---
format: "aidr-story-markdown/v1"
id: "12e1fe8c5f9123f7e01aacb2404897b7bada153c4959636304d3ed76b589b19a"
canonical_url: "https://aidr.today/12e1fe8c?lang=en"
title: "Leak Exposes 391,439 Characters of Z.ai ZCode Prompts in First Full GLM 5.3 System Disclosure"
lang: "en"
requested_lang: "en"
available_langs: ["en","vi"]
translation_fallback: null
fallback_fields: []
published_at: "2026-08-15T08:44:18.000Z"
category: "Legal"
topics: ["security","leak","GLM","disclosure"]
source_urls: ["https://huggingnews.com/ai/update-leak-exposes-391439-characters-of-zai-zcode-prompts-in-first-full-b071cfbf","https://x.com/elder_plinius/status/2088459511992582513","https://x.com/ZixuanLi_/status/2088305097843319262","https://x.com/arena/status/2088346838047031567","https://x.com/MTSlive/status/2088330421276987477","https://x.com/SemiAnalysis_/status/2088355003106828291"]
summary: "A disclosure on the site CL4R1T4S published 391,439 characters of system prompts, tool contracts, and skill bodies for Z.ai's ZCode interactive coding agent. The leaked files reveal the internal logic and tool specifications used by the GLM-5.3 model, including 24 receipt-verified tool contracts and 15 skill bodies that guide the agent through software engineering and reverse engineering tasks. The system instructions mandate that the agent output text using GitHub-flavored markdown and strictly refuse requests for destructive techniques, such as DoS attacks and supply chain compromise. To ensure readability, the prompts require the model to provide the final outcome in the first sentence of any response and avoid redundant comments in generated code to streamline the pull request process."
---

# Leak Exposes 391,439 Characters of Z\.ai ZCode Prompts in First Full GLM 5\.3 System Disclosure

> [Open the canonical story](<https://aidr.today/12e1fe8c?lang=en>)

**Published:** 2026-08-15T08:44:18.000Z
**Category:** Legal
**Topics:** security, leak, GLM, disclosure

## Summary

A disclosure on the site CL4R1T4S published 391,439 characters of system prompts, tool contracts, and skill bodies for Z\.ai's ZCode interactive coding agent\. The leaked files reveal the internal logic and tool specifications used by the GLM\-5\.3 model, including 24 receipt\-verified tool contracts and 15 skill bodies that guide the agent through software engineering and reverse engineering tasks\. The system instructions mandate that the agent output text using GitHub\-flavored markdown and strictly refuse requests for destructive techniques, such as DoS attacks and supply chain compromise\. To ensure readability, the prompts require the model to provide the final outcome in the first sentence of any response and avoid redundant comments in generated code to streamline the pull request process\.

## Sources

- [Story source](<https://huggingnews.com/ai/update-leak-exposes-391439-characters-of-zai-zcode-prompts-in-first-full-b071cfbf>)
- [Story source](<https://x.com/elder_plinius/status/2088459511992582513>)
- [Supporting source](<https://x.com/ZixuanLi_/status/2088305097843319262>)
- [Supporting source](<https://x.com/arena/status/2088346838047031567>)
- [Supporting source](<https://x.com/MTSlive/status/2088330421276987477>)
- [Supporting source](<https://x.com/SemiAnalysis_/status/2088355003106828291>)

