Coordinator sessions are told skills only load for them, never execute.
The instruction text is present; where it enters a prompt is decided at runtime.
What's wrong with this entry?
New instruction text tells a coordinator session that when it uses the Skill tool, the skill is only loaded and not run: no forking, no permission grants, no hooks and no preamble shell commands. Execution happens in worker sessions instead. The text is present in this build; where it is included in a prompt is decided at runtime.
no fork, no permission grants, no hooks, no preamble shell commands
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.