Models blocked by admin policy get their own reason when dropped from the model list
A model removed from the model list by an administrator's managed policy is now recorded as "managed_denied" instead of being counted as allowlist-filtered
Under the hoodTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
ModelsArea: what it touches
Internal ChangesKind: in v2.1.283,
Internal ChangesSection of the release
What
When Claude Code leaves a model out of its model list, it records a reason for dropping it. Models that an organisation's managed policy denies now get the reason "managed_denied". A managed policy is a set of rules an administrator sets for everyone in the organisation. Before this change, those models were recorded under the same reason as models removed by an allowlist, which is a list of models that are allowed. Models dropped because the account is not entitled to them are still recorded as "entitlement_denied", as before.
Why
Diagnostics can now tell a model blocked by an administrator's policy apart from one that simply was not on an allowlist. That makes it easier to work out why a model is missing.
How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtIt is not clear whether this reason is ever shown to users or only recorded in diagnostic data.