Under the hoodTier: how much it should matter to you
2Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
Managed SettingsArea: what it touches
Internal ChangesKind: in v2.1.281,
Internal ChangesSection of the release
What
builtinToolPolicy is a managed setting: an administrator uses it to set how Claude Code's built-in tools are allowed to run. The setting's definition now says its "ask-session" value needs at least version 1.40609.0.
The fail-closed value is unchanged. "Fail-closed" means the value used when nothing valid is set, and it is still "ask" for every built-in tool.
Why
Administrators who set "ask-session" should expect it to take effect only from version 1.40609.0 onward. Every other case still falls back to asking.
The entry above is what we published on the day. These lines were added later, as Anthropic's own pages caught up, and they sit beside the original rather than replacing it.
Confirmed sinceAnthropic's documentation has since written up builtinToolPolicy, on Configuration reference.Requires a model that supports the safety classifier — which models qualify depends on the deployment's provider and the app version. With a model that lacks support the option is greyed out and Code sessions do not start in it. `builtinTo…third-party/claude-desktop/configurationsee the edit
How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtThe finding does not say which app the version `1.40609.0` refers to, or how this relates to `"ask-session"` being rewritten to `"ask"`.
Anthropic's documentation agreesAnthropic's documentation has since written up builtinToolPolicy, on Configuration reference.