{"version":"2.1.281","anchor":"json-aware-escaping-of-system-reminder-like-tags","canonical_anchor":"json-aware-escaping-of-system-reminder-like-tags","heading":"JSON-aware escaping of system-reminder-like tags","tier":"internal","area":"System Reminders","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/json-aware-escaping-of-system-reminder-like-tags","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### JSON-aware escaping of system-reminder-like tags\n\nReserved tags such as `system-reminder` are now also found and escaped when hidden inside JSON text\n\n**Unclear.** The finding does not say which content passes through this sanitizer.\n\n**What**\n\nClaude Code reserves certain tags, including `system-reminder`, for notes it adds to the conversation for the model. A new sanitizer neutralises these reserved tags when they appear in content. For text that looks like JSON, a common data format, it first decodes string escapes such as `\\u` sequences. These escapes can spell out characters indirectly. It then escapes any reserved tags it finds in place.\n\n**Why**\n\nA reserved tag written in escaped form inside JSON is now caught as well, so content cannot pass one along just by encoding its characters differently.\n\n- Area: System Reminders\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 1\/5"}