{"version":"2.1.282","anchor":"new-tui-notice-when-this-computer-is-enrolled-as-a-trusted-d","canonical_anchor":"automatic-trusted-device-enrollment-now-tells-the-user","heading":"Claude Code now tells you when it enrolls this computer as a trusted device","tier":"notice","area":"Trusted Devices","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.282\/e\/new-tui-notice-when-this-computer-is-enrolled-as-a-trusted-d","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.282","markdown":"### Claude Code now tells you when it enrolls this computer as a trusted device\n\nWhen Claude Code enrolls the computer as a trusted device on its own, it now shows a notice instead of writing only a debug log\n\n**Unclear.** It is not clear what, apart from signing in, causes Claude Code to enroll a computer on its own.\n\n**What**\n\nA trusted device is a computer registered to your account as one you trust. Claude Code can enroll the machine on its own, outside of signing in. Before this release that finished with only a debug log line. Now it shows this notice: \"This computer was enrolled as a trusted device for your account (you will also get an email). If you did not expect this, review your devices in claude.ai settings.\"\n\n- In the interactive terminal interface, the notice appears as a high-priority notice for 30 seconds, and a warning message is also added to the conversation (`automaticEnrollmentNoticePending` marks it as waiting to be shown).\n\n- In non-interactive runs, the notice is logged and written to stderr (the error output), but only when stderr is a terminal.\n\n- Enrollments that happen as part of sign-in do not show it.\n\nEnrollment, and so the notice, still sits behind the switch `tengu_sessions_elevated_auth_enforcement`, which falls back to off, and requires your organisation to have `require_trusted_devices` enabled or allowed. The flag server returned that switch as on for this site's account and for an anonymous baseline account; no reading has been taken under this release yet.\n\n**Why**\n\nYou now learn when a device credential has been issued for your account, and get a pointer to where you can check for one you did not expect.\n\n- Flag `tengu_sessions_elevated_auth_enforcement`: Off by default, switched on for this account (read for one account on one subscription tier against v2.1.282; this account: on, anonymous baseline: on, compiled default: off) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Area: Trusted Devices\n- Tier: You'll notice\n- Useful: 3\/5\n- Signal: 3\/5"}