{"version":"2.1.281","anchor":"host-dialog-approval-attestation-for-editwrite","canonical_anchor":"host-dialog-approval-attestation-for-editwrite","heading":"Host-dialog approval attestation for Edit\/Write","tier":"internal","area":"Permissions","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/host-dialog-approval-attestation-for-editwrite","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### Host-dialog approval attestation for Edit\/Write\n\nEdit and Write calls approved in a host dialog are now fingerprinted so the approved change can be matched to the one that runs\n\n**Unclear.** The finding does not say which host programs show this dialog.\n\n**What**\n\nEdit and Write are the tools Claude Code uses to change and create files. A permission answer can now carry `approvalSurface: \"host_dialog\"`, meaning the approval came from a dialog shown by the host, the program Claude Code runs inside. For those answers, Claude Code takes a fingerprint (a sha256 digest) of the file path and content. It can then match the approved write to the call that actually runs.\n\n**Why**\n\nThis ties an approval to one exact change, so the file write that runs can be checked against the one you approved.\n\n- Area: Permissions\n- Tier: Under the hood\n- Useful: 2\/5\n- Signal: 3\/5"}