What
Remote Control lets you follow and drive a local Claude Code session from another device through a connection called the bridge. Several parts of how the bridge starts have changed.
- When the
allow_remote_controlorganization policy is not in the local cache, Claude Code now loads the policy limits and checks again instead of refusing straight away. If it still cannot confirm, the message now says it couldn't verify your organization's policy and asks you to check your network connection and try again, instead of the fixed "disabled by your organization's policy". - Every refusal from the eligibility check now carries a short reason code:
not_first_party,cloud_session,managed_disabled,not_signed_in,not_subscription_auth,flags_unreachableandgate_off, along withtoken_scope_limited,no_organization,policy_unverified,org_policy_deniedandflags_disabled. The messages you see are unchanged. - When the bridge does not start, Claude Code now records that reason code, or
bridge_disabledif there is none. Before, it only wrote a debug line. - The bridge now receives a
remoteControlOriginvalue and agetBackfillMessagescallback. The callback returns the conversation minus messages already delivered to that bridge session, and returns nothing at certain moments. History is converted through a new helper. Before, onlyinitialMessagesandgetMessageswere passed.
Why
Remote Control should no longer say it is disabled by your organization when the policy simply had not loaded yet. Sending each remote session only the history it has not received may avoid duplicate messages after reconnecting, and the reason codes make it possible to tell why Remote Control did not start.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
The finding does not say what `remoteControlOrigin` is used for or in which situations backfill is switched off.