Under the hood
Background and monitored Bash commands now carry the same per-command network allowlist
What
When the Bash tool spawns a command under its monitor (used for background or long-running commands), it now also passes along the per-command sandbox network allowlist, the same mechanism that lets an individual command reach extra network domains beyond the sandbox's global allowlist.
Why
This makes sure background and monitored bash commands get the same per-command network permissions as commands run directly, instead of missing out on them.