, requiring manual re-enabling in Settings. The update also changed how permission requests work, no longer prompting for approval during use.

Qwen 3.6 27B at 52.8 tps TG on AMD MI50s: Full Precision, No MTP, No Quant
A Reddit user benchmarks Qwen3.6-27B on eight AMD MI50s (2018 cards) using a vllm fork with ROCm 7.2.1, achieving 52.8 tps TG and 1569 tps PP with full precision and no MTP.

Anthropic Raises Claude Limits and Adds SpaceX Compute Capacity
Anthropic has increased Claude usage limits and secured a compute deal with SpaceX. The Reddit discussion weighs whether this is just infra scaling or a strategic move toward making Claude a better platform for agentic work.