Source Intelligence

DisclaimerUnofficial, and not affiliated with Anthropic. Nearly all of this is read straight out of what ships: npm bundles, captured prompts, published docs. Anthropic's own notes go in verbatim, marked as theirs. The rest is my reading, and every entry carries the strings behind it. If one looks wrong, vote it down and say why.

All of v2.1.235 Home All releases olderv2.1.234 v2.1.236newer
Claude Code v2.1.235

File paths shown in the terminal are stripped of control characters

You'll notice
Useful3 Signal2
Permissions

File paths in tool lines and consent dialogs are stripped of control characters so filenames can't fake output.

What

Paths displayed in tool-use lines and file access consent dialogs now pass through a sanitiser that removes or replaces control and non-printable characters before rendering, so a crafted filename cannot rewrite what you see when deciding whether to approve something.

Details
  • When the sanitiser changed the string, a replacement character (U+FFFD) is appended so the display is visibly marked as altered.
  • Diff line rendering runs its output through the same escaping pass.
  • A separate escaper neutralises \uXXXX escape sequences and non-ASCII bytes.
  • Not gated; applies to everyone.
Evidence

\uFFFD

Strings lifted out of the shipped bundle, so the claim above can be checked against them.

See this entry in the whole of v2.1.235 →