You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
SandboxArea: what it touches
ImprovementsKind: in v2.1.281,
ImprovementsSection of the release
What
The sandbox is a restricted environment that limits what commands run by Claude Code can reach. Inside it, a network classifier decides whether each network request is allowed. Sometimes the classifier cannot be reached and the API replies with a positive retryAfterMs, meaning "wait this many milliseconds before asking again". In that case the resulting deny is now remembered for that long, up to a fixed maximum. A warning is logged: "Sandbox network classifier was told to wait by the API; holding the deny".
Before this change the deny was thrown away, and every following request was sent to the classifier again.
Why
Network requests from the sandbox stay blocked during the wait, just as before. The difference is that Claude Code stops asking the classifier again during the period the API asked it to wait. The warning in the log explains why requests are being refused.
How sure we are
One source agreesOne thing we can check says the same as this entry.
Anthropic's release notes agreeImproved screen-reader output in /mcp: a disabled server is read as "off" instead of "pending"