{"version":"2.1.281","anchor":"permission-denials-are-recorded-on-the-session","canonical_anchor":"permission-denials-are-recorded-on-the-session","heading":"Permission denials are recorded on the session","tier":"internal","area":"Permissions","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/permission-denials-are-recorded-on-the-session","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### Permission denials are recorded on the session\n\nWhen a tool action is denied permission, Claude Code now records the denial on the session\n\n**Unclear.** The finding does not say what the recorded denial is later used for.\n\n**What**\n\nA tool call is an action Claude takes, such as running a command or editing a file. When a tool call is denied after the permission check, a new step now records the denial on the session, meaning the current conversation. This happens before the existing denial handler runs.\n\n**Why**\n\nThe session now keeps track of which tool calls were refused.\n\n- Area: Permissions\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 1\/5"}