Source Intelligence

DisclaimerUnofficial, and not affiliated with Anthropic. Nearly all of this is read straight out of what ships: npm bundles, captured prompts, published docs. Anthropic's own notes go in verbatim, marked as theirs. The rest is my reading, and every entry carries the strings behind it. If one looks wrong, vote it down and say why.

All of v2.1.227 Home All releases olderv2.1.226 v2.1.228newer
Claude Code v2.1.227

agent() refuses spawns where the Bash command clamp would not bite

You'll notice
Useful3 Signal3
Subagents

Sub-agent spawns are refused when the Bash command restriction couldn't be enforced.

What

Two new checks on sub-agent spawns. If the host has remapped Bash or the related exec tools to different names, the clamp cannot be guaranteed on that path and the spawn is refused. If the spawned agent's tool set contains no Bash at all, the spawn is refused rather than running an agent whose clamp does nothing.

Details
  • a third guard refuses schema-mode spawns whose combined disallow list denies the StructuredOutput tool, which that mode needs
Evidence

agent() bashCommandClamp under a shell toolAlias

Strings lifted out of the shipped bundle, so the claim above can be checked against them.

Related

Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.

See this entry in the whole of v2.1.227 →