{"version":"2.1.281","anchor":"cowork-3p-policy-schema-warns-when-a-marketplace-entry-canno","canonical_anchor":"cowork-3p-policy-schema-warns-when-a-marketplace-entry-canno","heading":"Cowork 3P policy schema warns when a marketplace entry cannot auto-install","tier":null,"area":null,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/cowork-3p-policy-schema-warns-when-a-marketplace-entry-canno","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### Cowork 3P policy schema warns when a marketplace entry cannot auto-install\n\nThe Cowork 3P settings schema warns when an `allowedPluginMarketplaces` entry has no pin and so installs nothing\n\n**What**\n\nClaude Code includes a schema for Cowork 3P settings. A schema is the description of which settings exist and what shape they take. The `allowedPluginMarketplaces` setting in it now shows a warning when an entry is not pinned to one exact version:\n\n- URL sources need a Manifest SHA-256.\n\n- Other sources need a full 40-character commit SHA in Ref.\n\nThe warning reads: \"Without one this marketplace is treated as available: it is listed, but this setting installs nothing.\"\n\n**Why**\n\nAn administrator who expects a marketplace to install plugins automatically is now told when the entry will only list the marketplace instead."}