Hidden instructions in README files can make AI agents leak data