You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
SettingsArea: what it touches
ImprovementsKind: in v2.1.282,
ImprovementsSection of the release
What
The settings schema (the description of valid settings that editors use for hints and checking) now explains sandbox.excludedCommands. Before, the entry had no description. It now says:
the entries are command patterns, written like Bash permission rules, that always run outside the sandbox
it is a convenience, not a security boundary, and excluded commands still go through the permission flow
patterns from different settings sources are merged together
Why
Editors that read the schema now show this explanation, making clear that excluding a command from the sandbox does not skip permission prompts.