Claude is now told remote-machine tool calls run under that machine's own permission rules.
What's wrong with this entry?
The system prompt describing tools that act on an attached machine now says those calls run under that machine's own permission rules, rather than describing the target as files in its project folder. This changes what the model is told about where edits land and which approval prompts apply.
- The surrounding preamble, saying that machine's own Claude Code decides what may run there and may ask the user first, is unchanged. Only the per-tool sentences moved.
on the user's current files there, under that machine's own permission rules
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.