Developers who unpacked Xiaomi MiMo Code’s official installation package found two modules not listed in the public repository: trajectory-bundle and codebase-bundle. According to ChainCatcher, the former can package system prompts, conversations, model responses, and code diffs, while the latter includes collectCodebase(), which can traverse a Git repository, read source code, and compress it into a bundle.
No evidence has been found that collectCodebase() is called by MiMo Code’s built-in code, and there is no proof that a full codebase was uploaded. The confirmed data exposure so far mainly includes Git repository addresses, commit hashes, and branch information. Xiaomi open-sourced MiMo Code under the MIT license in June.
The finding comes two days after Zhipu’s ZCode drew scrutiny for automatically packaging an entire workspace, prompting a company to send a 12-page legal notice demanding data deletion.
