← Reddit

I lost my entire project files and conversations (my entire life's work) because of a goddamn stupid Claude bug....

Reddit · Glaidtors8 · June 14, 2026
A user's entire project files and conversations were deleted from Claude without consent after receiving a message about approaching usage limits. Simultaneously, the user received multiple attempted transaction notifications totaling over $20,000, despite actual usage remaining well within plan limits with only $3.77 in API charges for the month. The user requested assistance recovering the deleted conversations and investigating the unauthorized transaction attempts.

Detailed Analysis

A Reddit user posting to r/Anthropic describes losing three months of accumulated project files, chat histories, and workspace data within the Claude platform in what they characterize as an unprompted, spontaneous deletion event. The incident allegedly occurred immediately after the user received an in-app notification warning that their usage limits were approaching a reset window roughly two hours away. Before the reset could occur naturally, the user reports that all their Claude Projects, conversations, and associated files were wiped without any action or confirmation request on their part. Compounding the alarm, the user simultaneously received multiple unauthorized transaction attempt notifications totaling over $20,000 — a figure wholly inconsistent with their actual documented usage, which included $3.77 in API costs for the month and a $50 console balance.

The technical picture the user paints is internally inconsistent in ways that suggest either a severe platform-side anomaly or, more plausibly, a compromised account. The user notes that Claude Code running on their local terminal — authenticated to the same account — was entirely unaffected, while web-based surfaces including Claude Chat, Claude Projects, and CoWork were all impacted simultaneously. This selective impact across clients is a meaningful data point: local terminal sessions authenticated via API keys operate on a different credential pathway than browser-based sessions, which could indicate a session-layer compromise or a bug isolated to the web platform's account management system rather than a wholesale account deletion. The fraudulent transaction attempts are particularly significant and point strongly toward unauthorized third-party access rather than a unilateral platform-side bug.

The incident highlights a structural vulnerability that has become more consequential as AI platforms evolve from simple chatbot interfaces into persistent, stateful workspaces. Claude's Projects feature, along with memory and file storage capabilities, has repositioned Claude.ai as a long-term productivity environment where users store substantial intellectual work. This shift carries a commensurate increase in the stakes of data loss. Unlike a lost conversation in a stateless chatbot, losing a Claude Project can mean losing weeks or months of curated context, uploaded documents, and iterative AI-assisted work product — assets that users have come to treat as persistent and durable. The platform has not historically communicated robust data recovery or backup options to end users, which leaves individuals with little recourse when incidents like this occur.

Anthropic's expanding suite of products — including Claude Code, the Projects workspace, and the CoWork collaborative environment — has outpaced the development of enterprise-grade data governance and account security infrastructure that users implicitly expect at the "Max Plan" tier. The $20,000 transaction attempt anomaly, if accurate, suggests either that the account was targeted by credential theft enabling fraudulent API usage escalation, or that a billing system error generated phantom charge events coinciding with the data loss. Either scenario represents a serious trust and safety failure. Anthropic has faced growing scrutiny over account security practices as its user base scales rapidly, and incidents reported publicly on forums like Reddit frequently surface before official support channels resolve them, amplifying reputational risk. The user's note that "memory seems unaffected" after speaking with Claude suggests some backend state may have survived, offering a narrow possibility that data recovery through Anthropic's support team could be viable if escalated quickly with the evidence the user references.

Read original article →