CLAUDE.md Every-Request Injection

Description

Per Kangraemin MITM analysis: CLAUDE.md content is sent on every single API request, not just the first — prepended as a block on every turn's user message. Not placed in the API system field. This means CLAUDE.md edits take effect from the next turn onward without a session restart, but also that each turn re-pays the associated cached tokens.

Key claims

Relations

Sources

src-20260423-542f02260352