{"version":"2.1.284","anchor":"sandbox-apply-seccomp-lookup-global-install-search-split-ou","canonical_anchor":"sandbox-apply-seccomp-lookup-global-install-search-split-ou","heading":"Linux sandbox now looks up its seccomp helper in the background","tier":"internal","area":"Sandbox","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.284\/e\/sandbox-apply-seccomp-lookup-global-install-search-split-ou","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.284","markdown":"### Linux sandbox now looks up its seccomp helper in the background\n\nOn Linux, sandbox setup now waits for a background search for the apply-seccomp helper unless seccomp.argv0 is set\n\n**Unclear.** Whether the set of folders searched for the helper actually changed is not known.\n\n**What**\n\nOn Linux, Claude Code's sandbox (the protection that limits what commands it runs can touch) uses a small helper program called apply-seccomp. The search for a globally installed copy of it has been split out, and there is now a way to run that search in the background instead of blocking. Both ways remember the result once found.\n\nOn Linux, sandbox setup now waits for the background search unless `seccomp.argv0` is set. The warning telling you to install @anthropic-ai\/sandbox-runtime globally is unchanged.\n\n**Why**\n\nThe background search may let Linux sandboxing find a globally installed apply-seccomp helper that the old lookup missed.\n\n- Area: Sandbox\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 0\/5"}