Settings entries containing auto-mode region markers are refused so they can't pose as classifier structure.
What's wrong with this entry?
Settings entries containing <cc_automode or </cc_automode are now refused. Those tags mark off sections of the text auto mode's classifier reads, so an entry containing one could have posed as classifier structure. This joins the existing refusal of invisible and bidirectional characters and of literal <settings_ tokens.
region tag; entries must not contain classifier region markers.
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.
-
v2.1.239
Wider Unicode normalisation of untrusted text
Both mention prompt safety
-
v2.1.242
Claude checks a checkout's git configuration before running git in it
Both mention safety
-
v2.1.242
Wider detection of tampered git directories
Both mention safety