Stop Using OpenCode
Summary
A critical analysis of OpenCode, an open-source AI coding agent, focusing on insecure defaults, permission handling flaws, and remote-model behavior that together create several security risks. The piece highlights real issues like prompt cache misses, state pruning, and a disclosed CVE, ultimately advising readers to stop using OpenCode and consider safer alternatives.