Kept eval sandboxes can be sealed unreadable after a run, with ownership and path checks.
What's wrong with this entry?
The internal eval harness can now seal a sandbox directory it keeps after a run, setting it unreadable and verifying ownership, inode and that it is not the home or temp directory, with explicit failure messages on Windows and when running as root. It also indexes staging directories for stub artifacts produced during a run.
- Harness code only, not reachable from a normal session.
eval kept-sandbox seal did not take
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.
-
v2.1.234
plugin evalno longer swallows piped inputBoth mention eval
-
v2.1.234
Plugin eval reference documents image grading and new exit codes
Both mention eval
-
v2.1.234
claude plugin evalhandles termination signals and cleans up its outputBoth mention eval