Source Intelligence

DisclaimerUnofficial, and not affiliated with Anthropic. Nearly all of this is read straight out of what ships: npm bundles, captured prompts, published docs. Anthropic's own notes go in verbatim, marked as theirs. The rest is my reading, and every entry carries the strings behind it. If one looks wrong, vote it down and say why.

All of v2.1.246 Home All releases olderv2.1.245 v2.1.247newer
Claude Code v2.1.246

A tunnel request mode that strips inherited headers

Under the hood
Useful1 Signal3
Internals

Requests can be sent through a tunnel host with inherited headers stripped, only for callers that ask.

What

The shared HTTP request helper accepts a new tunnel option that sends the request to a tunnel host instead of the normal API base URL and removes a reserved set of headers before sending. It only does anything for callers that pass the option, and it refuses to run unless the request also targets the frame host with no authentication.

Details
  • Any header whose lowercased name is in the reserved set is deleted, so headers inherited from the surrounding request are not forwarded through the tunnel.
  • Misuse throws with the message "frameTunnel requires host 'frame' and auth 'none'".
Evidence

frameTunnel requires host 'frame' and auth 'none'

Strings lifted out of the shipped bundle, so the claim above can be checked against them.

See this entry in the whole of v2.1.246 →