{"version":"2.1.277","anchor":"unattested-request-error-message-simplified","canonical_anchor":"device-hooks-now-hold-back-if-the-sender-is-unattested","heading":"Attestation status handling simplified; unattested senders are now explicitly held back","tier":"notice","area":"Attestation","scope":null,"heads_up":null,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.277\/e\/unattested-request-error-message-simplified","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.277","markdown":"### Attestation status handling simplified; unattested senders are now explicitly held back\n\nAttestation handling was simplified by dropping raw attestation data, and unattested senders\/requests now get clearer held-back behavior and messages\n\n**What**\n\n- Remote session control-request handling no longer passes raw attestation data (`attestationRaw`) to served-channel requests (tool\/dialog serving); only the resolved `attestationStatus` is passed now.\n\n- Telemetry for remote tool calls likewise no longer includes `attestationRaw`, only `attestationStatus` and other fields.\n\n- Deriving a device's attestation status was simplified to a direct uppercase pass to the classifier, dropping a prefix-stripping\/raw-value side channel, and this now also applies to `hook_callback` subtypes, not just the previous allow-list.\n\n- The device-hooks dispatcher now checks whether the sender is \"held back\" due to attestation status; if so, it logs that it is holding back and returns no opinion instead of running its normal dispatch and muted checks.\n\n- The error message shown when a remote tool call is rejected for lacking attestation was simplified from describing an account-level requirement to a simpler statement about a missing device signature.\n\n- A new message explains that hooks are skipped for a cloud session because the service could not vouch for the sender under the organization's trusted-device policy.\n\n**Why**\n\nThis tightens and simplifies how Claude Code decides whether a remote or cloud request, or a hook's sender, can be trusted, and gives clearer explanations when something is blocked because a device couldn't be verified.\n\n- Area: Attestation\n- Tier: You'll notice\n- Useful: 2\/5\n- Signal: 2\/5"}