Follow Discord
Sweep 29 Sep 2026 · 18:10Z Build v2.1.285 506 read Stable v2.1.280 Latest v2.1.285 Next v2.1.285 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.285 ·

Sandbox settings descriptions explain which settings file wins

Sandbox setting descriptions now explain how managed, --settings, user and project settings combine, including allowUnsandboxedCommands

Group of 3 You'll notice Improvements
JSON All of v2.1.285
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
SandboxArea: what it touches
ImprovementsKind: in v2.1.285,
ImprovementsSection of the release

What

The sandbox is the protection that limits which files and network addresses Claude Code's commands can reach. The built-in descriptions of its settings were expanded:

  • sandbox.enabled now reads "Run Bash commands inside the sandbox. Default: false."
  • ignoreViolations and enableWeakerNestedSandbox gain descriptions, including a Linux-only option to run without the fresh /proc mount.
  • allowUnsandboxedCommands: a false set in managed settings, a --settings file or user settings holds, and in some cases a project-level value is ignored.
  • overrides_locked is now described as true also when allowUnsandboxedCommands: false comes from a --settings file or user settings, not only from an admin policy.
  • Project settings cannot re-open paths that another layer denies for reading, and a project-level network.strictAllowlist value is ignored in some cases.

Why

These are descriptions, not new behaviour. They make it clearer that a project's own settings file cannot loosen sandbox limits set by your administrator, a --settings file or your own user settings.

Read from
Names in the bundleallowUnsandboxedCommands
How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtWhether the behaviour changed or only its description is not clear.

See this entry in the whole of v2.1.285 →

Feedback