{"version":"2.1.281","anchor":"sandbox-file-paths-supplied-through-the-agents-flag-are-now","canonical_anchor":"sandbox-file-paths-supplied-through-the-agents-flag-are-now","heading":"Sandbox: file paths supplied through the agents flag are now write-denied","tier":"notice","area":"Sandbox","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281\/e\/sandbox-file-paths-supplied-through-the-agents-flag-are-now","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.281","markdown":"### Sandbox: file paths supplied through the agents flag are now write-denied\n\nInside the sandbox, files you pass through the agents flag can no longer be written to\n\n**Unclear.** The finding does not say how the policy-limit file list was changed.\n\n**What**\n\nThe sandbox is the protected area that limits what commands run by Claude can touch. It already blocks writes to certain settings files. Files you supply through the agents flag (`flagAgentsFilePaths()`) are now added to that list, so commands in the sandbox cannot change them.\n\nThe list of policy-limit files was also changed.\n\n**Why**\n\nFiles that define your subagents cannot be rewritten by a command running in the sandbox, so their contents stay as you gave them.\n\n- Area: Sandbox\n- Names: `--agents`\n- Tier: You'll notice\n- Useful: 1\/5\n- Signal: 1\/5"}