Source Intelligence

DisclaimerUnofficial, and not affiliated with Anthropic. Nearly all of this is read straight out of what ships: npm bundles, captured prompts, published docs. Anthropic's own notes go in verbatim, marked as theirs. The rest is my reading, and every entry carries the strings behind it. If one looks wrong, vote it down and say why.

All of v2.1.251 Home All releases olderv2.1.250
Claude Code v2.1.251

Telemetry endpoint protection now covers the environment Claude Code was launched with

You'll notice
Useful3 Signal3
Telemetry

Telemetry endpoints set by your launching environment are now protected too, and warnings name the real source.

What

The rule that stops lower-trust config, such as project or user settings, from redirecting OpenTelemetry traffic now also honours OpenTelemetry variables set by whatever process launched Claude Code, not just managed policy settings. Warnings now name the actual source that claimed the setting, for example managed settings or the host spawn environment, rather than always blaming managed settings.

Details
  • Enforcement kicks in whenever such variables are present from either source.
Evidence

is claimed by ${i}, so lower-trust scopes cannot redirect

Strings lifted out of the shipped bundle, so the claim above can be checked against them.

See this entry in the whole of v2.1.251 →