What probably matters to youSection of the release
What
Managed settings are settings an administrator sets for the machines they manage. A new one, allowedProviders, lists the API providers Claude Code may use. An API provider is the service Claude Code sends requests to. It can only be set in managed settings. Accepted names are:
If the list is not set, every provider is allowed. If it is empty, none is, and Claude Code will not start on that machine. A session on a provider or custom endpoint not in the list is refused at startup, at login and when it contacts the API, with "API provider not allowed by managed settings". The message says what to unset or pin, for example in the "env" block of managed settings. Sign-in checks the provider before opening the browser login. claude gateway refuses to start under such a policy, and the status screen shows an "Allowed providers" row.
Why
Admins can lock down which providers and endpoints Claude Code sends requests to. Users who hit the limit get a message saying what to change.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtIt is unclear whether a policy sent from the server is enforced the same way as one set on the machine.
Anthropic's release notes agreeAdded allowedProviders managed setting to limit which API providers a machine may use (Anthropic API, a custom endpoint, Bedrock, Mantle…