Follow Discord
Sweep 28 Sep 2026 · 17:20Z Build v2.1.284 505 read Stable v2.1.274 Latest v2.1.283 Next v2.1.284 Feeds RSS JSON llms.txt llms-full.txt Unofficial
Reading a new release v2.1.284 Downloading and diffing · 2/6 0 findings $0.00 so far

Claude Code v2.1.280 ·

Permission checks now detect and explain symlink-mediated path escapes

Read and write permission checks now catch and explain when a path escapes the working directory through a symlink

Group of 2 You'll notice Improvements
JSON All of v2.1.280
You'll noticeTier: how much it should matter to you
3Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.280,
ImprovementsSection of the release

What

  • When a read or write target's real path, after resolving symlinks, lands outside the allowed working directories, the permission-ask message now explicitly says the path "resolves through a symlink to" the outside location. If the symlink chain can't be resolved at all, the operation is denied outright.
  • A new helper (r2e) is consulted after a write is otherwise allowed or denied, to catch cases where the operation would actually land outside the intended location via a symlink, adding a dedicated safety-check reason and message for that case.

Why This closes a gap where a symlink could quietly redirect a read or write outside the intended working directory, and makes the resulting permission prompt clearer about what's actually happening.

See this entry in the whole of v2.1.280 →

Feedback