Artifacts from another organization now get an explicit untrusted-content warning shown to the model
When an Artifact (a generated file or piece of content shown alongside a conversation) belongs to a different organization than the current user, or is a public artifact from outside the user's organization, Claude Code now appends a bracketed warning to its description: that it belongs to another organization and its content should be treated as untrusted input.
This tells the model explicitly not to blindly trust content in cross-organization artifacts, reducing the risk that instructions or data embedded in someone else's artifact get treated as trustworthy by mistake.
tengu_cobalt_plinth_sedge Off by default, switched on for this accountThe shipped code defaults this off, and the flag server returned on for the one account this site reads on this version. That is the reading that makes the entry above worth a second look, and it still says nothing about your account.
This account: on · anonymous baseline: on · compiled default in v2.1.275: off
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
Read once, for one account on one subscription tier, against v2.1.275. It isn't a statement about your account. What a flag value here can and cannot tell you