What
Claude Code keeps a list of sensitive paths in your home folder, including places that hold credentials such as .config/gh, .cargo/credentials and .m2/settings.xml. For ~/.claude/state, this list used to name individual files, such as the file that records device consent for MCP servers. It now covers the whole ~/.claude/state folder.
Why
Any new consent or state file stored in ~/.claude/state gets the same protection without being listed one by one.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
What this list controls, whether tool access, sandboxing or sync, is not clear.