You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
SandboxArea: what it touches
ImprovementsKind: in v2.1.285,
ImprovementsSection of the release
What
The sandbox limits which files commands run by Claude may read and write. A symbolic link is a file that points to another location. If an allowRead or allowWrite path is re-pointed through a symbolic link after the sandbox settings were put together, Claude Code now checks it again. The path is dropped when:
Unsafe: it no longer resolves safely.
Denied: it now leads into a path the sandbox is not allowed to read.
Each dropped path is logged with "[Sandbox] dropped".
Why
Swapping a link after setup can no longer be used to reach files the sandbox is meant to keep unreadable.