Claude Code now has a check that decides whether your organization's policy blocks remote control. It answers yes only when all of these hold:
- the policy's verdict is "denied"
- the denial is authoritative, meaning final
- the
allow_remote_controlpolicy does not allow remote control while the session carries certain markers, which the code calls taints
This narrows when remote control counts as blocked by policy. It ties the block to these markers rather than to a denial alone.
tengu_org_policy_denied Not enough to sayNothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.285: not a boolean we can read
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
Read once, for one account on one subscription tier, against v2.1.285. It isn't a statement about your account. What a flag value here can and cannot tell you
What uses this check, what the markers are, and whether an oddly valued remote default nearby is related is not clear.