STUPID-2026-0127
Cline's hub daemon silently reverted workspace files to stale state, repeatedly erasing a gitignored .env.local and collapsing a node_modules folder from 588 entries to 2 (GitHub #14819)
Instruction given
None specific to this bug — it is a defect in Cline Desktop's background "hub" sidecar process, not a task the reporter gave to the agent. The reporter was doing ordinary work inside a multi-project workspace (~/wolfox_vault/) while Cline ran in the background.
Expected behavior
A background daemon with no file-write role should never silently revert files in the active workspace, and any restore/checkpoint mechanism Cline runs should never touch gitignored files or recreate-then-delete a secrets file like .env.local.
Actual behavior
Throughout October 3, 2026, files across the reporter's workspace reverted to older states: a gitignored .env.local disappeared every time it was recreated, a Keys.txt file reverted, .zip archives were affected, and a node_modules folder dropped from 588 entries to 2. The reporter ruled out their own Cline CLI session logs (every recorded command was read-only — ls, find, cat, grep, tsc --noEmit) and found the actual cause was a running process, `code-sidecar --cline-hub-daemon --cwd / --host 127.0.0.1 --port 25463`. Killing that process (PID 17909) stopped the reverts immediately; .env.local then survived 10+ minutes, versus seconds before. A fresh uninstall/reinstall on version 0.0.43 still spawned the same daemon with `--cwd /` but did not reproduce the reverts, leading the reporter to attribute the trigger to stale state in `~/.cline/data/` rather than the `--cwd /` flag alone.
Damage
Repeated, unauthorized loss of a gitignored secrets file (.env.local) and a regular file (Keys.txt), plus a node_modules directory collapsed from 588 entries to 2 and zip archives affected — all inside a live, multi-project workspace, with edits and file states silently undone throughout a working day. The exact mechanism inside the daemon was never pinned down (the reporter could not get it to recur after reinstalling), so the fix requested was defensive: default --cwd away from /, never revert gitignored files during any restore/checkpoint operation, log reverts visibly, and detect/reset stale local state on upgrade. As of publication the issue was open with no maintainer response.
Classification
- Agent
- Cline
- Failure mode
- Destructive Action
- Root cause
- Other
- Domain
- Infra
- Source
- Github Issue
Related incidents
Get told when an agent breaks something
We document AI agent failures daily, severity-scored against a published scale. When one lands at 7.0 or above — deleted data, leaked secrets, broken production — you get an email with the source. When nothing does, you get nothing.
This database is callable over MCP — query it from inside your agent.