New tool-host attestation floor check replaces old attestation execution logic, gated behind two flags
A rewritten internal function now computes a policy verdict for a tool's host-attestation status against an acceptance floor, returning one of "not_policed", "pass", "config_exception", or "below_floor". This replaces an earlier version of the same function that actually executed the tool call directly. The overall attestation mode (whether checks merely observe or actually enforce) depends on the tengu_vast_tulip setting, and the whole check only runs at all if a separate condition gated by tengu_breezy_fairy returns true.
This restructures how Claude Code evaluates whether a tool's host meets an attestation floor, separating the policy decision from tool execution, though whether this behaves as observe-only or enforcing depends on server-controlled settings not disclosed here.
tengu_breezy_fairy Off in both readingsThe flag server returned off for the account this site reads and for the anonymous baseline. A reading of off cannot rule out a rollout these two readings sit outside of.
This account: off · anonymous baseline: off · compiled default in v2.1.277: off
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
tengu_vast_tulip Off in both readingsThe flag server returned off for the account this site reads and for the anonymous baseline. A reading of off cannot rule out a rollout these two readings sit outside of.
This account: off · anonymous baseline: off · compiled default in v2.1.277: off
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
Read once, for one account on one subscription tier, against v2.1.277. It isn't a statement about your account. What a flag value here can and cannot tell you
New in this build: tengu_vast_tulip