Follow Discord
Sweep 28 Sep 2026 · 18:16Z Build v2.1.284 505 read Stable v2.1.277 Latest v2.1.284 Next v2.1.284 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.284 ·

Managed-rules lockdown keeps plugin tool permissions only from admin-backed sources

Under allowManagedPermissionRulesOnly, only plugins from admin-backed sources keep their allowed-tools grants; other plugins' grants are ignored

You'll notice Improvements
JSON All of v2.1.284
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.284,
ImprovementsSection of the release
What

allowManagedPermissionRulesOnly is a managed setting, one an organization's administrators set, that makes managed settings the only source of permission rules. A plugin can declare allowed-tools, a list of tools it may use without asking. The setting's description now says that under this setting a plugin keeps its allowed-tools only if it came through an admin-backed channel:

  • plugins loaded with --plugin-dir by the host
  • the official marketplace from its unpinned Anthropic source
  • attested plugins synced from claude.ai
  • the organization's claude.ai-hosted marketplaces
  • marketplaces declared by managed extraKnownMarketplaces or pinned by strictKnownMarketplaces
  • registry-pinned plugins installed directly from npm

Every other plugin's allowed-tools are ignored. Before, the description said only plugins picked up from a plugin manifest inside user, project or added skills folders lost theirs.

Why

Organizations using this lockdown may find that plugins from ordinary marketplaces stop getting their tool permissions unless an admin vouches for where they came from.

Read from
How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtOnly the setting's description changed visibly; the code that enforces it was not seen.
Anthropic's release notes agreeFixed plugins from marketplaces, claude.ai and npm pre-approving their own tools via allowed-tools under managed…

See this entry in the whole of v2.1.284 →

Feedback