What
The sandbox is a set of limits on what commands run by Claude can reach. Claude Code reports the sandbox's current state to host apps, meaning programs that embed Claude Code. That report has changed:
fs_allow_read,fs_allow_writeandunix_socketsnow say they report what is enforced. Project settings are left out while managed settings, set by an organization, require the sandbox.- A new field,
allow_all_unix_sockets, says whether all Unix sockets are allowed. A Unix socket is a way for programs on the same machine to talk to each other. - The descriptions of
allowedDomainsandstrictAllowlistare expanded to match, and note thatWebFetch(domain:…)allow rules are left out of the allowlist.
Why
A host app showing sandbox settings can now show the policy that is in force, not settings that are being overridden.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
It is not clear whether the sandbox enforces anything differently or only reports it differently.