{"version":"2.1.281","anchor":"new-refusal-path-spelling-that-session-permission-rules-can","canonical_anchor":"new-refusal-path-spelling-that-session-permission-rules-can","heading":"New refusal: path spelling that session permission rules cannot match","tier":null,"area":null,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/new-refusal-path-spelling-that-session-permission-rules-can","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### New refusal: path spelling that session permission rules cannot match\n\nClaude Code can now refuse a file path written in a form its permission rules cannot match and ask for the full path\n\n**Unclear.** The finding does not say which tool calls go through the path-rule layer.\n\n**What**\n\nSome tool calls, which are requests by Claude to use one of its tools, are checked against path-based permission rules. These calls can now be refused with the code `declined_spelling`. The message says the path is written in a way this session cannot match to its own path rules, and asks for the file's full path instead. The refusal is recorded as a routing error and does not deny the session. Denials now also carry a `code` field.\n\n**Why**\n\nWhen a path is written oddly, Claude is told to retry with the full path rather than having the path slip past rules that could not recognise it."}