Follow Discord
Sweep 25 Sep 2026 · 19:33Z Build v2.1.283 504 read Stable v2.1.274 Latest v2.1.283 Next v2.1.283 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.281 ·

rm -r on the output of a command substitution now always asks for approval

Commands like rm -rf $(...) now always stop for approval, even with broad allow rules, unless an env var or flag turns this off

Group of 2 You'll notice Improvements
JSON All of v2.1.281
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.281,
ImprovementsSection of the release

What

A command substitution is a piece of a shell command, written as $(...) or in backticks, that is replaced by another command's output when it runs. A recursive rm (-r or -R) whose target is entirely such output now always stops for your approval. The message says "Dangerous rm operation detected: the target is the output of a command substitution ($(...) or backticks) and cannot be checked before the command runs." It tells you to run the substitution first and then remove the literal paths it prints.

Why

Claude Code cannot know in advance what such a command will delete. Commands like rm -rf $(find ...) now wait for you even if you have broad allow rules.

Read from
Feature flag
tengu_iridescent_boot Not enough to say

Nothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.

This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.281: on

These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.

Read once, for one account on one subscription tier, against v2.1.281. It isn't a statement about your account. What a flag value here can and cannot tell you

How sure we are
Two sources agreeTwo things we can check say the same as this entry.
Anthropic's release notes agreeFixed a recursive rm whose target is only command-substitution output, such as rm -rf "$(pwd)", running unprompted in auto and…
The name it cites is new in this buildNew in this build: tengu_iridescent_boot

See this entry in the whole of v2.1.281 →

Feedback