Remix.run Logo
pseudosavant a day ago

What kind of enforceable guarantees could we actually get that xAI won't use our private code for training? Not empty promises, guarantees that have legal teeth. This applies to anything with xAI or Cursor though, especially after last months' revelation that Cursor was uploading every repo it touched.

sandeepkd 3 hours ago | parent | next [-]

Unless you are an enterprise no one will be offering you such a guarantee. Even with the enterprise the bar has gone down a lot on expectations and compliance, every one is carrying/buying the SOC2 compliance certification these days.

vorticalbox 3 hours ago | parent | prev | next [-]

This question also applies to OpenAI, anthopic, GitHub (Microsoft) and any server you send your data too.

pseudosavant 2 hours ago | parent [-]

Not in the same way really. There aren't examples of OpenAI, Anthropic, or GitHub/Microsoft doing the sketchy things that xAI has been involved with. Those companies care a lot about the reputational damage that would come from flouting their customer's data privacy obligations.

Cursor/xAI was making a full copy of every repo it ever touched within the last month, and when caught, just acted like that was an accident. A system to download every repo you touch, and then upload it to persistent cloud storage, doesn't just happen by accident.

dbbk 13 hours ago | parent | prev [-]

I mean I think the auto uploading of repos already gives you the answer. This is untrustworthy.