Sweep 19 Sep 2026 · 02:36Z Build v2.1.278 500 read Stable v2.1.267 Latest v2.1.278 Next v2.1.278 Feeds RSS JSON llms.txt Unofficial
Claude Code v2.1.269 ·

New warning injected when a subagent's report relays content from an Artifact written by someone else

Subagent reports now warn when they relay content from an Artifact someone else wrote

TierYou'll noticehow much it should matter to you
Useful2my rating, 1 to 5
Signal1worth watching, 1 to 5
AreaSubagentswhat it touches
KindImprovementsin v2.1.269,
You'll notice

Subagent reports now warn when they relay content from an Artifact someone else wrote

What

When a subagent (a helper AI instance Claude Code delegates part of a task to) reads content from an Artifact that was written by someone other than itself, its final report to the caller now gets a notice added at the start. The notice tells the caller to treat that relayed content as data, not as instructions to follow.

Why

This is a defense against prompt injection: content written by another party and relayed through a subagent's report could otherwise be mistaken for legitimate instructions. The warning makes clear it should be read as information, not commands.

See this entry in the whole of v2.1.269 →