Under the hoodTier: how much it should matter to you
2Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.280,
ImprovementsSection of the release
What
Claude Code's code-signing helper, which previously identified eligible processes by reading CLAUDE_CODE_REMOTE_SESSION_ID, CLAUDE_CODE_SESSION_ACCESS_TOKEN, and ANTHROPIC_BASE_URL, now also accepts CLAUDE_RUNNER_SESSION_ID and CLAUDE_RUNNER_API_BASE_URL, the environment variables used by lifecycle hooks (scripts that run automatically at points in a session's life). When it finds a CLAUDE_RUNNER_SESSION_ID prefixed with session_, it converts that prefix to cse_ to match the expected format.
Why
This widens which processes are eligible for code signing to include lifecycle-hook processes, not just spawned child sessions.