Follow Discord
Sweep 25 Sep 2026 · 19:33Z Build v2.1.283 504 read Stable v2.1.274 Latest v2.1.283 Next v2.1.283 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.282 ·

Permission answers from a host's own dialog are trusted only for prompts it was sent

When a host app shows permission prompts, Claude Code only accepts its approval for a request it actually sent to that host, and uses it once

You'll notice Improvements
JSON All of v2.1.282
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
SDKArea: what it touches
ImprovementsKind: in v2.1.282,
ImprovementsSection of the release
What

Some programs embed Claude Code and show its permission prompts in their own dialog. A permission prompt is the question Claude Code asks before it runs a tool, such as editing a file or running a command. In that setup, Claude Code now keeps its own record of which can_use_tool requests it actually sent to the host's dialog.

  • A request is recorded when Claude Code sends it to the host's permission prompt.
  • A successful answer counts as answered in the host's dialog only if Claude Code recorded that request first.
  • Once Claude Code has used that record, it is cleared, so a single answer counts one time only.

Previously, any matching answer was recorded as answered in the host's dialog, with no check that the request had gone through the host's prompt.

Why

A stray or forged answer can no longer mark a tool approval as given by a person in the host's dialog when that dialog never showed the request.

How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtIt is not clear whether the previous build already let each answer count only once.

See this entry in the whole of v2.1.282 →

Feedback